Gerasim is not working

Message boards : Number crunching : Gerasim is not working
Message board moderation

To post messages, you must log in.

Previous · 1 · 2 · 3 · 4 · Next

AuthorMessage
Profile SerVal

Send message
Joined: 1 Jan 20
Posts: 44
Credit: 26,454,449
RAC: 348,908
Message 3971 - Posted: 10 Sep 2025, 22:05:10 UTC

DKlimax
Got 3 certificate from page Server Certificates + giant menu:
Import.. Create Certificate .. and so on. I don't know what doing next ?
ID: 3971 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile Eric Driver
Project administrator
Project developer
Project tester
Project scientist

Send message
Joined: 8 Jul 11
Posts: 1426
Credit: 787,744,089
RAC: 847,007
Message 3972 - Posted: 12 Sep 2025, 22:30:18 UTC - in response to Message 3971.  

SerVal is having problems trying to get the certificates installed for Gerasim. Does anyone out there consider themselves an expert at this?

I am not much help - the certificates for NumberFields are handled by the IT department, so I have very little experience with them. I am also a Linux guy, and haven't used Windows in years. Any help would be appreciated.
ID: 3972 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile Eric Driver
Project administrator
Project developer
Project tester
Project scientist

Send message
Joined: 8 Jul 11
Posts: 1426
Credit: 787,744,089
RAC: 847,007
Message 3973 - Posted: 12 Sep 2025, 22:34:48 UTC - in response to Message 3972.  

SerVal is having problems trying to get the certificates installed for Gerasim. Does anyone out there consider themselves an expert at this?

I am not much help - the certificates for NumberFields are handled by the IT department, so I have very little experience with them. I am also a Linux guy, and haven't used Windows in years. Any help would be appreciated.

Forgot to mention, I think SerVal can get us a username and password, for anyone willing to login remotely to help. If interested in helping, send me and/or SerVal a pm.
ID: 3973 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile SerVal

Send message
Joined: 1 Jan 20
Posts: 44
Credit: 26,454,449
RAC: 348,908
Message 3974 - Posted: 13 Sep 2025, 11:35:41 UTC

====
I suspect that the problem starts with incorrectly written DNS.
And if DNS is incorrectly written, then the Certificate will be incorrect.
Therefore, it is better to start with DNS. - go to the server with a terminal and see what I got.
=====
Let's try this: I will gradually tell you what I did,
and you tell me if there is anything suspicious or incorrect.

So, now I have 2 computers
1.
IPv4 Address. . . . . . . . . . . : 192.168.16.3
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.16.1
2.
Connection-specific DNS Suffix . :
IPv4 Address. . . . . . . . . . . : 192.168.16.11
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.16.1
=====
Router Address: http://192.168.16.1/
Gateway : 79.164.208.1 <- from Provider. Is it needed for anything?
I don't have this Gateway registered anywhere, but 192.168.16.1 is registered
Guys, did I set the network correctly?

p.s.
Logging into the server via terminal only works in the internal network
(with gray IPs).
ID: 3974 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile Eric Driver
Project administrator
Project developer
Project tester
Project scientist

Send message
Joined: 8 Jul 11
Posts: 1426
Credit: 787,744,089
RAC: 847,007
Message 3980 - Posted: 13 Sep 2025, 21:56:12 UTC - in response to Message 3974.  

====
I suspect that the problem starts with incorrectly written DNS.
And if DNS is incorrectly written, then the Certificate will be incorrect.
Therefore, it is better to start with DNS. - go to the server with a terminal and see what I got.
=====
Let's try this: I will gradually tell you what I did,
and you tell me if there is anything suspicious or incorrect.

So, now I have 2 computers
1.
IPv4 Address. . . . . . . . . . . : 192.168.16.3
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.16.1
2.
Connection-specific DNS Suffix . :
IPv4 Address. . . . . . . . . . . : 192.168.16.11
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.16.1
=====
Router Address: http://192.168.16.1/
Gateway : 79.164.208.1 <- from Provider. Is it needed for anything?
I don't have this Gateway registered anywhere, but 192.168.16.1 is registered
Guys, did I set the network correctly?

p.s.
Logging into the server via terminal only works in the internal network
(with gray IPs).

I think your addresses look right for the most part. I always use the default setting on the router which has a gateway of 192.168.1.1 and devices on my internal network have IP addresses of the form 192.168.1.XXX. I did a quick check and your gateway is in the allowed range. I'm referring to my setup at home; NumberFields site is managed by the IT department and their addresses/mask/gateway are totally different.

Is the Gateway from your provider your external IP address? If so, that's what the domain name servers need to send Gerasim traffic to your server. Which begs the question, who hosts your DNS? Is it your provider or a third party? I think we need more information on your setup in order to help.
ID: 3980 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile SerVal

Send message
Joined: 1 Jan 20
Posts: 44
Credit: 26,454,449
RAC: 348,908
Message 3981 - Posted: 14 Sep 2025, 13:18:11 UTC

Gerasim sends his regards to everyone!
=====
Dear women!
Video recording in the women's room is carried out solely for your safety!
=====
Hm, touching concern for our safety... :).

I just remembered: the site is edited, compiled, launched under the debugger
and all this right in Visual Studio! Yes, I compiled it myself... but I forgot how to do it.
Maybe there is such an opportunity now?
And how did people live before? Without certificates?
It's strange somehow... Here artificial intelligence runs along the streets,
and we can't catch one certificate. :)
=====
Yesterday I edited the DNS server.

>nslookup gerasim.boinc.ru
Server: UnKnown
Address: 192.168.16.11

Name: gerasim.boinc.ru
Address: 79.164.218.120

As you can see,
DNS correctly determines its external IP-addr 79.164.218.120.

>ping gerasim.boinc.ru

Pinging gerasim.boinc.ru [79.164.218.120] with 32 bytes of data:
Reply from 79.164.218.120: bytes=32 time<1ms TTL=126
Reply from 79.164.218.120: bytes=32 time<1ms TTL=126
Reply from 79.164.218.120: bytes=32 time<1ms TTL=126
Reply from 79.164.218.120: bytes=32 time<1ms TTL=126

Ping statistics for 79.164.218.120:
Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
=====
- also correct.
ID: 3981 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile Eric Driver
Project administrator
Project developer
Project tester
Project scientist

Send message
Joined: 8 Jul 11
Posts: 1426
Credit: 787,744,089
RAC: 847,007
Message 3982 - Posted: 14 Sep 2025, 15:07:27 UTC - in response to Message 3981.  

So it looks like DNS is now working. Are we back to the certificate problem again?
ID: 3982 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile SerVal

Send message
Joined: 1 Jan 20
Posts: 44
Credit: 26,454,449
RAC: 348,908
Message 3983 - Posted: 14 Sep 2025, 16:35:18 UTC

So it looks like DNS is now working. Are we back to the certificate problem again?

Maybe Yes.
Today, I created 3 certificates. I used the program
win-acme.v2.1.12.943.x64.pluggable
All created certificates are visible in IIS-Admin, they claim and show that they are correct, and I have a public key from somewhere. Maybe there is, but I don’t know where and what to do with them :( .
That’s why I deleted 2 certificates. (It doesn’t take long to create).
The certificates were for the host, but they were needed for the host + for users. (But maybe this is not so).
ID: 3983 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile SerVal

Send message
Joined: 1 Jan 20
Posts: 44
Credit: 26,454,449
RAC: 348,908
Message 3984 - Posted: 14 Sep 2025, 17:24:33 UTC

So it looks like DNS is now working.

I'm not sure. There should be pointers and aliases for DNS somewhere.
Where? - I don't know, but without them it's unlikely to work properly.

Всем привет, и хорошего настроения !
====
use Gerasim
go
exec get_project_config_php
====
Output:
<project_config>
<name>Gerasim@home</name>
<master_url>https://gerasim.boinc.ru/</master_url>
<web_stopped>1</web_stopped>
<sched_stopped>0</sched_stopped>
<min_passwd_length>6</min_passwd_length>
....
====
:)
ID: 3984 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
DKlimax

Send message
Joined: 8 Jun 23
Posts: 27
Credit: 37,678,979
RAC: 1,093
Message 3985 - Posted: 14 Sep 2025, 20:39:57 UTC - in response to Message 3983.  

So it looks like DNS is now working. Are we back to the certificate problem again?

Maybe Yes.
Today, I created 3 certificates. I used the program
win-acme.v2.1.12.943.x64.pluggable
All created certificates are visible in IIS-Admin, they claim and show that they are correct, and I have a public key from somewhere. Maybe there is, but I don’t know where and what to do with them :( .
That’s why I deleted 2 certificates. (It doesn’t take long to create).
The certificates were for the host, but they were needed for the host + for users. (But maybe this is not so).

Go to bindings for website and under HTTPS you'll find dropdown "SSL certificate". That's where you set certificate.
ID: 3985 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile SerVal

Send message
Joined: 1 Jan 20
Posts: 44
Credit: 26,454,449
RAC: 348,908
Message 3987 - Posted: 14 Sep 2025, 21:03:02 UTC

Hello. I do not give up trying to connect with Terminal
Try this:

start mstsc /v:As11.boinc.ru:3389

For all request about Credencial type
SerVal (default)
As11/SerVal (alt)
pw: *****************

If you see grot on the screen - that's good. :)
ID: 3987 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile Eric Driver
Project administrator
Project developer
Project tester
Project scientist

Send message
Joined: 8 Jul 11
Posts: 1426
Credit: 787,744,089
RAC: 847,007
Message 3988 - Posted: 14 Sep 2025, 21:03:29 UTC - in response to Message 3984.  

So it looks like DNS is now working.

I'm not sure. There should be pointers and aliases for DNS somewhere.
Where? - I don't know, but without them it's unlikely to work properly.

Всем привет, и хорошего настроения !
====
use Gerasim
go
exec get_project_config_php
====
Output:

Gerasim@home
https://gerasim.boinc.ru/
1
0
6
....
====
:)

The fact that ping works and translates "gerasim.boinc.ru" into your IP address tells me that DNS is working.

But there are connection problems when trying to login remotely. I have seen this on linux when SSL/certs are not configured properly. I suspect that is your problem. I know very little about how windows handles this stuff.
ID: 3988 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile SerVal

Send message
Joined: 1 Jan 20
Posts: 44
Credit: 26,454,449
RAC: 348,908
Message 3990 - Posted: 14 Sep 2025, 21:37:11 UTC

@DKlimax
AS11 (As11\Serval)
-> Server Certificates:
[IIS]gerasim boinc.ru, any host ...
Issued To gerasim.boinc.ru
Issued By R12

->Site Bindings
host name gerasim.boinc.ru
All Unassigned Port 443
====
Certificate present. Certificate Purpose Web Hosting.
ID: 3990 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile SerVal

Send message
Joined: 1 Jan 20
Posts: 44
Credit: 26,454,449
RAC: 348,908
Message 3991 - Posted: 14 Sep 2025, 22:29:54 UTC

@DKlimax
Addition Info about Certificate for Gerasim.
Certificate Store: WebHosting
In my opinion, this is not quite the right place for the Certificate.
ID: 3991 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
DKlimax

Send message
Joined: 8 Jun 23
Posts: 27
Credit: 37,678,979
RAC: 1,093
Message 3992 - Posted: 15 Sep 2025, 13:09:58 UTC

Just to make sure, is HTTPS port 443 opened in firewall? (Based on a test it looks like it is closed/unresponsive)
ID: 3992 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile SerVal

Send message
Joined: 1 Jan 20
Posts: 44
Credit: 26,454,449
RAC: 348,908
Message 3993 - Posted: 15 Sep 2025, 14:16:44 UTC

@DKlimax
Just to make sure, is HTTPS port 443 opened in firewall?

I don't know. Router Address: http://192.168.16.1/
Going to the firewall and Router.
* I'll report back when I get back.
ID: 3993 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile SerVal

Send message
Joined: 1 Jan 20
Posts: 44
Credit: 26,454,449
RAC: 348,908
Message 3994 - Posted: 15 Sep 2025, 16:21:10 UTC

Report: Для HTTPS port 443 на firewall уже есть правило: forward any
Это можно как-нибудь проверить? Можно разрешить всё и всем?

На роутере есть firewall вот там я всё и меняю. Ещё - (я видел), что на роутер можно заходить, смотреть и править ошибки снаружи
(это лучше всего, но я пока не знаю, как это сделать).
* отдохну маленько, может что-то умное в голову придёт ...
ID: 3994 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile Eric Driver
Project administrator
Project developer
Project tester
Project scientist

Send message
Joined: 8 Jul 11
Posts: 1426
Credit: 787,744,089
RAC: 847,007
Message 3995 - Posted: 15 Sep 2025, 17:24:12 UTC - in response to Message 3994.  

Report: Для HTTPS port 443 на firewall уже есть правило: forward any
Это можно как-нибудь проверить? Можно разрешить всё и всем?

На роутере есть firewall вот там я всё и меняю. Ещё - (я видел), что на роутер можно заходить, смотреть и править ошибки снаружи
(это лучше всего, но я пока не знаю, как это сделать).
* отдохну маленько, может что-то умное в голову придёт ...

There's usually 2 firewalls. The first is at the router and the second is on the server.
ID: 3995 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Profile SerVal

Send message
Joined: 1 Jan 20
Posts: 44
Credit: 26,454,449
RAC: 348,908
Message 3996 - Posted: 16 Sep 2025, 9:21:59 UTC

There's usually 2 firewalls. The first is on the router and the second is on the server.

1. I completely disabled the Windows firewall. (It doesn't take long to turn it on).
2. Why do all the certificates I create want to go to the "Trusted Root Cert Store" but they won't let them in? Most likely, because the "Trusted Root Cert Store" doesn't exist.
And it is created when someone comes for a certificate.
Therefore, I'll delete all the certificates now and do some "dancing with a tambourine" in the evening. :) I'll report what happens.

Hello everyone and have a good day. :)
ID: 3996 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
bluestang

Send message
Joined: 21 May 18
Posts: 10
Credit: 52,529,586
RAC: 352,467
Message 3997 - Posted: 16 Sep 2025, 21:04:50 UTC
Last modified: 16 Sep 2025, 21:20:25 UTC

Did you even have a full system backup of the servers(s) or anything?

And like Skills asked in a previous post:

"What happened to the live/production database? Do you still have it or did you wipe it when you pulled a backup?

What happened in the first place? What failed? What were the errors? What was the symptoms?"
ID: 3997 · Rating: 0 · rate: Rate + / Rate - Report as offensive     Reply Quote
Previous · 1 · 2 · 3 · 4 · Next

Message boards : Number crunching : Gerasim is not working


Main page · Your account · Message boards


Copyright © 2025 Arizona State University