Forum Articles
  Welcome back Join CF
You are here You are here: Home | Forum | Reinstall Without Correct Connect

You are currently viewing our boards as a guest which gives you limited access to view most of the discussions, articles and other free features. By joining our Virgin Media community you will have full access to all discussions, be able to view and post threads, communicate privately with other members (PM), respond to polls, upload your own images/photos, and access many other special features. Registration is fast, simple and absolutely free so please join our community today.


Welcome to Cable Forum
Go Back   Cable Forum > Virgin Media Services > Virgin Media Internet Service
Register FAQ Community Calendar

screwed ACL on guildford proxy
Reply
 
Thread Tools
Old 29-11-2003, 18:47   #1
Frank
Inactive
 
Join Date: Jun 2003
Location: Toronto, Canada
Services: Beanfield 50/50 FTTH and iPTV
Posts: 1,756
Frank has a golden auraFrank has a golden auraFrank has a golden auraFrank has a golden aura
Frank has a golden auraFrank has a golden aura
screwed ACL on guildford proxy

I access webmail via https on port 2096.

Using the cache cache3-glfd.server.ntli.net I get the error:
Quote:
Forbidden

You were denied access because:
Access denied by access control list.

Any ideas as to why? This webmail works fine using another cache.
Frank is offline   Reply With Quote
Advertisement
Old 29-11-2003, 18:51   #2
Paul
Dr Pepper Addict
Cable Forum Admin
 
Paul's Avatar
 
Join Date: Oct 2003
Location: Nottingham
Age: 63
Services: IDNet FTTP (1000M), Sky Q TV, Sky Mobile, Flextel SIP
Posts: 30,591
Paul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered stars
Paul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered stars
Re: screwed ACL on guildford proxy

Oops edit time;

I just noticed its https - remove the proxy server from https in your settings, you only need it for http.
__________________

Baby, I was born this way.
Paul is offline   Reply With Quote
Old 29-11-2003, 18:59   #3
Frank
Inactive
 
Join Date: Jun 2003
Location: Toronto, Canada
Services: Beanfield 50/50 FTTH and iPTV
Posts: 1,756
Frank has a golden auraFrank has a golden auraFrank has a golden auraFrank has a golden aura
Frank has a golden auraFrank has a golden aura
Re: screwed ACL on guildford proxy

Quote:
Originally Posted by pem
I just noticed its https - remove the proxy server from https in your settings, you only need it for http.
Well yeah I take your point.

BUT... The cache should not be intercepting requests on port 2096 anyway. This behaviour is displayed on all guildford caches too, but not other ntl caches.

Also, the fact that the cache should not be intercepting this https traffic is proven by other caches working without needing to implement the suggestion above (you are right by the way for normal ssl traffic, but cos it's on port 2096 this shouldn't be needed).

Which leads me to believe it is broken. I've also been using this cache for the last month or so and it has only broken today - nothing has changed on my PC grrr
Frank is offline   Reply With Quote
Old 29-11-2003, 19:08   #4
Frank
Inactive
 
Join Date: Jun 2003
Location: Toronto, Canada
Services: Beanfield 50/50 FTTH and iPTV
Posts: 1,756
Frank has a golden auraFrank has a golden auraFrank has a golden auraFrank has a golden aura
Frank has a golden auraFrank has a golden aura
Re: screwed ACL on guildford proxy

Sorry, let me add Bristol to the list of screwed caches.
Quote:
Tunnel or SSL Forbidden

Description: 2096 is not an allowed port for Tunnel or SSL connections


Some consistent failures please ntl?
Frank is offline   Reply With Quote
Old 29-11-2003, 19:32   #5
Paul
Dr Pepper Addict
Cable Forum Admin
 
Paul's Avatar
 
Join Date: Oct 2003
Location: Nottingham
Age: 63
Services: IDNet FTTP (1000M), Sky Q TV, Sky Mobile, Flextel SIP
Posts: 30,591
Paul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered stars
Paul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered stars
Re: screwed ACL on guildford proxy

Quote:
Originally Posted by Keyser
Well yeah I take your point.

BUT... The cache should not be intercepting requests on port 2096 anyway. This behaviour is displayed on all guildford caches too, but not other ntl caches.

Also, the fact that the cache should not be intercepting this https traffic is proven by other caches working without needing to implement the suggestion above (you are right by the way for normal ssl traffic, but cos it's on port 2096 this shouldn't be needed).

Which leads me to believe it is broken. I've also been using this cache for the last month or so and it has only broken today - nothing has changed on my PC grrr
If you are manually setting your proxy and have it set for https as well as http then it is not a case of the cache intercepting it - you are forcing your https traffic to use the cache - and it is responding exactly as I would expect it to (on a port other than 443).

If it worked before then TBH I would say that was a fault or very poor security setting which they seem to have corrected.

Proxy servers will not normally respond to http or https requests on non standard ports - to prevent them being abused (like by spammers for instance).
__________________

Baby, I was born this way.
Paul is offline   Reply With Quote
Old 29-11-2003, 19:52   #6
MetaWraith
Inactive
 
MetaWraith's Avatar
 
Join Date: Oct 2003
Location: 2nd CPU to the right & past the cache
Posts: 1,949
MetaWraith has a bronzed appealMetaWraith has a bronzed appeal
MetaWraith has a bronzed appealMetaWraith has a bronzed appealMetaWraith has a bronzed appealMetaWraith has a bronzed appealMetaWraith has a bronzed appealMetaWraith has a bronzed appealMetaWraith has a bronzed appeal
Send a message via ICQ to MetaWraith Send a message via AIM to MetaWraith Send a message via MSN to MetaWraith Send a message via Yahoo to MetaWraith
Re: screwed ACL on guildford proxy

Quote:
Originally Posted by Keyser
Sorry, let me add Bristol to the list of screwed caches.
[/b][/font]

Some consistent failures please ntl?
ssssssshhhhhhhh dont give them ideas.
MetaWraith is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 17:30.


Server: lithium.zmnt.uk
Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2026, vBulletin Solutions Inc.
All Posts and Content are © Cable Forum