<html xmlns:v="urn:schemas-microsoft-com:vml" xmlns:o="urn:schemas-microsoft-com:office:office" xmlns:w="urn:schemas-microsoft-com:office:word" xmlns:m="http://schemas.microsoft.com/office/2004/12/omml" xmlns="http://www.w3.org/TR/REC-html40"><head><meta http-equiv=Content-Type content="text/html; charset=utf-8"><meta name=Generator content="Microsoft Word 14 (filtered medium)"><style><!--
/* Font Definitions */
@font-face
{font-family:Helvetica;
panose-1:2 11 6 4 2 2 2 2 2 4;}
@font-face
{font-family:Helvetica;
panose-1:2 11 6 4 2 2 2 2 2 4;}
@font-face
{font-family:Calibri;
panose-1:2 15 5 2 2 2 4 3 2 4;}
@font-face
{font-family:Tahoma;
panose-1:2 11 6 4 3 5 4 4 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
{margin:0in;
margin-bottom:.0001pt;
font-size:12.0pt;
font-family:"Times New Roman","serif";}
a:link, span.MsoHyperlink
{mso-style-priority:99;
color:blue;
text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
{mso-style-priority:99;
color:purple;
text-decoration:underline;}
p.MsoAcetate, li.MsoAcetate, div.MsoAcetate
{mso-style-priority:99;
mso-style-link:"Balloon Text Char";
margin:0in;
margin-bottom:.0001pt;
font-size:8.0pt;
font-family:"Tahoma","sans-serif";}
span.BalloonTextChar
{mso-style-name:"Balloon Text Char";
mso-style-priority:99;
mso-style-link:"Balloon Text";
font-family:"Tahoma","sans-serif";}
p.yiv6540481299msoacetate, li.yiv6540481299msoacetate, div.yiv6540481299msoacetate
{mso-style-name:yiv6540481299msoacetate;
mso-margin-top-alt:auto;
margin-right:0in;
mso-margin-bottom-alt:auto;
margin-left:0in;
font-size:12.0pt;
font-family:"Times New Roman","serif";}
p.yiv6540481299msonormal, li.yiv6540481299msonormal, div.yiv6540481299msonormal
{mso-style-name:yiv6540481299msonormal;
mso-margin-top-alt:auto;
margin-right:0in;
mso-margin-bottom-alt:auto;
margin-left:0in;
font-size:12.0pt;
font-family:"Times New Roman","serif";}
p.yiv6540481299msochpdefault, li.yiv6540481299msochpdefault, div.yiv6540481299msochpdefault
{mso-style-name:yiv6540481299msochpdefault;
mso-margin-top-alt:auto;
margin-right:0in;
mso-margin-bottom-alt:auto;
margin-left:0in;
font-size:12.0pt;
font-family:"Times New Roman","serif";}
p.yiv6540481299msonormal1, li.yiv6540481299msonormal1, div.yiv6540481299msonormal1
{mso-style-name:yiv6540481299msonormal1;
margin:0in;
margin-bottom:.0001pt;
font-size:11.0pt;
font-family:"Calibri","sans-serif";}
p.yiv6540481299msoacetate1, li.yiv6540481299msoacetate1, div.yiv6540481299msoacetate1
{mso-style-name:yiv6540481299msoacetate1;
margin:0in;
margin-bottom:.0001pt;
font-size:8.0pt;
font-family:"Tahoma","sans-serif";}
p.yiv6540481299msochpdefault1, li.yiv6540481299msochpdefault1, div.yiv6540481299msochpdefault1
{mso-style-name:yiv6540481299msochpdefault1;
mso-margin-top-alt:auto;
margin-right:0in;
mso-margin-bottom-alt:auto;
margin-left:0in;
font-size:10.0pt;
font-family:"Times New Roman","serif";}
span.yiv6540481299msohyperlink
{mso-style-name:yiv6540481299msohyperlink;}
span.yiv6540481299msohyperlinkfollowed
{mso-style-name:yiv6540481299msohyperlinkfollowed;}
span.yiv6540481299emailstyle17
{mso-style-name:yiv6540481299emailstyle17;}
span.yiv6540481299emailstyle18
{mso-style-name:yiv6540481299emailstyle18;}
span.yiv6540481299balloontextchar
{mso-style-name:yiv6540481299balloontextchar;}
span.yiv6540481299emailstyle21
{mso-style-name:yiv6540481299emailstyle21;}
span.yiv6540481299msohyperlink1
{mso-style-name:yiv6540481299msohyperlink1;
color:blue;
text-decoration:underline;}
span.yiv6540481299msohyperlinkfollowed1
{mso-style-name:yiv6540481299msohyperlinkfollowed1;
color:purple;
text-decoration:underline;}
span.yiv6540481299emailstyle171
{mso-style-name:yiv6540481299emailstyle171;
font-family:"Calibri","sans-serif";
color:windowtext;}
span.yiv6540481299emailstyle181
{mso-style-name:yiv6540481299emailstyle181;
font-family:"Calibri","sans-serif";
color:#1F497D;}
span.yiv6540481299balloontextchar1
{mso-style-name:yiv6540481299balloontextchar1;
font-family:"Tahoma","sans-serif";}
span.yiv6540481299emailstyle211
{mso-style-name:yiv6540481299emailstyle211;
font-family:"Calibri","sans-serif";
color:#1F497D;}
span.EmailStyle37
{mso-style-type:personal;
font-family:"Calibri","sans-serif";
color:#1F497D;}
span.EmailStyle38
{mso-style-type:personal-reply;
font-family:"Calibri","sans-serif";
color:#1F497D;}
.MsoChpDefault
{mso-style-type:export-only;
font-size:10.0pt;}
@page WordSection1
{size:8.5in 11.0in;
margin:1.0in 1.0in 1.0in 1.0in;}
div.WordSection1
{page:WordSection1;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext="edit" spidmax="1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext="edit">
<o:idmap v:ext="edit" data="1" />
</o:shapelayout></xml><![endif]--></head><body lang=EN-US link=blue vlink=purple><div class=WordSection1><p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><o:p> </o:p></span></p><p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><o:p> </o:p></span></p><div><div style='border:none;border-top:solid #B5C4DF 1.0pt;padding:3.0pt 0in 0in 0in'><p class=MsoNormal><b><span style='font-size:10.0pt;font-family:"Tahoma","sans-serif"'>From:</span></b><span style='font-size:10.0pt;font-family:"Tahoma","sans-serif"'> J. Michael Drew [mailto:jmichaeldrew@hotmail.com] <br><b>Sent:</b> Monday, June 20, 2016 2:01 PM<br><b>To:</b> 'Jose Alf.'<br><b>Subject:</b> RE: [stunnel-users] FW: Stunnel with IIS8 on server 2012 64 bit<o:p></o:p></span></p></div></div><p class=MsoNormal><o:p> </o:p></p><p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'>Hi Jose,<o:p></o:p></span></p><p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><o:p> </o:p></span></p><p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'>I made the changes you suggested, but I am still getting the same behavior.<o:p></o:p></span></p><p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><o:p> </o:p></span></p><p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'>My external address is: <a href="https://website.company.com/website">https://website.company.com/website</a><o:p></o:p></span></p><p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><o:p> </o:p></span></p><p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'>I am not adding any ports to the address.<o:p></o:p></span></p><p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><o:p> </o:p></span></p><p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'>Thanks so much for your help!<o:p></o:p></span></p><p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><o:p> </o:p></span></p><p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'>Michael<o:p></o:p></span></p><p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><o:p> </o:p></span></p><div><div style='border:none;border-top:solid #B5C4DF 1.0pt;padding:3.0pt 0in 0in 0in'><p class=MsoNormal><b><span style='font-size:10.0pt;font-family:"Tahoma","sans-serif"'>From:</span></b><span style='font-size:10.0pt;font-family:"Tahoma","sans-serif"'> Jose Alf. [<a href="mailto:josealf@rocketmail.com">mailto:josealf@rocketmail.com</a>] <br><b>Sent:</b> Monday, June 20, 2016 12:10 PM<br><b>To:</b> J. Michael Drew; <a href="mailto:stunnel-users@stunnel.org">stunnel-users@stunnel.org</a><br><b>Subject:</b> Re: [stunnel-users] FW: Stunnel with IIS8 on server 2012 64 bit<o:p></o:p></span></p></div></div><p class=MsoNormal><o:p> </o:p></p><div><div id="yui_3_16_0_ym19_1_1466437746240_3201"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>Michael,<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3331"><p class=MsoNormal style='margin-bottom:12.0pt;background:white'><span style='font-family:"Helvetica","sans-serif";color:black'><o:p> </o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3352"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>I guess what you want to do is to be able to connect to your internal Webserver via your Win2012 stunnel proxy using a URL like:<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3645"><p class=MsoNormal style='margin-bottom:12.0pt;background:white'><span style='font-family:"Helvetica","sans-serif";color:black'><o:p> </o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3648"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'><a href="https://yourwin2012dnsname:9009/">https://yourwin2012dnsname:9001/</a><o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3649"><p class=MsoNormal style='margin-bottom:12.0pt;background:white'><span style='font-family:"Helvetica","sans-serif";color:black'><o:p> </o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3793"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>if that is correct, I suggest to adjust your configuration as follows:<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3651"><p class=MsoNormal style='margin-bottom:12.0pt;background:white'><span style='font-family:"Helvetica","sans-serif";color:black'><o:p> </o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3653"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>1. Your stunnel mode must be server, not client. So adjust your service stanza as follows:<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4442"><p class=MsoNormal style='margin-bottom:12.0pt;background:white'><span style='font-family:"Helvetica","sans-serif";color:black'><o:p> </o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4233"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>[CLI9F529A0A]<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4234"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>accept=9001<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3725"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>connect=10.xxx.xxx.xxx:9009<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4169"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>client=no<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4549"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'><o:p> </o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4992"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2. In your current configuration stunnel is listening only in the localhost ipv4 address (127.0.0.1). Therefore, you can only connect when you are logged on the server, you can't connect from a remote client. <o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_5266"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'><o:p> </o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_5265"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>Hope this helps you clarify what's going on.<o:p></o:p></span></p></div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'><o:p> </o:p></span></p><div><p class=MsoNormal style='margin-bottom:12.0pt;background:white'><span style='font-family:"Helvetica","sans-serif";color:black'><o:p> </o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3257"><div id="yui_3_16_0_ym19_1_1466437746240_3256"><div id="yui_3_16_0_ym19_1_1466437746240_3255"><div id="yui_3_16_0_ym19_1_1466437746240_3261"><div id="yui_3_16_0_ym19_1_1466437746240_5186"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>Regards,<o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>Jose<o:p></o:p></span></p></div><div id=yiv6540481299><div id="yui_3_16_0_ym19_1_1466437746240_3265"><div id="yui_3_16_0_ym19_1_1466437746240_3264"><div id="yui_3_16_0_ym19_1_1466437746240_3263"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'> </span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3896"><div style='border:none;border-top:solid #B5C4DF 1.0pt;padding:3.0pt 0in 0in 0in' id="yui_3_16_0_ym19_1_1466437746240_3895"><div id="yui_3_16_0_ym19_1_1466437746240_3894"><p class=MsoNormal style='background:white'><b><span style='font-size:10.0pt;font-family:"Tahoma","sans-serif";color:black'>From:</span></b><span style='font-size:10.0pt;font-family:"Tahoma","sans-serif";color:black'> J. Michael Drew [<a href="mailto:jmichaeldrew@hotmail.com">mailto:jmichaeldrew@hotmail.com</a>] <br><b>Sent:</b> Monday, June 20, 2016 9:54 AM<br><b>To:</b> 'Josealf.rm'<br><b>Subject:</b> RE: [stunnel-users] Stunnel with IIS8 on server 2012 64 bit</span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div></div></div><div id="yui_3_16_0_ym19_1_1466437746240_4072"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'>Jose,</span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4111"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'> </span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4275"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'>Once logged in to the server I can open a browser on the server and connect through <a href="https://localhost/website" target="_blank" id="yui_3_16_0_ym19_1_1466437746240_4313">https://localhost/website</a> and I can log in to the site externally as expected.</span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4308"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'> </span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3655"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'>Here are the log files from IIS and stunnel where stunnel is running as a service on the Windows 2012 server:</span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4355"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'> </span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3324"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'>When I am not logged in to the server it fails:</span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3326"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'> </span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4356"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>#Software: Microsoft Internet Information Services 8.5<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4357"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>#Version: 1.0<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4358"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>#Date: 2016-06-20 00:30:21<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3893"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4073"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016-06-20 00:30:21 159.xxx.xxx.xxx HEAD / - 443 - 190.xxx.xxx.xxx - - 200 0 0 1218<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4359"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>#Software: Microsoft Internet Information Services 8.5<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4139"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>#Version: 1.0<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4360"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>#Date: 2016-06-20 05:41:01<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4361"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3656"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016-06-20 05:41:01 10.xxx.xxx.xxx OPTIONS /C$/windows/system32/NTDLL.DLL - 80 - 159.xxx.xxx.xxx Microsoft-WebDAV-MiniRedir/6.1.7601 - 200 0 0 500<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3548"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016-06-20 05:41:01 10.xxx.xxx.xxx PROPFIND /C$/windows/system32/NTDLL.DLL - 80 - 159.xxx.xxx.xxx Microsoft-WebDAV-MiniRedir/6.1.7601 - 404 0 2 46<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3327"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016-06-20 05:41:01 10.xxx.xxx.xxx PROPFIND /C$/windows/system32 - 80 - 159.xxx.xxx.xxx Microsoft-WebDAV-MiniRedir/6.1.7601 - 404 0 2 218<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3553"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016-06-20 05:41:16 10.xxx.xxx.xxx PROPFIND /patch-{682810b5-36dc-4e5d-81dd-6c02cd8f445b}-patchtoolsd.exe - 80 - 159.82.156.241 Microsoft-WebDAV-MiniRedir/6.1.7601 - 404 0 64 62<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3892"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016-06-20 05:41:27 10.xxx.xxx.xxx PROPFIND /N$cl64.exe - 80 - 159.xxx.xxx.xxx 1 Microsoft-WebDAV-MiniRedir/6.1.7601 - 404 0 2 62<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4074"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016-06-20 05:41:27 10.xxx.xxx.xxx PROPFIND /C$rome.dll - 80 - 159.xxx.xxx.xxx Microsoft-WebDAV-MiniRedir/6.1.7601 - 404 0 2 296<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4143"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4362"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>Stunell.conf:<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4363"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4364"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>cert = extwebsvr_ver.pem<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4400"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3657"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>; Some performance tuning<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4665"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>socket = l:TCP_NODELAY=1<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3549"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>socket = r:TCP_NODELAY=1<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3328"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3550"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>; Peer Authentication<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3551"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>verify = 2<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3552"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>CAfile = extwebsvr_root.pem<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3891"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>; Debug mode - useful for troubleshooting<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4075"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>debug = 7<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4151"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>output = stunnel.log<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4149"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4107"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>; Client mode<o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>client = yes<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4401"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3681"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>; Setup tunnels to each EMS node<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3688"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3610"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>[CLIxxxxxxxx)]<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3329"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>accept=127.0.0.1:9001<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3692"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>connect=10.xxx.xxx.xxx:9009<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4162"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4160"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>Stunnel.log:<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3890"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4157"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG7[main]: No limit detected for the number of clients<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4101"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG5[main]: stunnel 5.27 on x86-pc-msvc-1500 platform<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4154"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG5[main]: Compiled/running with OpenSSL 1.0.2e-fips 3 Dec 2015<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3882"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG5[main]: Threading:WIN32 Sockets:SELECT,IPv6 TLS:ENGINE,FIPS,OCSP,PSK,SNI<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3884"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG7[main]: errno: (*_errno())<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3886"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG5[main]: Reading configuration from file stunnel.conf<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3888"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG7[ui]: GUI message loop initialized<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4598"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG7[cron]: Cron thread initialized<o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG5[main]: UTF-8 byte order mark detected<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3841"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG6[main]: Initializing service [CLI9F529A0A]<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3839"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG6[main]: Loading certificate from file: extwebsvr_ver.pem<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3837"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG6[main]: Certificate loaded from file: extwebsvr_ver.pem<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3835"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG6[main]: Loading private key from file: extwebsvr_ver.pem<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3833"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG6[main]: Private key loaded from file: extwebsvr_ver.pem<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3829"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG7[main]: Private key check succeeded<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_3831"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG4[main]: Service [CLIxxxxxxxx] uses "verify = 2" without subject checks<o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG4[main]: Use "checkHost" or "checkIP" to restrict trusted certificates<o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG7[main]: SSL options: 0x03000004 (+0x03000000, -0x00000000)<o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>2016.06.20 09:17:39 LOG5[main]: Configuration successful<o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'>Thanks for your help,</span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'> </span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4550"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'>Michael</span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4597"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'> </span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'> </span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'> </span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:#1F497D'> </span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div><div><div style='border:none;border-top:solid #B5C4DF 1.0pt;padding:3.0pt 0in 0in 0in'><div><p class=MsoNormal style='background:white'><b><span style='font-size:10.0pt;font-family:"Tahoma","sans-serif";color:black'>From:</span></b><span style='font-size:10.0pt;font-family:"Tahoma","sans-serif";color:black'> Josealf.rm [<a href="mailto:josealf@rocketmail.com" target="_blank">mailto:josealf@rocketmail.com</a>] <br><b>Sent:</b> Monday, June 20, 2016 8:01 AM<br><b>To:</b> J. Michael Drew<br><b>Cc:</b> <a href="mailto:stunnel-users@stunnel.org" target="_blank">stunnel-users@stunnel.org</a><br><b>Subject:</b> Re: [stunnel-users] Stunnel with IIS8 on server 2012 64 bit</span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div></div></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>Michael,<o:p></o:p></span></p></div></div><div id=yiv6540481299AppleMailSignature><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div></div><div id=yiv6540481299AppleMailSignature><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>Is your stunnel running as a service?<o:p></o:p></span></p></div></div><div id=yiv6540481299AppleMailSignature><div id="yui_3_16_0_ym19_1_1466437746240_4551"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>Please post sanitized logs and configuration for a better diagnostic ...<br><br>Regards <o:p></o:p></span></p></div></div><div id=yiv6540481299AppleMailSignature><div id="yui_3_16_0_ym19_1_1466437746240_4552"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>Jose<o:p></o:p></span></p></div></div><div id="yui_3_16_0_ym19_1_1466437746240_4554"><div style='margin-bottom:12.0pt' id="yui_3_16_0_ym19_1_1466437746240_4553"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'><br>El 20 jun 2016, a las 6:39, J. Michael Drew <<a href="mailto:jmichaeldrew@hotmail.com" target="_blank">jmichaeldrew@hotmail.com</a>> escribió:<o:p></o:p></span></p></div></div><blockquote style='margin-top:5.0pt;margin-bottom:5.0pt' id="yui_3_16_0_ym19_1_1466437746240_4557"><div id="yui_3_16_0_ym19_1_1466437746240_4556"><div id="yui_3_16_0_ym19_1_1466437746240_4555"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>Hi,<o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4558"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div id="yui_3_16_0_ym19_1_1466437746240_4559"><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>I have a website on IIS8 and am using stunnel to forward requests over 9009 inside to my application server. When I log in to the IIS server and stay logged in everything works as expected. When I log off the IIS 8 web server my site is unreachable with a “service is unavailable”.<o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>Can someone help me?<o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>Sincere thanks,<o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'> <o:p></o:p></span></p></div><div><p class=MsoNormal style='background:white'><span style='font-family:"Helvetica","sans-serif";color:black'>Michael<o:p></o:p></span></p></div></div></blockquote><blockquote style='margin-top:5.0pt;margin-bottom:5.0pt' id="yui_3_16_0_ym19_1_1466437746240_4562"><div id="yui_3_16_0_ym19_1_1466437746240_4561"><div id="yui_3_16_0_ym19_1_1466437746240_4560"><p class=MsoNormal style='background:white'><span style='color:black'>_______________________________________________<br>stunnel-users mailing list<br><a href="mailto:stunnel-users@stunnel.org" target="_blank">stunnel-users@stunnel.org</a><br><a href="https://www.stunnel.org/cgi-bin/mailman/listinfo/stunnel-users" target="_blank">https://www.stunnel.org/cgi-bin/mailman/listinfo/stunnel-users</a></span><span style='font-family:"Helvetica","sans-serif";color:black'><o:p></o:p></span></p></div></div></blockquote></div></div></div><p class=MsoNormal style='margin-bottom:12.0pt;background:white'><span style='font-family:"Helvetica","sans-serif";color:black'><br>_______________________________________________<br>stunnel-users mailing list<br><a href="mailto:stunnel-users@stunnel.org">stunnel-users@stunnel.org</a><br><a href="https://www.stunnel.org/cgi-bin/mailman/listinfo/stunnel-users" target="_blank" id="yui_3_16_0_ym19_1_1466437746240_5314">https://www.stunnel.org/cgi-bin/mailman/listinfo/stunnel-users</a><o:p></o:p></span></p></div></div></div></div></div></div></body></html>