On Tue, 2012-11-20 at 15:47 -0500, David Raynor wrote:
> On Tue, Nov 20, 2012 at 3:07 PM, Greg Folkert <[email protected]> wrote:
> 
> > Warning, this is longer than I intended. and "updates.blah.com" is a
> > replacement for my real machine name.
> >
> > I am trying to use a local ClamAV-DB mirror, I've put in place the
> > clamdownloader.pl, which works a treat, once I added a couple CPAN
> > modules to my machine.
> >
> > I've also got a local webserver, responding to "updates.blah.com" with
> > all the proper files in the DocumentRoot:
[...snip...]
> >
> > Again, I'm not even seeing freshclam http requests going to my local
> > webserver.
> >
> > Pointer to the fix or a pointer to the exact location in TFM would be
> > great.
> >
> > Cheers and Thanks!
> >
> 
> I assume you are intentionally trying to set up your own mirror without
> setting PrivateMirror to yes. The fact that your server is not seeing any
> get requests is concerning, and I cannot help if you have any networking
> issues so YMMV.

I'm sorry, I've completely missed that option... its not in the Config
File. Its also not in "man 5 freshclam.conf" Please point a sad soul in
the right direction to use it proper, Pretty Please, with Strawberries,
Cream and Brulee!

If you are referring to:
https://github.com/vrtadmin/clamav-faq/blob/master/mirrors/CvdPrivateMirror.md

I've followed #3 quite well. Including getting clamdownloader.pl to
work.

As I said before, this same vhost is serving a private CentOS v4/v5/v6
mirror and a private RPMForge EL4/EL5/EL6 mirror as well. It seemed a
simple challenge to add this function to it.

I do have networking issues... but those are not related to this...
since they are firewalls setup between various points of my networks.
PCI Compliance can be very severe. I have a private network between all
public firewalls to facilitate management and High Availablity. I have
the public side of the edge firewalls, the private side of the edge
firewalls being the DMZ. I have another Set of Firewalls/Routers between
the DMZ and my "Black and Grey Networks" and another Firewall/Router set
between the Grey Network and my White network... not to mention all
application and Database server are behind "application" firewalls
besides.

BUT ANYWAY... needless to say, connectivity to my "updates" web server
is fine to all parts any of my networks.

> Here are two things I can pass on:
> 1) Run freshclam with --verbose to get more information on just what it is
> doing and where it is going wrong. With verbose, you should see it tell you
> exactly what URL it is trying to fetch, a line like "Retrieving
> http://updates.blah.com/main.cvd";

Thanks, I'll do this... for some reason, I'm baffled I didn't do that
before.

> 2) "ScriptedUpdates no" should suppress any attempts to retrieve the cdiff
> files. Your last log must have been without ScriptedUpdates set to no.
> Could it be getting a different configuration file?

Yes, of course it was before I changed to:
        ScriptedUpdates no

> Good luck,
Thanks! I'll need it.

-- 
greg folkert - systems administration and support
web:    donor.com
email:  [email protected]
phone:  877-751-3300 x416
direct: 616-328-6449 (direct dial and fax)
"It takes a great man to be a good listener."
    -- Calvin Coolidge

_______________________________________________
Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net
http://www.clamav.net/support/ml

Reply via email to