Oracle iPlanet Web Proxy Server 4.0.14 Administration Guide

Configuring SOCKS v5 Authentication Entries

SOCKS authentication entries identify the hosts from which the SOCKS daemon should accept connections, and which types of authentication the SOCKS daemon should use to authenticate those hosts.

ProcedureTo Create SOCKS Authentication Entries

  1. Access the Server Manager for a server instance and click the SOCKS tab.

  2. Click the Set SOCKS v5 Authentication link.

  3. Click the Add button.

  4. In the Host Mask field, type the IP addresses or host names of the hosts that the SOCKS server will authenticate.

    If you type an IP address, follow the address with a forward slash and the mask to be applied to the incoming IP address. The SOCKS server applies this mask to the IP address to determine if it is a valid host. Do not use spaces in the host mask entry. If you do not type a host mask, the authentication entry applies to all hosts.

    For example, you can type 155.25.0.0/255.255.0.0 in the host mask field. If the host’s IP address is 155.25.3.5, the SOCKS server applies the mask to the IP address and determines that the host’s IP address matches the IP address for which the authentication record applies (155.25.0.0).

  5. In the Port Range field, type the ports on the host computers that the SOCKS server will authenticate.

    Do not use spaces in the port range entry. If you do not provide a port range, the authentication entry applies to all ports.

    You can use brackets [ ] to include the ports at each end of the range or parentheses ( ) to exclude them. For example, [1000-1010] means all port numbers between and including 1000 and 1010, while (1000-1010) means all port numbers between, but not including, 1000 and 1010. You can also mix brackets and parentheses. For instance, (1000-1010] means all numbers between 1000 and 1010, excluding 1000 but including 1010.

  6. From the Authentication Type drop-down list, select the authentication type.

    The following options are available:

    • Require user-password. User name and password are required to access the SOCKS server.

    • User-password, if available. If a user name and password are available, they should be used to access the SOCKS server but they are not required for access.

    • Ban. Banned from the SOCKS server.

    • None. No authentication is required to access the SOCKS server.

  7. From the Insert drop-down list, select the position for this entry in the socks5.conf file and click OK.

    Because you can have multiple authentication methods, you must specify the order in which they are evaluated. Therefore, if the client does not support the first authentication method listed, the second method is used instead. If the client does not support any of the authentication methods listed, the SOCKS server disconnects without accepting a request.

ProcedureTo Edit Authentication Entries

  1. Access the Server Manager for a server instance and click the SOCKS tab.

  2. Click the Set SOCKS v5 Authentication link.

  3. Select the authentication entry you want to edit and click the Edit button.

  4. Make changes as desired.

  5. Click OK.

ProcedureTo Delete Authentication Entries

  1. Access the Server Manager for a server instance and click the SOCKS tab.

  2. Click the Set SOCKS v5 Authentication link.

  3. Select the authentication entry you want to delete.

  4. Click the Delete button.

ProcedureTo Move Authentication Entries

Entries are evaluated in the order in which they appear in the socks5.conf file. You can change the order by moving them.

  1. Access the Server Manager for a server instance and click the SOCKS tab.

  2. Click the Set SOCKS v5 Authentication link.

  3. Select the authentication entry you want to move and click the Move button.

  4. From the Move drop-down list, select the position for this entry in the socks5.conf file.

  5. Click OK.