Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Problem with AIS Cloudflare #16

Open
kokot1973 opened this issue Oct 18, 2024 · 1 comment
Open

Problem with AIS Cloudflare #16

kokot1973 opened this issue Oct 18, 2024 · 1 comment

Comments

@kokot1973
Copy link

The problem

As of today, I'm having trouble starting the Cloudflare tunnel on all my AIS gateways

What version of Cloudflared has the issue?

0.1.13

What was the last working version of Cloudflared?

0.1.13

What type of installation are you running?

Home Assistant Supervised

Add-on YAML Configuration

No response

Anything in the logs that might be useful for us?

Proszę o pomoc, nie uruchamia się tunel: debug z logów

[11:21:19] INFO: Checking add-on config...
[11:21:20] INFO: Checking for existing certificate...
[11:21:20] NOTICE: No certificate found
[11:21:20] DEBUG: Checking connectivity to Cloudflare
[11:21:20] DEBUG: Checking region1.v2.argotunnel.com TCP port 7844
[11:21:20] DEBUG: Checking region1.v2.argotunnel.com UDP port 7844
[11:21:21] DEBUG: Checking region2.v2.argotunnel.com TCP port 7844
[11:21:22] DEBUG: Checking region2.v2.argotunnel.com UDP port 7844
[11:21:23] DEBUG: Checking api.cloudflare.com TCP port 443
[11:21:23] INFO: Checking the subdomain...
[11:21:23] NOTICE: Please wait for subdomain check in AIS
  % Total    % Received % Xferd  Average Speed   Time    Time     Time  Current
                                 Dload  Upload   Total   Spent    Left  Speed

  0     0    0     0    0     0      0      0 --:--:-- --:--:-- --:--:--     0*   Trying 172.67.150.220:443...
* Connected to powiedz.co (172.67.150.220) port 443
* ALPN: curl offers h2,http/1.1
} [5 bytes data]
* TLSv1.3 (OUT), TLS handshake, Client hello (1):
} [512 bytes data]
*  CAfile: /etc/ssl/certs/ca-certificates.crt
*  CApath: /etc/ssl/certs

  0     0    0     0    0     0      0      0 --:--:-- --:--:-- --:--:--     0{ [5 bytes data]
* TLSv1.3 (IN), TLS handshake, Server hello (2):
{ [122 bytes data]
* TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8):
{ [19 bytes data]
* TLSv1.3 (IN), TLS handshake, Certificate (11):
{ [2525 bytes data]
* TLSv1.3 (IN), TLS handshake, CERT verify (15):
{ [79 bytes data]
* TLSv1.3 (IN), TLS handshake, Finished (20):
{ [52 bytes data]
* TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1):
} [1 bytes data]
* TLSv1.3 (OUT), TLS handshake, Finished (20):
} [52 bytes data]
* SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384
* ALPN: server accepted h2
* Server certificate:
*  subject: CN=powiedz.co
*  start date: Aug 20 17:36:18 2024 GMT
*  expire date: Nov 18 17:36:17 2024 GMT
*  subjectAltName: host "powiedz.co" matched cert's "powiedz.co"
*  issuer: C=US; O=Google Trust Services; CN=WE1
*  SSL certificate verify ok.
} [5 bytes data]
* using HTTP/2
* Server auth using Basic with user 'mojadomena'
* [HTTP/2] [1] OPENED stream for https://powiedz.co/ords/dom/dom/set_tunnel_subdomain
* [HTTP/2] [1] [:method: POST]
* [HTTP/2] [1] [:scheme: https]
* [HTTP/2] [1] [:authority: powiedz.co]
* [HTTP/2] [1] [:path: /ords/dom/dom/set_tunnel_subdomain]
* [HTTP/2] [1] [authorization: Basic bWFuaWVrazpNb2pha29jaGFuYTE5NzQ=]
* [HTTP/2] [1] [user-agent: curl/8.4.0]
* [HTTP/2] [1] [accept: */*]
} [5 bytes data]
> POST /ords/dom/dom/set_tunnel_subdomain HTTP/2
> Host: powiedz.co
> Authorization: Basic bWFuaWVrazpNb2pha29jaGFuYTE5NzQ=
> User-Agent: curl/8.4.0
> Accept: */*
> 
{ [5 bytes data]
* TLSv1.3 (IN), TLS handshake, Newsession Ticket (4):
{ [230 bytes data]
* TLSv1.3 (IN), TLS handshake, Newsession Ticket (4):
{ [230 bytes data]
* old SSL session ID is stale, removing
{ [5 bytes data]
< HTTP/2 502 
< date: Fri, 18 Oct 2024 09:21:24 GMT
< content-type: text/plain; charset=UTF-8
< content-length: 15
< report-to: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=KJCsFXGqd2ig9IwF9pPvKfX8M8D5HX3ttQHeDzkOCwxo7k0RGvm9sYGU3Uunu68SB%2BW%2BFB%2FcGGASzswq5K6kdqQ2FJVu3Erq50%2FjJ6az32XyJDBPmff4ff9VZR2I"}],"group":"cf-nel","max_age":604800}
< nel: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
< x-frame-options: SAMEORIGIN
< referrer-policy: same-origin
< cache-control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0
< expires: Thu, 01 Jan 1970 00:00:01 GMT
< server: cloudflare
< cf-ray: 8d4775425b2a3bc6-WAW
< alt-svc: h3=":443"; ma=86400
* The requested URL returned error: 502

  0    15    0     0    0     0      0      0 --:--:-- --:--:-- --:--:--     0
* Connection #0 to host powiedz.co left intact
curl: (22) The requested URL returned error: 502
[11:21:25] FATAL: Failed to use subdomain: mojadomena, maybe somebody reserved it. Check the name and password.
s6-rc: warning: unable to start service init-cloudflared-config: command exited 1
/run/s6/basedir/scripts/rc.init: warning: s6-rc failed to properly bring all the services up! Check your logs (in /run/uncaught-logs/current if you have in-container logging) for more information.
/run/s6/basedir/scripts/rc.init: fatal: stopping the container.

Steps to reproduce the issue

Reinstall Add-On

Additional information

No response

@lyczko
Copy link

lyczko commented Oct 23, 2024

After update to 0.1.15:
FATAL: Failed to use subdomain: mojadomena, maybe somebody reserved it. Check the name and password.
s6-rc: warning: unable to start service init-cloudflared-config: command exited 1

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants