-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Hi,
during setup of permissions module I found that module parameters
"default_allow_file" and "default_deny_file" doesn't seem to work
as
expected.
No mater what filename I configured permissions.so always checks for
"permissions.allow" resp. "permissions.deny" files in openser's
main
config directory.
Here is openser's level 3 console output:
Mar 11 16:25:49 [3235] WARNING:core:main: no fork mode
Mar 11 16:25:49 [3235] INFO:core:init_tcp: using epoll_lt as the TCP io
watch method (auto detected)
Mar 11 16:25:49 [3235] NOTICE:core:main: version: openser
1.4.0dev0-notls (x86_64/linux)
Mar 11 16:25:49 [3235] INFO:core:main: using 32 Mb shared memory
Mar 11 16:25:49 [3235] INFO:core:main: using 1 Mb private memory per process
Mar 11 16:25:49 [3235] INFO:xlog:mod_init: initializing...
Mar 11 16:25:49 [3235] INFO:sl:mod_init: Initializing StateLess engine
Mar 11 16:25:49 [3235] INFO:tm:mod_init: TM - initializing...
Mar 11 16:25:49 [3235] INFO:maxfwd:mod_init: initializing...
Mar 11 16:25:49 [3235] INFO:usrloc:ul_init_locks: locks array size 512
Mar 11 16:25:49 [3235] INFO:registrar:mod_init: initializing...
Mar 11 16:25:49 [3235] INFO:textops:mod_init: initializing...
Mar 11 16:25:49 [3235] INFO:auth:mod_init: initializing...
Mar 11 16:25:49 [3235] INFO:auth_db:mod_init: initializing...
Mar 11 16:25:49 [3235] INFO:avpops:avpops_init: initializing...
Mar 11 16:25:49 [3235] WARNING:permissions:parse_config_file: file not
found: etc/openser/permissions.allow
Mar 11 16:25:49 [3235] WARNING:permissions:mod_init: default allow file
(etc/openser/permissions.allow) not found => empty rule set
Mar 11 16:25:49 [3235] WARNING:permissions:parse_config_file: file not
found: etc/openser/permissions.deny
Mar 11 16:25:49 [3235] WARNING:permissions:mod_init: default deny file
(etc/openser/permissions.deny) not found => empty rule set
And here is my permissions config:
# -- permissions --
loadmodule "permissions.so"
modparam("permissions", "default_allow_file",
"permissionddds.allow")
modparam("permissions", "default_deny_file",
"/opt/app/voip/openser/etc/permissionddds.deny")
modparam("permissions", "check_all_branches", 1)
modparam("permissions", "allow_suffix", ".allow")
modparam("permissions", "deny_suffix", ".deny")
modparam("permissions", "address_table", "address")
modparam("permissions", "grp_col", "grp")
modparam("permissions", "ip_addr_col", "ip_addr")
modparam("permissions", "mask_col", "mask")
modparam("permissions", "port_col", "port")
modparam("permissions", "db_mode", 0)
modparam("permissions", "trusted_table", "trusted")
modparam("permissions", "source_col", "src_ip")
modparam("permissions", "proto_col", "proto")
modparam("permissions", "from_col", "from_pattern")
modparam("permissions", "tag_col", "tag")
modparam("permissions", "peer_tag_avp", "")
I use openser 1.4 build 3384
regards
helmut
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (MingW32)
Comment: Using GnuPG with Mozilla -
http://enigmail.mozdev.org
iD4DBQFH1qUP4tZeNddg3dwRAmPbAJiQAKWUzSoUVJx2iPjJEzT+PpKvAJ9Cwgqh
Q5z67Xb1/Oze+QK4aqHPNA==
=fjgt
-----END PGP SIGNATURE-----