После обновления TOR заменить дефолтный TOR-домен удобочитаемым уже нельзя.
Дефолтный, в данном случае имелось ввиду, сгенерированная строка из 16 (в формате V3 – 56) букв и цифр при установке TOR на сервер.
Дмитрий Кузнецов, так в том то и дело что клиент и сервер на одном домене уже и на одном VPS-хосте, в одном каталоге...
Клиент может получать данные но не может менять их. Вываливается ошибка CORS.
Aves, Да, вы правы... моя невнимательность. На клиенте приложение стучалось на localhost. Подправил...
Теперь клиент может только получать из БД, остальные запросы на изменение, удаление и поиск вызывают ошибку CORS.:
Ок, вот новый лог ошибки:
...
Sun Jun 03 18:53:19 2018 pkcs11_protected_authentication = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_private_mode = 00000000
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_cert_private = DISABLED
Sun Jun 03 18:53:19 2018 pkcs11_pin_cache_period = -1
Sun Jun 03 18:53:19 2018 pkcs11_id = '[UNDEF]'
Sun Jun 03 18:53:19 2018 pkcs11_id_management = DISABLED
Sun Jun 03 18:53:19 2018 server_network = 0.0.0.0
Sun Jun 03 18:53:19 2018 server_netmask = 0.0.0.0
Sun Jun 03 18:53:19 2018 server_network_ipv6 = ::
Sun Jun 03 18:53:19 2018 server_netbits_ipv6 = 0
Sun Jun 03 18:53:19 2018 server_bridge_ip = 0.0.0.0
Sun Jun 03 18:53:19 2018 server_bridge_netmask = 0.0.0.0
Sun Jun 03 18:53:19 2018 server_bridge_pool_start = 0.0.0.0
Sun Jun 03 18:53:19 2018 server_bridge_pool_end = 0.0.0.0
Sun Jun 03 18:53:19 2018 ifconfig_pool_defined = DISABLED
Sun Jun 03 18:53:19 2018 ifconfig_pool_start = 0.0.0.0
Sun Jun 03 18:53:19 2018 ifconfig_pool_end = 0.0.0.0
Sun Jun 03 18:53:19 2018 ifconfig_pool_netmask = 0.0.0.0
Sun Jun 03 18:53:19 2018 ifconfig_pool_persist_filename = '[UNDEF]'
Sun Jun 03 18:53:19 2018 ifconfig_pool_persist_refresh_freq = 600
Sun Jun 03 18:53:19 2018 ifconfig_ipv6_pool_defined = DISABLED
Sun Jun 03 18:53:19 2018 ifconfig_ipv6_pool_base = ::
Sun Jun 03 18:53:19 2018 ifconfig_ipv6_pool_netbits = 0
Sun Jun 03 18:53:19 2018 n_bcast_buf = 256
Sun Jun 03 18:53:19 2018 tcp_queue_limit = 64
Sun Jun 03 18:53:19 2018 real_hash_size = 256
Sun Jun 03 18:53:19 2018 virtual_hash_size = 256
Sun Jun 03 18:53:19 2018 client_connect_script = '[UNDEF]'
Sun Jun 03 18:53:19 2018 learn_address_script = '[UNDEF]'
Sun Jun 03 18:53:19 2018 client_disconnect_script = '[UNDEF]'
Sun Jun 03 18:53:19 2018 client_config_dir = '[UNDEF]'
Sun Jun 03 18:53:19 2018 ccd_exclusive = DISABLED
Sun Jun 03 18:53:19 2018 tmp_dir = 'C:\Users\z0ddak\AppData\Local\Temp\'
Sun Jun 03 18:53:19 2018 push_ifconfig_defined = DISABLED
Sun Jun 03 18:53:19 2018 push_ifconfig_local = 0.0.0.0
Sun Jun 03 18:53:19 2018 push_ifconfig_remote_netmask = 0.0.0.0
Sun Jun 03 18:53:19 2018 push_ifconfig_ipv6_defined = DISABLED
Sun Jun 03 18:53:19 2018 push_ifconfig_ipv6_local = ::/0
Sun Jun 03 18:53:19 2018 push_ifconfig_ipv6_remote = ::
Sun Jun 03 18:53:19 2018 enable_c2c = DISABLED
Sun Jun 03 18:53:19 2018 duplicate_cn = DISABLED
Sun Jun 03 18:53:19 2018 cf_max = 0
Sun Jun 03 18:53:19 2018 cf_per = 0
Sun Jun 03 18:53:19 2018 max_clients = 1024
Sun Jun 03 18:53:19 2018 max_routes_per_client = 256
Sun Jun 03 18:53:19 2018 auth_user_pass_verify_script = '[UNDEF]'
Sun Jun 03 18:53:19 2018 auth_user_pass_verify_script_via_file = DISABLED
Sun Jun 03 18:53:19 2018 auth_token_generate = DISABLED
Sun Jun 03 18:53:19 2018 auth_token_lifetime = 0
Sun Jun 03 18:53:19 2018 client = ENABLED
Sun Jun 03 18:53:19 2018 pull = ENABLED
Sun Jun 03 18:53:19 2018 auth_user_pass_file = '[UNDEF]'
Sun Jun 03 18:53:19 2018 show_net_up = DISABLED
Sun Jun 03 18:53:19 2018 route_method = 3
Sun Jun 03 18:53:19 2018 block_outside_dns = DISABLED
Sun Jun 03 18:53:19 2018 ip_win32_defined = DISABLED
Sun Jun 03 18:53:19 2018 ip_win32_type = 3
Sun Jun 03 18:53:19 2018 dhcp_masq_offset = 0
Sun Jun 03 18:53:19 2018 dhcp_lease_time = 31536000
Sun Jun 03 18:53:19 2018 tap_sleep = 0
Sun Jun 03 18:53:19 2018 dhcp_options = DISABLED
Sun Jun 03 18:53:19 2018 dhcp_renew = DISABLED
Sun Jun 03 18:53:19 2018 dhcp_pre_release = DISABLED
Sun Jun 03 18:53:19 2018 domain = '[UNDEF]'
Sun Jun 03 18:53:19 2018 netbios_scope = '[UNDEF]'
Sun Jun 03 18:53:19 2018 netbios_node_type = 0
Sun Jun 03 18:53:19 2018 disable_nbt = DISABLED
Sun Jun 03 18:53:19 2018 OpenVPN 2.4.4 x86_64-w64-mingw32 [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [AEAD] built on Sep 26 2017
Sun Jun 03 18:53:19 2018 Windows version 6.2 (Windows 8 or greater) 64bit
Sun Jun 03 18:53:19 2018 library versions: OpenSSL 1.0.2l 25 May 2017, LZO 2.10
Sun Jun 03 18:53:19 2018 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
Sun Jun 03 18:53:19 2018 Need hold release from management interface, waiting...
Sun Jun 03 18:53:20 2018 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:25340
Sun Jun 03 18:53:20 2018 MANAGEMENT: CMD 'state on'
Sun Jun 03 18:53:20 2018 MANAGEMENT: CMD 'log all on'
Sun Jun 03 18:53:20 2018 MANAGEMENT: CMD 'echo all on'
Sun Jun 03 18:53:20 2018 MANAGEMENT: CMD 'hold off'
Sun Jun 03 18:53:20 2018 MANAGEMENT: CMD 'hold release'
Sun Jun 03 18:53:20 2018 Outgoing Control Channel Authentication: Using 256 bit message hash 'SHA256' for HMAC authentication
Sun Jun 03 18:53:20 2018 Incoming Control Channel Authentication: Using 256 bit message hash 'SHA256' for HMAC authentication
Sun Jun 03 18:53:20 2018 Control Channel MTU parms [ L:1621 D:1172 EF:78 EB:0 ET:0 EL:3 ]
Sun Jun 03 18:53:20 2018 Data Channel MTU parms [ L:1621 D:1450 EF:121 EB:406 ET:0 EL:3 ]
Sun Jun 03 18:53:20 2018 Local Options String (VER=V4): 'V4,dev-type tun,link-mtu 1569,tun-mtu 1500,proto UDPv4,keydir 1,cipher AES-256-CBC,auth SHA256,keysize 256,tls-auth,key-method 2,tls-client'
Sun Jun 03 18:53:20 2018 Expected Remote Options String (VER=V4): 'V4,dev-type tun,link-mtu 1569,tun-mtu 1500,proto UDPv4,keydir 0,cipher AES-256-CBC,auth SHA256,keysize 256,tls-auth,key-method 2,tls-server'
Sun Jun 03 18:53:20 2018 TCP/UDP: Preserving recently used remote address: [AF_INET]x.x.x.x:1194
Sun Jun 03 18:53:20 2018 Socket Buffers: R=[65536->65536] S=[65536->65536]
Sun Jun 03 18:53:20 2018 UDP link local: (not bound)
Sun Jun 03 18:53:20 2018 UDP link remote: [AF_INET]x.x.x.x:1194
Sun Jun 03 18:53:20 2018 MANAGEMENT: >STATE:1528026800,WAIT,,,,,,
Sun Jun 03 18:54:20 2018 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Sun Jun 03 18:54:20 2018 TLS Error: TLS handshake failed...
...
Что можете сказать по поводу Docker-контейнеров, например. Изолированные среды, никакой виртуализации, мгновенная расширяемость, отказоустойчивость и возможность смены провайдеров...
А что вы подразумеваете под "большим"?... По версии Google, сервисы на OpenVPN-инстансах прекрасно тянут по 200-300 одновременных подключений, с учетом указанной мною конфигурацией железа...
Можете более подробно развернуть вашу мысль?... Спс.
Да, это прогнозируемо... Подскажите, есть ли какие нибудь толковые скрипты-надстройки над OpenVPN для отладки шейпирования клиентского трафика? ...или всё придётся "ручками забивать"?..