From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from mail-wr1-x430.google.com (mail-wr1-x430.google.com [IPv6:2a00:1450:4864:20::430]) by mail.toke.dk (Postfix) with ESMTPS id 84A558293D8 for ; Fri, 9 Apr 2021 20:17:53 +0200 (CEST) Authentication-Results: mail.toke.dk; dkim=pass (2048-bit key) header.d=rouillier-fr.20150623.gappssmtp.com header.i=@rouillier-fr.20150623.gappssmtp.com header.b=f1vRKpex Received: by mail-wr1-x430.google.com with SMTP id f12so6543610wro.0 for ; Fri, 09 Apr 2021 11:17:53 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=rouillier-fr.20150623.gappssmtp.com; s=20150623; h=mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=REY2DC4sV6n+ERmpvcIuXNERzLaxbYTiLl4vMmKO3ew=; b=f1vRKpex+IwdmRydEIxgCWLg+iVU5+j6PHYEAA8rzFCnG3XvGVmqA/zewtBZVsDnEB y7k8zPZNHn94PNF/wfgHpVN/60YwNU2xNxOoJWDfFb/rSEAEHUeMrlqSLSaF1fcXzRsh JqRWVM03TNeFTsL2+J97NoBNuElkfGDvrFm1INsz8yYWvDdEVNOAboSwpk+Z1uISMQys 72ny5O8A328tM/KoOsaKeuO5VZ8Lzr44RZ548r32JwrwmjRkrUAp6V3n92b7GQOe1gCE AF36sXD4M7t3wEzrY9rYYlzvdDiL5slnVyK4qQ1YJNqOgc+oXpYMIagrNVGatCVdShMq Q3Sg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=REY2DC4sV6n+ERmpvcIuXNERzLaxbYTiLl4vMmKO3ew=; b=ZELxJFA+Yszjs2VOlrY3ThIMWWXZkaAPZ2SqjORRGpB1w+aEtcWSHdF54TT2WY2plY A7+ycUPRqaYnRD4PTHfSTlngvAG8kx6uiMjUQfNfOW32n8JsfNFQH16hZB71JkarXA0Q 9O0ByLPDUda3z23tXQOH7L8VQUNALncKPHjfyx6eG03uffYvKnVi7iGPkeiTXk9SUr55 DSiaHtamrCQblydgRi92HzDiGoQzi75eRg5tODx8BX3SzaknVaNL5X/xLWZQv3ubkFAP 9OYgopFNs6FGhnGyrgYX456J0sutHTBMjcLIBqTd/Vrd/AAnIeqfnUCSNZsy0Eh+b0KJ oarA== X-Gm-Message-State: AOAM532hCmsxiJGvwcQKxRnFCCuBLjnAYSVZnm4nEGhxJx9Om93xe8wc YS/iMhdPGEb/jRiC91gEnOAM5SNgsIDEoz3K X-Google-Smtp-Source: ABdhPJxh3BVOYZJC8bIShfPRwLB638LPOdd4p4kMLNWP/JckvFWJH4R+26XIgWikPpPTXfOaGA3+6A== X-Received: by 2002:adf:f7d2:: with SMTP id a18mr19087901wrq.262.1617992270113; Fri, 09 Apr 2021 11:17:50 -0700 (PDT) Received: from ?IPv6:2a01:e0a:29d:45e0:54c7:6277:d1e1:3605? ([2a01:e0a:29d:45e0:54c7:6277:d1e1:3605]) by smtp.gmail.com with ESMTPSA id f8sm5662878wro.29.2021.04.09.11.17.49 (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Fri, 09 Apr 2021 11:17:49 -0700 (PDT) Content-Type: text/plain; charset=utf-8 Mime-Version: 1.0 (Mac OS X Mail 14.0 \(3654.60.0.2.21\)) From: Fabrice Rouillier In-Reply-To: <21640176-922A-4715-A0E3-DE5BEFECD720@rouillier.fr> Date: Fri, 9 Apr 2021 20:17:48 +0200 Content-Transfer-Encoding: quoted-printable Message-Id: References: <6AF7B2D8-D370-432F-BCB8-C714C1DED4CC@rouillier.fr> <2bf5e895-c758-62d4-68a1-1c747268bb26@crans.org> <09B3386F-42F0-4A30-A1F9-B65CCC106A4E@rouillier.fr> <2540d5d9-6ac8-d6f6-f468-565e98853d43@crans.org> <21640176-922A-4715-A0E3-DE5BEFECD720@rouillier.fr> To: Alexandre IOOSS X-Mailer: Apple Mail (2.3654.60.0.2.21) Message-ID-Hash: OATHI4K5IRNTQPIHJ5H3HEEWOUEFFTC2 X-Message-ID-Hash: OATHI4K5IRNTQPIHJ5H3HEEWOUEFFTC2 X-MailFrom: fabrice@rouillier.fr X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header CC: galene@lists.galene.org X-Mailman-Version: 3.3.4 Precedence: list Subject: [Galene] Re: Galene Turn List-Id: =?utf-8?q?Gal=C3=A8ne_videoconferencing_server_discussion_list?= Archived-At: List-Archive: List-Help: List-Owner: List-Post: List-Subscribe: List-Unsubscribe: A complement due to my last try : the coturn server and the Galene = server can co-exist on the same machine and everything works fine. So one should concentrate on the -turn EXTERNAL_IP:1194 that does not = work properly with such a specific configuration. =20 Cheers, Fabrice. > Le 9 avr. 2021 =C3=A0 19:36, Fabrice Rouillier = a =C3=A9crit : >=20 > First : I have founded a solution using a second server (still in a VM = behind my rooter) implementing coturn, so I have now a working solution = without any additional material. >=20 > But I am interesting in using the builtin turn so I will pay time to = test and try to understand. >=20 >> Are you running Gal=C3=A8ne in a container, or directly on the = machine? >=20 > Directly on the machine. >=20 >> Does your server have a firewall that would restrict 1194 in TCP/UDP? >>=20 > No. >=20 >> Last idea that might help to find the issue: you can try to scan for >> open ports on your public IP using `nmap`. You should see "openvpn" = service. >>=20 > Good idea, I will try. >=20 > Best, >=20 > Fabrice. >=20 >> ``` >> $ sudo nmap -sS -1194 PUBLIC_IP >> Starting Nmap 7.80 ( https://nmap.org ) at 2021-04-09 19:05 CEST >> Nmap scan report for PUBLIC_IP >> Host is up (0.014s latency). >>=20 >> PORT STATE SERVICE >> 1194/tcp open openvpn >>=20 >> Nmap done: 1 IP address (1 host up) scanned in 0.15 seconds >> ``` >>=20 >> Best, >>=20 >> --=20 >> Alexandre >=20