Galène videoconferencing server discussion list archives
 help / color / mirror / Atom feed
From: Dirk-Willem van Gulik <dirkx@webweaving.org>
To: galene@lists.galene.org
Subject: [Galene] udp-port range and subsequent "turn" use of ports outside that range
Date: Sun, 11 Feb 2024 15:39:44 +0100	[thread overview]
Message-ID: <FDBAF8BA-3412-42A9-AE49-8923A18BDAA4@webweaving.org> (raw)

I've got a minor puzzle in a fairly simple setup; where galene is behind a reverse proxy & in a freebsd jail (to co-exist with another video/blackboard/sip servers).

The web and web-socket proportion is fine; as is, I think TURN:

	... 2024/02/11 13:44:29 Starting built-in TURN server on 127.0.1.12:1194
	... 2024/02/11 13:44:29 Relay test successful in 6.018877ms, RTT = 71.363µs

The latter is given a limited range with

	 -turn <outside-ip-address>:1194 -udp-range 18100-19100

which is let through by the firewall (as is 1194 of course), etc in both directions. 

But I am seeing errors:

	turn ERROR: 2024/02/11 14:26:36 Failed to handle datagram: 
		unable to handle ChannelData from 127.0.1.12:32895: 
		failed writing to socket: write udp4 127.0.1.12:24074->DESTINATION_IP:54924: 
			sendto: permission denied

and note that the port numbers under control of Galene appear to be outside the provided 18100-19100 range.

Does the range also be specified somewhere else ? This is 'stock' galene against the https://github.com/jech/galene/releases/tag/galene-0.8 tag.

With kind regards,

Dw.


galene-0.8_1
Name           : galene
Version        : 0.8_1
Installed on   : Sun Feb 11 12:55:49 2024 UTC
Origin         : www/galene
Architecture   : FreeBSD:13:amd64
Prefix         : /usr/local
Categories     : www net-im
Licenses       : MIT
Maintainer     : bapt@FreeBSD.org
WWW            : https://galene.org
Comment        : The Galène videoconference server
Options        :
DOCS           : on
Annotations    :
FreeBSD_version: 1302001
build_timestamp: 2024-01-07T22:34:10+0000
built_by       : poudriere-git-3.4.0
port_checkout_unclean: no
port_git_hash  : 756e18783
ports_top_checkout_unclean: no
ports_top_git_hash: 756e18783
repo_type      : binary
repository     : FreeBSD
Flat size      : 12.2MiB


             reply	other threads:[~2024-02-11 14:42 UTC|newest]

Thread overview: 8+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2024-02-11 14:39 Dirk-Willem van Gulik [this message]
2024-02-11 17:56 ` [Galene] " Juliusz Chroboczek
2024-02-11 20:53   ` Dirk-Willem van Gulik
2024-02-11 22:14     ` Juliusz Chroboczek
2024-02-15 15:02       ` Dirk-Willem van Gulik
2024-02-15 18:09         ` Juliusz Chroboczek
2024-02-15 18:12           ` Dirk-Willem van Gulik
2024-02-22 22:38         ` Juliusz Chroboczek

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

  List information: https://lists.galene.org/postorius/lists/galene.lists.galene.org/

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=FDBAF8BA-3412-42A9-AE49-8923A18BDAA4@webweaving.org \
    --to=dirkx@webweaving.org \
    --cc=galene@lists.galene.org \
    --subject='Re: [Galene] udp-port range and subsequent "turn" use of ports outside that range' \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox