Re: Timeout SSH session

2017-02-09 Thread Mike Jumper
It should be.

Feel like opening a feature request in JIRA?


On Thu, Feb 9, 2017 at 11:11 PM, Mark van den Boogaard <
mark.vanden.booga...@davantigroup.com> wrote:

> I just was reading that article after Mike's comment ;-). It seems to be
> valid in our case, but... The servers we are connecting to are not our
> servers. We support an application on those servers and most of the times
> we don't have any root access.
> At client side with a "normal" ssh client (the default on any linux
> client) it is possible to implement "ServerAliveInterval" on client side so
> it will send every x seconds a "alive" message. Is it possible to implement
> this (or something similar) in Guacamole?
>
> --
>
> Met vriendelijke groet / with kind regards,
>
> *Mark van den Boogaard*
> Linux specialist
>
> ​​
>
> Mob: +31 6 82241436 <+31%206%2082241436>
> E-Mail: mark.van.den.booga...@davantigroup.com
> Web: www.davantigroup.com
>
> *Davanti Warehousing B.V.*
> Hogeweg 35E, Postbus 2601, 5300 CB Zaltbommel
>
> -Original Message-
> *From*: Paul Cantle 
> >
> Reply-to: 
> *To*: user@guacamole.incubator.apache.org  apache.org
> <%22u...@guacamole.incubator.apache.org%22%20%3cu...@guacamole.incubator.apache.org%3e>>,
> user@guacamole.incubator.apache.org  <%22u...@guacamole.incubator.apache.org%22%20%3cu...@guacamole.incubator.apache.org%3e>
> >
> *Subject*: Re: Timeout SSH session
> *Date*: Fri, 10 Feb 2017 07:04:56 +
>
> Have a look here to adjust the server side settings
>
> https://docs.oseems.com/general/application/ssh/disable-timeout
>
> Maybe that will help
>
>
>
>
>
> On Fri, Feb 10, 2017 at 6:51 AM +, "Mike Jumper" <
> mike.jum...@guac-dev.org> wrote:
>
> Could it be the SSH server itself that is timing out the session? If I
> remember correctly, sshd does have client timeout settings.
>
> - Mike
>
>
> On Thu, Feb 9, 2017 at 10:34 PM, Mark van den Boogaard <
> mark.vanden.booga...@davantigroup.com> wrote:
>
> Hi,
>
> I did some tests. After half an hour of inactivity the session is not
> responding anymore. I did a ping on the same time but didn't had any packet
> loss.
> We are using Guacamole 0.9.10 with MySQL (MariaDB) backend and LDAP
> authentication (to Active Directory) on CentOS 7.3.1611.
> We are using Apache as proxy
>
> [root  ~]# mysql --version
> mysql  Ver 15.1 Distrib 10.1.21-MariaDB, for Linux (x86_64) using readline
> 5.1
>
> [root  ~]# cat /etc/redhat-release
> CentOS Linux release 7.3.1611 (Core)
>
> [root  ~]# cat /etc/httpd/conf.d/guacamole.conf
> ProxyPass / http://localhost:8080/guacamole/ flushpackets=on
> ProxyPassReverse / http://localhost:8080/guacamole/
> ProxyPassReverseCookiePath /guacamole/ /
>
> 
> Order allow,deny
> Allow from all
> ProxyPass ws://localhost:8080/guacamole/websocket-tunnel
> ProxyPassReverse ws://localhost:8080/guacamole/websocket-tunnel
> 
>
> /var/log/messages:
> Feb 10 06:49:45  guacd[33566]: Creating new client for protocol
> "ssh"
> Feb 10 06:49:45  guacd[33566]: Connection ID is
> "$98447e17-d5ae-4b65-879d-b766e7888a78"
> Feb 10 06:49:45  guacd[10483]: User
> "@1460e686-4dc3-401d-8ba9-0686d98bc348" joined connection
> "$98447e17-d5ae-4b65-879d-b766e7888a78" (1 users now present)
> Feb 10 06:49:45  server: 06:49:45.156 [http-bio-8080-exec-1089]
> INFO  o.a.g.tunnel.TunnelRequestService - User "boogaardvandenm"
> connected to connection "157".
> Feb 10 06:49:45  guacd[10483]: SSH connection successful.
> Feb 10 06:50:01  systemd: Created slice user-0.slice.
> Feb 10 06:50:01  systemd: Starting user-0.slice.
> Feb 10 06:50:01  systemd: Started Session 3100 of user root.
> Feb 10 06:50:01  systemd: Starting Session 3100 of user root.
> Feb 10 06:50:01  systemd: Removed slice user-0.slice.
> Feb 10 06:50:01  systemd: Stopping user-0.slice.
> Feb 10 06:57:18  systemd: Starting Cleanup of Temporary
> Directories...
> Feb 10 06:57:18  systemd: Started Cleanup of Temporary
> Directories.
> Feb 10 07:00:01  systemd: Created slice user-0.slice.
> Feb 10 07:00:01  systemd: Starting user-0.slice.
> Feb 10 07:00:01  systemd: Started Session 3101 of user root.
> Feb 10 07:00:01  systemd: Starting Session 3101 of user root.
> Feb 10 07:00:01  systemd: Removed slice user-0.slice.
> Feb 10 07:00:01  systemd: Stopping user-0.slice.
> Feb 10 07:01:01  systemd: Created slice user-0.slice.
> Feb 10 07:01:01  systemd: Starting user-0.slice.
> Feb 10 07:01:01  systemd: Started Session 3102 of user root.
> Feb 10 07:01:01  systemd: Starting Session 3

Re: Timeout SSH session

2017-02-09 Thread Mark van den Boogaard
I just was reading that article after Mike's comment ;-). It seems to be valid 
in our case, but... The servers we are connecting to are not our servers. We 
support an application on those servers and most of the times we don't have any 
root access.
At client side with a "normal" ssh client (the default on any linux client) it 
is possible to implement "ServerAliveInterval" on client side so it will send 
every x seconds a "alive" message. Is it possible to implement this (or 
something similar) in Guacamole?


--

Met vriendelijke groet / with kind regards,

Mark van den Boogaard
Linux specialist

[cid:1486710713.5477.65.camel@davantigroup.com]​​

Mob: +31 6 82241436
E-Mail: 
mark.van.den.booga...@davantigroup.com<mailto:mark.van.den.booga...@davantigroup.com>
Web: www.davantigroup.com<http://www.davantigroup.com>

Davanti Warehousing B.V.
Hogeweg 35E, Postbus 2601, 5300 CB Zaltbommel

-Original Message-
From: Paul Cantle mailto:paul%20cantle%20%3cp...@cantle.me%3e>>
Reply-to: 
To: user@guacamole.incubator.apache.org 
mailto:%22u...@guacamole.incubator.apache.org%22%20%3cu...@guacamole.incubator.apache.org%3e>>,
 user@guacamole.incubator.apache.org 
mailto:%22u...@guacamole.incubator.apache.org%22%20%3cu...@guacamole.incubator.apache.org%3e>>
Subject: Re: Timeout SSH session
Date: Fri, 10 Feb 2017 07:04:56 +

Have a look here to adjust the server side settings

https://docs.oseems.com/general/application/ssh/disable-timeout

Maybe that will help





On Fri, Feb 10, 2017 at 6:51 AM +, "Mike Jumper" 
mailto:mike.jum...@guac-dev.org>> wrote:

Could it be the SSH server itself that is timing out the session? If I remember 
correctly, sshd does have client timeout settings.

- Mike


On Thu, Feb 9, 2017 at 10:34 PM, Mark van den Boogaard 
mailto:mark.vanden.booga...@davantigroup.com>>
 wrote:
Hi,

I did some tests. After half an hour of inactivity the session is not 
responding anymore. I did a ping on the same time but didn't had any packet 
loss.
We are using Guacamole 0.9.10 with MySQL (MariaDB) backend and LDAP 
authentication (to Active Directory) on CentOS 7.3.1611.
We are using Apache as proxy

[root<mailto:root@dvguac02> ~]# mysql --version
mysql  Ver 15.1 Distrib 10.1.21-MariaDB, for Linux (x86_64) using readline 5.1

[root<mailto:root@dvguac02> ~]# cat /etc/redhat-release
CentOS Linux release 7.3.1611 (Core)

[root<mailto:root@dvguac02> ~]# cat /etc/httpd/conf.d/guacamole.conf
ProxyPass / http://localhost:8080/guacamole/ flushpackets=on
ProxyPassReverse / http://localhost:8080/guacamole/
ProxyPassReverseCookiePath /guacamole/ /


Order allow,deny
Allow from all
ProxyPass ws://localhost:8080/guacamole/websocket-tunnel
ProxyPassReverse ws://localhost:8080/guacamole/websocket-tunnel


/var/log/messages:
Feb 10 06:49:45  guacd[33566]: Creating new client for protocol "ssh"
Feb 10 06:49:45  guacd[33566]: Connection ID is 
"$98447e17-d5ae-4b65-879d-b766e7888a78"
Feb 10 06:49:45  guacd[10483]: User 
"@1460e686-4dc3-401d-8ba9-0686d98bc348" joined connection 
"$98447e17-d5ae-4b65-879d-b766e7888a78" (1 users now present)
Feb 10 06:49:45  server: 06:49:45.156 [http-bio-8080-exec-1089] INFO  
o.a.g.tunnel.TunnelRequestService - User "boogaardvandenm" connected to 
connection "157".
Feb 10 06:49:45  guacd[10483]: SSH connection successful.
Feb 10 06:50:01  systemd: Created slice user-0.slice.
Feb 10 06:50:01  systemd: Starting user-0.slice.
Feb 10 06:50:01  systemd: Started Session 3100 of user root.
Feb 10 06:50:01  systemd: Starting Session 3100 of user root.
Feb 10 06:50:01  systemd: Removed slice user-0.slice.
Feb 10 06:50:01  systemd: Stopping user-0.slice.
Feb 10 06:57:18  systemd: Starting Cleanup of Temporary Directories...
Feb 10 06:57:18  systemd: Started Cleanup of Temporary Directories.
Feb 10 07:00:01  systemd: Created slice user-0.slice.
Feb 10 07:00:01  systemd: Starting user-0.slice.
Feb 10 07:00:01  systemd: Started Session 3101 of user root.
Feb 10 07:00:01  systemd: Starting Session 3101 of user root.
Feb 10 07:00:01  systemd: Removed slice user-0.slice.
Feb 10 07:00:01  systemd: Stopping user-0.slice.
Feb 10 07:01:01  systemd: Created slice user-0.slice.
Feb 10 07:01:01  systemd: Starting user-0.slice.
Feb 10 07:01:01  systemd: Started Session 3102 of user root.
Feb 10 07:01:01  systemd: Starting Session 3102 of user root.
Feb 10 07:01:01  systemd: Removed slice user-0.slice.
Feb 10 07:01:01  systemd: Stopping user-0.slice.
Feb 10 07:10:01  systemd: Created slice user-0.slice.
Feb 10 07:10:01  systemd: Starting user-0.slice.
Feb 10 07:10:01  systemd: Started Session 3103 of user root.
Feb 10 07:10:01  systemd: Starting Session 3103 of user root.
Feb 10 07:10:01  systemd: Removed slice user-0.slice.
Feb 10 07:10:01  systemd: Stopping user-0.slice.
Feb 10 07:20:01  systemd: Created slice

Re: Timeout SSH session

2017-02-09 Thread Paul Cantle
Have a look here to adjust the server side settings

https://docs.oseems.com/general/application/ssh/disable-timeout

Maybe that will help





On Fri, Feb 10, 2017 at 6:51 AM +, "Mike Jumper" 
mailto:mike.jum...@guac-dev.org>> wrote:

Could it be the SSH server itself that is timing out the session? If I remember 
correctly, sshd does have client timeout settings.

- Mike


On Thu, Feb 9, 2017 at 10:34 PM, Mark van den Boogaard 
mailto:mark.vanden.booga...@davantigroup.com>>
 wrote:
Hi,

I did some tests. After half an hour of inactivity the session is not 
responding anymore. I did a ping on the same time but didn't had any packet 
loss.
We are using Guacamole 0.9.10 with MySQL (MariaDB) backend and LDAP 
authentication (to Active Directory) on CentOS 7.3.1611.
We are using Apache as proxy

[root<mailto:root@dvguac02> ~]# mysql --version
mysql  Ver 15.1 Distrib 10.1.21-MariaDB, for Linux (x86_64) using readline 5.1

[root<mailto:root@dvguac02> ~]# cat /etc/redhat-release
CentOS Linux release 7.3.1611 (Core)

[root<mailto:root@dvguac02> ~]# cat /etc/httpd/conf.d/guacamole.conf
ProxyPass / http://localhost:8080/guacamole/ flushpackets=on
ProxyPassReverse / http://localhost:8080/guacamole/
ProxyPassReverseCookiePath /guacamole/ /


Order allow,deny
Allow from all
ProxyPass ws://localhost:8080/guacamole/websocket-tunnel
ProxyPassReverse ws://localhost:8080/guacamole/websocket-tunnel


/var/log/messages:
Feb 10 06:49:45  guacd[33566]: Creating new client for protocol "ssh"
Feb 10 06:49:45  guacd[33566]: Connection ID is 
"$98447e17-d5ae-4b65-879d-b766e7888a78"
Feb 10 06:49:45  guacd[10483]: User 
"@1460e686-4dc3-401d-8ba9-0686d98bc348" joined connection 
"$98447e17-d5ae-4b65-879d-b766e7888a78" (1 users now present)
Feb 10 06:49:45  server: 06:49:45.156 [http-bio-8080-exec-1089] INFO  
o.a.g.tunnel.TunnelRequestService - User "boogaardvandenm" connected to 
connection "157".
Feb 10 06:49:45  guacd[10483]: SSH connection successful.
Feb 10 06:50:01  systemd: Created slice user-0.slice.
Feb 10 06:50:01  systemd: Starting user-0.slice.
Feb 10 06:50:01  systemd: Started Session 3100 of user root.
Feb 10 06:50:01  systemd: Starting Session 3100 of user root.
Feb 10 06:50:01  systemd: Removed slice user-0.slice.
Feb 10 06:50:01  systemd: Stopping user-0.slice.
Feb 10 06:57:18  systemd: Starting Cleanup of Temporary Directories...
Feb 10 06:57:18  systemd: Started Cleanup of Temporary Directories.
Feb 10 07:00:01  systemd: Created slice user-0.slice.
Feb 10 07:00:01  systemd: Starting user-0.slice.
Feb 10 07:00:01  systemd: Started Session 3101 of user root.
Feb 10 07:00:01  systemd: Starting Session 3101 of user root.
Feb 10 07:00:01  systemd: Removed slice user-0.slice.
Feb 10 07:00:01  systemd: Stopping user-0.slice.
Feb 10 07:01:01  systemd: Created slice user-0.slice.
Feb 10 07:01:01  systemd: Starting user-0.slice.
Feb 10 07:01:01  systemd: Started Session 3102 of user root.
Feb 10 07:01:01  systemd: Starting Session 3102 of user root.
Feb 10 07:01:01  systemd: Removed slice user-0.slice.
Feb 10 07:01:01  systemd: Stopping user-0.slice.
Feb 10 07:10:01  systemd: Created slice user-0.slice.
Feb 10 07:10:01  systemd: Starting user-0.slice.
Feb 10 07:10:01  systemd: Started Session 3103 of user root.
Feb 10 07:10:01  systemd: Starting Session 3103 of user root.
Feb 10 07:10:01  systemd: Removed slice user-0.slice.
Feb 10 07:10:01  systemd: Stopping user-0.slice.
Feb 10 07:20:01  systemd: Created slice user-0.slice.
Feb 10 07:20:01  systemd: Starting user-0.slice.
Feb 10 07:20:01  systemd: Started Session 3104 of user root.
Feb 10 07:20:01  systemd: Starting Session 3104 of user root.
Feb 10 07:20:01  systemd: Removed slice user-0.slice.
Feb 10 07:20:01  systemd: Stopping user-0.slice.


Ping statistics:
--- 172.x.y.z ping statistics ---
1853 packets transmitted, 1851 received, 0% packet loss, time 1854742ms
rtt min/avg/max/mdev = 19.376/20.550/37.963/2.018 ms


If anybody has an idea or if I have to create a bug, please let me know.


--

Met vriendelijke groet / with kind regards,

Mark van den Boogaard
Linux specialist

[cid:1486708460.5477.23.camel@davantigroup.com]​​

Mob: +31 6 82241436
E-Mail: 
mark.van.den.booga...@davantigroup.com<mailto:mark.van.den.booga...@davantigroup.com>
Web: www.davantigroup.com<http://www.davantigroup.com>

Davanti Warehousing B.V.
Hogeweg 35E, Postbus 2601, 5300 CB Zaltbommel

-Original Message-
From: Mark van den Boogaard 
mailto:mark%20van%20den%20boogaard%20%3cmark.vanden.booga...@davantigroup.com%3e>>
Reply-to: 
mailto:user@guacamole.incubator.apache.org>>
To: 
user@guacamole.incubator.apache.org<mailto:user@guacamole.incubator.apache.org> 
mailto:%22u...@guacamole.incubator.apache.org%22%20%3cu...@guacamole.incubator.apache.org%3e>>
Subject: Re: Timeout SSH session
Date: Mon, 6 Feb 2017 13:03:31 +00

Re: Timeout SSH session

2017-02-09 Thread Mark van den Boogaard
Some additional information. After a couple of minutes the session wil 
disconnect with a message. Here is the rest of /var/log/messages

Feb 10 07:30:01  systemd: Created slice user-0.slice.
Feb 10 07:30:01  systemd: Starting user-0.slice.
Feb 10 07:30:01  systemd: Started Session 3105 of user root.
Feb 10 07:30:01  systemd: Starting Session 3105 of user root.
Feb 10 07:30:01  systemd: Removed slice user-0.slice.
Feb 10 07:30:01  systemd: Stopping user-0.slice.
Feb 10 07:36:10  guacd[10483]: User 
"@1460e686-4dc3-401d-8ba9-0686d98bc348" disconnected (0 users remain)
Feb 10 07:36:10  guacd[10483]: Last user of connection 
"$98447e17-d5ae-4b65-879d-b766e7888a78" disconnected
Feb 10 07:36:10  guacd[10483]: SSH connection ended.
Feb 10 07:36:10  server: 07:36:10.304 [http-bio-8080-exec-1089] INFO  
o.a.g.tunnel.TunnelRequestService - User "boogaardvandenm" disconnected from 
connection "157". Duration: 2785148 milliseconds
Feb 10 07:40:01  systemd: Created slice user-0.slice.
Feb 10 07:40:01  systemd: Starting user-0.slice.
Feb 10 07:40:01  systemd: Started Session 3106 of user root.
Feb 10 07:40:01  systemd: Starting Session 3106 of user root.
Feb 10 07:40:01  systemd: Removed slice user-0.slice.
Feb 10 07:40:01  systemd: Stopping user-0.slice.

So after about 30 minutes the session is not be able to be used and a couple of 
minutes later it will be disconnected by Guacamole.

For us we need the SSH-session to be active till we disconnect it ourselves (or 
maybe after several hours of inactivity).


--

Met vriendelijke groet / with kind regards,

Mark van den Boogaard
Linux specialist

[cid:1486709720.5477.39.camel@davantigroup.com]​​

Mob: +31 6 82241436
E-Mail: 
mark.van.den.booga...@davantigroup.com<mailto:mark.van.den.booga...@davantigroup.com>
Web: www.davantigroup.com<http://www.davantigroup.com>

Davanti Warehousing B.V.
Hogeweg 35E, Postbus 2601, 5300 CB Zaltbommel

-Original Message-
From: Mark van den Boogaard 
mailto:mark%20van%20den%20boogaard%20%3cmark.vanden.booga...@davantigroup.com%3e>>
Reply-to: 
To: user@guacamole.incubator.apache.org 
mailto:%22u...@guacamole.incubator.apache.org%22%20%3cu...@guacamole.incubator.apache.org%3e>>
Subject: Timeout SSH session
Date: Thu, 2 Feb 2017 10:45:20 +

Hello all,

We are using guacamole for a couple of months now but we have some problems 
with SSH connections.
We connect to our customers with guacamole via a VPN tunnel. Sometimes we keep 
the SSH-session open but we don't use it for a while. Often the SSH-session 
freezes when we want to use it again. Is there some way to keep the SSH-session 
alive until we logout or until the session timeout kicks in?
If we use a SSH-application like Putty or SecureCRT we don't have these issues.



--

Met vriendelijke groet / with kind regards,

Mark van den Boogaard
Linux specialist

[cid:1486709720.5477.39.camel@davantigroup.com]​​

Mob: +31 6 82241436
E-Mail: 
mark.van.den.booga...@davantigroup.com<mailto:mark.van.den.booga...@davantigroup.com>
Web: www.davantigroup.com<http://www.davantigroup.com>

Davanti Warehousing B.V.
Hogeweg 35E, Postbus 2601, 5300 CB Zaltbommel



Re: Timeout SSH session

2017-02-09 Thread Mike Jumper
Could it be the SSH server itself that is timing out the session? If I
remember correctly, sshd does have client timeout settings.

- Mike


On Thu, Feb 9, 2017 at 10:34 PM, Mark van den Boogaard <
mark.vanden.booga...@davantigroup.com> wrote:

> Hi,
>
> I did some tests. After half an hour of inactivity the session is not
> responding anymore. I did a ping on the same time but didn't had any packet
> loss.
> We are using Guacamole 0.9.10 with MySQL (MariaDB) backend and LDAP
> authentication (to Active Directory) on CentOS 7.3.1611.
> We are using Apache as proxy
>
> [root  ~]# mysql --version
> mysql  Ver 15.1 Distrib 10.1.21-MariaDB, for Linux (x86_64) using readline
> 5.1
>
> [root  ~]# cat /etc/redhat-release
> CentOS Linux release 7.3.1611 (Core)
>
> [root  ~]# cat /etc/httpd/conf.d/guacamole.conf
> ProxyPass / http://localhost:8080/guacamole/ flushpackets=on
> ProxyPassReverse / http://localhost:8080/guacamole/
> ProxyPassReverseCookiePath /guacamole/ /
>
> 
> Order allow,deny
> Allow from all
> ProxyPass ws://localhost:8080/guacamole/websocket-tunnel
> ProxyPassReverse ws://localhost:8080/guacamole/websocket-tunnel
> 
>
> /var/log/messages:
> Feb 10 06:49:45  guacd[33566]: Creating new client for protocol
> "ssh"
> Feb 10 06:49:45  guacd[33566]: Connection ID is
> "$98447e17-d5ae-4b65-879d-b766e7888a78"
> Feb 10 06:49:45  guacd[10483]: User 
> "@1460e686-4dc3-401d-8ba9-0686d98bc348"
> joined connection "$98447e17-d5ae-4b65-879d-b766e7888a78" (1 users now
> present)
> Feb 10 06:49:45  server: 06:49:45.156 [http-bio-8080-exec-1089]
> INFO  o.a.g.tunnel.TunnelRequestService - User "boogaardvandenm"
> connected to connection "157".
> Feb 10 06:49:45  guacd[10483]: SSH connection successful.
> Feb 10 06:50:01  systemd: Created slice user-0.slice.
> Feb 10 06:50:01  systemd: Starting user-0.slice.
> Feb 10 06:50:01  systemd: Started Session 3100 of user root.
> Feb 10 06:50:01  systemd: Starting Session 3100 of user root.
> Feb 10 06:50:01  systemd: Removed slice user-0.slice.
> Feb 10 06:50:01  systemd: Stopping user-0.slice.
> Feb 10 06:57:18  systemd: Starting Cleanup of Temporary
> Directories...
> Feb 10 06:57:18  systemd: Started Cleanup of Temporary
> Directories.
> Feb 10 07:00:01  systemd: Created slice user-0.slice.
> Feb 10 07:00:01  systemd: Starting user-0.slice.
> Feb 10 07:00:01  systemd: Started Session 3101 of user root.
> Feb 10 07:00:01  systemd: Starting Session 3101 of user root.
> Feb 10 07:00:01  systemd: Removed slice user-0.slice.
> Feb 10 07:00:01  systemd: Stopping user-0.slice.
> Feb 10 07:01:01  systemd: Created slice user-0.slice.
> Feb 10 07:01:01  systemd: Starting user-0.slice.
> Feb 10 07:01:01  systemd: Started Session 3102 of user root.
> Feb 10 07:01:01  systemd: Starting Session 3102 of user root.
> Feb 10 07:01:01  systemd: Removed slice user-0.slice.
> Feb 10 07:01:01  systemd: Stopping user-0.slice.
> Feb 10 07:10:01  systemd: Created slice user-0.slice.
> Feb 10 07:10:01  systemd: Starting user-0.slice.
> Feb 10 07:10:01  systemd: Started Session 3103 of user root.
> Feb 10 07:10:01  systemd: Starting Session 3103 of user root.
> Feb 10 07:10:01  systemd: Removed slice user-0.slice.
> Feb 10 07:10:01  systemd: Stopping user-0.slice.
> Feb 10 07:20:01  systemd: Created slice user-0.slice.
> Feb 10 07:20:01  systemd: Starting user-0.slice.
> Feb 10 07:20:01  systemd: Started Session 3104 of user root.
> Feb 10 07:20:01  systemd: Starting Session 3104 of user root.
> Feb 10 07:20:01  systemd: Removed slice user-0.slice.
> Feb 10 07:20:01  systemd: Stopping user-0.slice.
>
>
> Ping statistics:
> --- 172.x.y.z ping statistics ---
> 1853 packets transmitted, 1851 received, 0% packet loss, time 1854742ms
> rtt min/avg/max/mdev = 19.376/20.550/37.963/2.018 ms
>
>
> If anybody has an idea or if I have to create a bug, please let me know.
>
> --
>
> Met vriendelijke groet / with kind regards,
>
> *Mark van den Boogaard*
> Linux specialist
>
> ​​
>
> Mob: +31 6 82241436 <+31%206%2082241436>
> E-Mail: mark.van.den.booga...@davantigroup.com
> Web: www.davantigroup.com
>
> *Davanti Warehousing B.V.*
> Hogeweg 35E, Postbus 2601, 5300 CB Zaltbommel
>
> -Original Message-
> *From*: Mark van den Boogaard  
> >
> Reply-to: 
> *To*: user@guacamole.incubator.apache.org  apache.org
> <%22u...@guacamole.incubator.apache.org%22%20%3cu...@guacamole.incubator.apache.org%3e>
> >
> *Subject*: Re: Timeout SSH session
> *Date*: Mon, 6 Feb 2017 13:03:31 +
>
> Hi,
>
> This will make a bit more clear to me. At the moment it is just happening
&g

Re: Timeout SSH session

2017-02-09 Thread Mark van den Boogaard
Hi,

I did some tests. After half an hour of inactivity the session is not 
responding anymore. I did a ping on the same time but didn't had any packet 
loss.
We are using Guacamole 0.9.10 with MySQL (MariaDB) backend and LDAP 
authentication (to Active Directory) on CentOS 7.3.1611.
We are using Apache as proxy

[root<mailto:root@dvguac02> ~]# mysql --version
mysql  Ver 15.1 Distrib 10.1.21-MariaDB, for Linux (x86_64) using readline 5.1

[root<mailto:root@dvguac02> ~]# cat /etc/redhat-release
CentOS Linux release 7.3.1611 (Core)

[root<mailto:root@dvguac02> ~]# cat /etc/httpd/conf.d/guacamole.conf
ProxyPass / http://localhost:8080/guacamole/ flushpackets=on
ProxyPassReverse / http://localhost:8080/guacamole/
ProxyPassReverseCookiePath /guacamole/ /


Order allow,deny
Allow from all
ProxyPass ws://localhost:8080/guacamole/websocket-tunnel
ProxyPassReverse ws://localhost:8080/guacamole/websocket-tunnel


/var/log/messages:
Feb 10 06:49:45  guacd[33566]: Creating new client for protocol "ssh"
Feb 10 06:49:45  guacd[33566]: Connection ID is 
"$98447e17-d5ae-4b65-879d-b766e7888a78"
Feb 10 06:49:45  guacd[10483]: User 
"@1460e686-4dc3-401d-8ba9-0686d98bc348" joined connection 
"$98447e17-d5ae-4b65-879d-b766e7888a78" (1 users now present)
Feb 10 06:49:45  server: 06:49:45.156 [http-bio-8080-exec-1089] INFO  
o.a.g.tunnel.TunnelRequestService - User "boogaardvandenm" connected to 
connection "157".
Feb 10 06:49:45  guacd[10483]: SSH connection successful.
Feb 10 06:50:01  systemd: Created slice user-0.slice.
Feb 10 06:50:01  systemd: Starting user-0.slice.
Feb 10 06:50:01  systemd: Started Session 3100 of user root.
Feb 10 06:50:01  systemd: Starting Session 3100 of user root.
Feb 10 06:50:01  systemd: Removed slice user-0.slice.
Feb 10 06:50:01  systemd: Stopping user-0.slice.
Feb 10 06:57:18  systemd: Starting Cleanup of Temporary Directories...
Feb 10 06:57:18  systemd: Started Cleanup of Temporary Directories.
Feb 10 07:00:01  systemd: Created slice user-0.slice.
Feb 10 07:00:01  systemd: Starting user-0.slice.
Feb 10 07:00:01  systemd: Started Session 3101 of user root.
Feb 10 07:00:01  systemd: Starting Session 3101 of user root.
Feb 10 07:00:01  systemd: Removed slice user-0.slice.
Feb 10 07:00:01  systemd: Stopping user-0.slice.
Feb 10 07:01:01  systemd: Created slice user-0.slice.
Feb 10 07:01:01  systemd: Starting user-0.slice.
Feb 10 07:01:01  systemd: Started Session 3102 of user root.
Feb 10 07:01:01  systemd: Starting Session 3102 of user root.
Feb 10 07:01:01  systemd: Removed slice user-0.slice.
Feb 10 07:01:01  systemd: Stopping user-0.slice.
Feb 10 07:10:01  systemd: Created slice user-0.slice.
Feb 10 07:10:01  systemd: Starting user-0.slice.
Feb 10 07:10:01  systemd: Started Session 3103 of user root.
Feb 10 07:10:01  systemd: Starting Session 3103 of user root.
Feb 10 07:10:01  systemd: Removed slice user-0.slice.
Feb 10 07:10:01  systemd: Stopping user-0.slice.
Feb 10 07:20:01  systemd: Created slice user-0.slice.
Feb 10 07:20:01  systemd: Starting user-0.slice.
Feb 10 07:20:01  systemd: Started Session 3104 of user root.
Feb 10 07:20:01  systemd: Starting Session 3104 of user root.
Feb 10 07:20:01  systemd: Removed slice user-0.slice.
Feb 10 07:20:01  systemd: Stopping user-0.slice.


Ping statistics:
--- 172.x.y.z ping statistics ---
1853 packets transmitted, 1851 received, 0% packet loss, time 1854742ms
rtt min/avg/max/mdev = 19.376/20.550/37.963/2.018 ms


If anybody has an idea or if I have to create a bug, please let me know.


--

Met vriendelijke groet / with kind regards,

Mark van den Boogaard
Linux specialist

[cid:1486708460.5477.23.camel@davantigroup.com]​​

Mob: +31 6 82241436
E-Mail: 
mark.van.den.booga...@davantigroup.com<mailto:mark.van.den.booga...@davantigroup.com>
Web: www.davantigroup.com<http://www.davantigroup.com>

Davanti Warehousing B.V.
Hogeweg 35E, Postbus 2601, 5300 CB Zaltbommel

-Original Message-
From: Mark van den Boogaard 
mailto:mark%20van%20den%20boogaard%20%3cmark.vanden.booga...@davantigroup.com%3e>>
Reply-to: 
To: user@guacamole.incubator.apache.org 
mailto:%22u...@guacamole.incubator.apache.org%22%20%3cu...@guacamole.incubator.apache.org%3e>>
Subject: Re: Timeout SSH session
Date: Mon, 6 Feb 2017 13:03:31 +

Hi,

This will make a bit more clear to me. At the moment it is just happening 
randomly ( I couldn't find out any pattern yet except the inactivity).
I will try to figure out when it happens so we can maybe reproduce it. I will 
also try to figure out if it can happen because of underlaying network issues. 
If I have some more info (or not if there is none...) , I will come back.


--

Met vriendelijke groet / with kind regards,

Mark van den Boogaard
Linux specialist

[cid:1486708460.5477.23.camel@davantigroup.com]​​

Mob: +31 6 82241436
E-Mail: 
mark.van.den.booga...@davantigroup.com<mailto:mark.van.den.

Re: Timeout SSH session

2017-02-06 Thread Mark van den Boogaard
Hi,

This will make a bit more clear to me. At the moment it is just happening 
randomly ( I couldn't find out any pattern yet except the inactivity).
I will try to figure out when it happens so we can maybe reproduce it. I will 
also try to figure out if it can happen because of underlaying network issues. 
If I have some more info (or not if there is none...) , I will come back.


--

Met vriendelijke groet / with kind regards,

Mark van den Boogaard
Linux specialist

[cid:1486386210.3350.73.camel@davantigroup.com]​​

Mob: +31 6 82241436
E-Mail: 
mark.van.den.booga...@davantigroup.com<mailto:mark.van.den.booga...@davantigroup.com>
Web: www.davantigroup.com<http://www.davantigroup.com>

Davanti Warehousing B.V.
Hogeweg 35E, Postbus 2601, 5300 CB Zaltbommel

-Original Message-
From: Mike Jumper 
mailto:mike%20jumper%20%3cmike.jum...@guac-dev.org%3e>>
Reply-to: 
To: 
user@guacamole.incubator.apache.org<mailto:user@guacamole.incubator.apache.org>
Subject: Re: Timeout SSH session
Date: Sun, 5 Feb 2017 11:52:58 -0800

On Thu, Feb 2, 2017 at 2:45 AM, Mark van den Boogaard 
mailto:mark.vanden.booga...@davantigroup.com>>
 wrote:
Hello all,

We are using guacamole for a couple of months now but we have some problems 
with SSH connections.
We connect to our customers with guacamole via a VPN tunnel. Sometimes we keep 
the SSH-session open but we don't use it for a while. Often the SSH-session 
freezes when we want to use it again. Is there some way to keep the SSH-session 
alive until we logout or until the session timeout kicks in?


Guacamole's session timeout only takes effect once all connections are closed. 
If a user has an SSH connection open, they should stay logged in, regardless of 
whether they are actively using that connection. As far as Guacamole is 
concerned, as long as the connection is open, the user is active.

What you describe sounds like a bug, assuming there isn't some underlying 
network issue causing the disconnect. Is this reliably reproducible? Do you see 
anything logged by guacd or Tomcat when the connection unexpectedly terminates?

- Mike



Re: Timeout SSH session

2017-02-05 Thread Mike Jumper
On Thu, Feb 2, 2017 at 2:45 AM, Mark van den Boogaard <
mark.vanden.booga...@davantigroup.com> wrote:

> Hello all,
>
> We are using guacamole for a couple of months now but we have some
> problems with SSH connections.
> We connect to our customers with guacamole via a VPN tunnel. Sometimes we
> keep the SSH-session open but we don't use it for a while. Often the
> SSH-session freezes when we want to use it again. Is there some way to keep
> the SSH-session alive until we logout or until the session timeout kicks in?
>

Guacamole's session timeout only takes effect once all connections are
closed. If a user has an SSH connection open, they should stay logged in,
regardless of whether they are actively using that connection. As far as
Guacamole is concerned, as long as the connection is open, the user is
active.

What you describe sounds like a bug, assuming there isn't some underlying
network issue causing the disconnect. Is this reliably reproducible? Do you
see anything logged by guacd or Tomcat when the connection unexpectedly
terminates?

- Mike


Timeout SSH session

2017-02-02 Thread Mark van den Boogaard
Hello all,

We are using guacamole for a couple of months now but we have some problems 
with SSH connections.
We connect to our customers with guacamole via a VPN tunnel. Sometimes we keep 
the SSH-session open but we don't use it for a while. Often the SSH-session 
freezes when we want to use it again. Is there some way to keep the SSH-session 
alive until we logout or until the session timeout kicks in?
If we use a SSH-application like Putty or SecureCRT we don't have these issues.



--

Met vriendelijke groet / with kind regards,

Mark van den Boogaard
Linux specialist

[cid:1486032318.3388.107.camel@davantigroup.com]​​

Mob: +31 6 82241436
E-Mail: 
mark.van.den.booga...@davantigroup.com
Web: www.davantigroup.com

Davanti Warehousing B.V.
Hogeweg 35E, Postbus 2601, 5300 CB Zaltbommel