Bug#862855: e2guardian: Google Chrome changed certificate requirements making mitm unusable

2017-05-31 Thread Mike Gabriel

Control: found -1 - 3.4.0.3
Control: found -1 3.4.0.3-1
Control: forwarded -1 https://github.com/e2guardian/e2guardian/issues/216

On  Mo 22 Mai 2017 22:02:54 CEST, Mike Gabriel wrote:


Hi Jose,

On  Mi 17 Mai 2017 19:11:53 CEST, JoseTorres wrote:


Package: e2guardian
Version: 3.4.0.3
Severity: important

Dear Maintainer,

Please refer to e2guardian github Issues:
https://github.com/e2guardian/e2guardian/issues/216
Bug was fixed in e2guardian v 4.1


I left a comment with the upstream bug #216. Hopefully, someone from  
upstream makes another backport to the 3.4 branch.


Greets,
Mike


Updating some meta info fields of this bug. I am in the process of  
hopefully getting a fix for this into Debian 9.


Greets,
Mike
--

DAS-NETZWERKTEAM
mike gabriel, herweg 7, 24357 fleckeby
mobile: +49 (1520) 1976 148
landline: +49 (4354) 8390 139

GnuPG Fingerprint: 9BFB AEE8 6C0A A5FF BF22  0782 9AF4 6B30 2577 1B31
mail: mike.gabr...@das-netzwerkteam.de, http://das-netzwerkteam.de



pgpqYXoDj4r4f.pgp
Description: Digitale PGP-Signatur


Bug#862855: e2guardian: Google Chrome changed certificate requirements making mitm unusable

2017-05-22 Thread Mike Gabriel

Hi Jose,

On  Mi 17 Mai 2017 19:11:53 CEST, JoseTorres wrote:


Package: e2guardian
Version: 3.4.0.3
Severity: important

Dear Maintainer,

Please refer to e2guardian github Issues:
https://github.com/e2guardian/e2guardian/issues/216
Bug was fixed in e2guardian v 4.1


I left a comment with the upstream bug #216. Hopefully, someone from  
upstream makes another backport to the 3.4 branch.


Greets,
Mike
--

DAS-NETZWERKTEAM
mike gabriel, herweg 7, 24357 fleckeby
mobile: +49 (1520) 1976 148
landline: +49 (4354) 8390 139

GnuPG Fingerprint: 9BFB AEE8 6C0A A5FF BF22  0782 9AF4 6B30 2577 1B31
mail: mike.gabr...@das-netzwerkteam.de, http://das-netzwerkteam.de



pgpOQ7cKaw9lJ.pgp
Description: Digitale PGP-Signatur


Bug#862855: e2guardian: Google Chrome changed certificate requirements making mitm unusable

2017-05-17 Thread JoseTorres
Package: e2guardian
Version: 3.4.0.3
Severity: important

Dear Maintainer,

Please refer to e2guardian github Issues:
https://github.com/e2guardian/e2guardian/issues/216
Bug was fixed in e2guardian v 4.1


-- System Information:
Debian Release: 8.5
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 3.16.0-4-amd64 (SMP w/1 CPU core)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)

Versions of packages e2guardian depends on:
ii  adduser  3.113+nmu3
ii  libbz2-1.0   1.0.6-7+b3
ii  libc62.19-18+deb8u4
ii  libgcc1  1:4.9.2-10
ii  libpcre3 2:8.35-3.3+deb8u4
ii  libstdc++6   4.9.2-10
ii  libtommath0  0.42.0-1.1
ii  perl 5.20.2-3+deb8u6
ii  zlib1g   1:1.2.8.dfsg-2+b1

e2guardian recommends no packages.

Versions of packages e2guardian suggests:
pn  clamav
pn  clamav-freshclam  
pn  squid 

-- Configuration Files:
/etc/e2guardian/contentscanners/clamav.conf [Errno 2] No such file or 
directory: u'/etc/e2guardian/contentscanners/clamav.conf'
/etc/e2guardian/e2guardian.conf changed:
languagedir = '/usr/share/e2guardian/languages'
language = 'ukenglish'
loglevel = 3
logexceptionhits = 2
logfileformat = 3
anonymizelogs = off
loglocation = '/var/log/e2guardian/access.log'
dstatlocation = '/var/log/e2guardian/dstats.log'
filterip = 192.168.1.20
filterports = 8080
proxyip = 192.168.1.1
proxyport = 3128
proxytimeout = 20
proxyexchange = 20
pcontimeout = 55
usecustombannedimage = on
custombannedimagefile = '/usr/share/e2guardian/transparent1x1.gif'
usecustombannedflash = on
custombannedflashfile = '/usr/share/e2guardian/blockedflash.swf'
filtergroups = 3
filtergroupslist = '/etc/e2guardian/lists/filtergroupslist'
bannediplist = '/etc/e2guardian/lists/bannediplist'
exceptioniplist = '/etc/e2guardian/lists/exceptioniplist'
showweightedfound = on
urlcachenumber = 1000
urlcacheage = 900
scancleancache = on
phrasefiltermode = 2
preservecase = 0
hexdecodecontent = off
forcequicksearch = off
reverseaddresslookups = on
reverseclientiplookups = on
logclienthostnames = on
prefercachedlists = off
maxcontentfiltersize = 256
maxcontentramcachescansize = 2000
maxcontentfilecachescansize = 2
filecachedir = '/tmp'
deletedownloadedtempfiles = on
initialtrickledelay = 20
trickledelay = 10
downloadmanager = '/etc/e2guardian/downloadmanagers/fancy.conf'
downloadmanager = '/etc/e2guardian/downloadmanagers/default.conf'
contentscannertimeout = 60
contentscanexceptions = off
authplugin = '/etc/e2guardian/authplugins/proxy-basic.conf'
recheckreplacedurls = off
forwardedfor = off
usexforwardedfor = off
logconnectionhandlingerrors = on
logsslerrors = off
logchildprocesshandling = off
maxchildren = 180
minchildren = 20
minsparechildren = 16
preforkchildren = 10
maxsparechildren = 32
maxagechildren = 500
maxips = 0
ipcfilename = '/tmp/.e2guardianipc'
urlipcfilename = '/tmp/.e2guardianurlipc'
ipipcfilename = '/tmp/.e2guardianipipc'
nodaemon = off
nologger = off
logadblocks = off
loguseragent = off
softrestart = off
mailer = '/usr/sbin/sendmail -t'
cacertificatepath = '/usr/local/etc/e2guardian/e2g_rootCA.crt'
caprivatekeypath = '/usr/local/etc/e2guardian/private_root.pem'
certprivatekeypath = '/usr/local/etc/e2guardian/private_cert.pem'
generatedcertpath = '/usr/local/etc/e2guardian/generatedcerts/'

/etc/e2guardian/e2guardianf1.conf changed:
groupmode = 1
groupname = 'Blockall'
ssllegacylogic = off
bannedphraselist = '/etc/e2guardian/lists/bannedphraselist'
weightedphraselist = '/etc/e2guardian/lists/weightedphraselist'
exceptionphraselist = '/etc/e2guardian/lists/exceptionphraselist'
bannedsitelist = '/etc/e2guardian/lists/bannedsitelist'
greysitelist = '/etc/e2guardian/lists/greysitelist'
bannedsslsitelist = '/etc/e2guardian/lists/bannedsslsitelist'
greysslsitelist = '/etc/e2guardian/lists/greysslsitelist'
exceptionsitelist = '/etc/e2guardian/lists/exceptionsitelist'
bannedurllist = '/etc/e2guardian/lists/bannedurllist'
greyurllist = '/etc/e2guardian/lists/greyurllist'
exceptionurllist = '/etc/e2guardian/lists/exceptionurllist'
exceptionregexpurllist = '/etc/e2guardian/lists/exceptionregexpurllist'
bannedregexpurllist = '/etc/e2guardian/lists/bannedregexpurllist'
picsfile = '/etc/e2guardian/lists/pics'
contentregexplist = '/etc/e2guardian/lists/contentregexplist'
urlregexplist = '/etc/e2guardian/lists/urlregexplist'
refererexceptionsitelist = '/etc/e2guardian/lists/refererexceptionsitelist'
refererexceptionurllist = '/etc/e2guardian/lists/refererexceptionurllist'
embededreferersitelist = '/etc/e2guardian/lists/embededreferersitelist'
embededrefererurllist = '/etc/e2guardian/lists/embededrefererurllist'
urlredirectregexplist = '/etc/e2guardian/lists/urlredirectregexplist'
!! Not compiled !! authexceptionsitelist = 
'/etc/e2guardian/lists/authexceptionsitelist'
!! Not compiled !! authexceptionurllist =