Sign inSign up

riftbit/sslh

By riftbit

•Updated over 8 years ago

Container with Applicative Protocol Multiplexer (SSH, HTTPS and Telegram Proxy on the same port)

Image
13

500K+

riftbit/sslh repository overview

⁠What is Docker SSLH

This is a small container with Applicative Protocol Multiplexer based on SSLH⁠. Support this container by stars :)

Docker Pulls Docker Stars

Link on docker hub: riftbit/sslh⁠

Link on github (sslh src): yrutschle/sslh⁠

⁠Container TAGS

  • latest - is equal riftbit/sslh:debian-select
  • debian-select - based on Debian Stretch and build in select mode
  • debian-fork - based on Debian Stretch and build in fork mode
  • alpine-select - based on Alpine Linux and built in select mode
  • alpine-fork - based on Alpine Linux and built in fork mode

Debian Containers built with libconfig, libwrap and libcap support. Alpine Linux Containers built with libconfig and libcap support. (libwrap not exists in Alpine Linux repository)

⁠Libwrap support

Sslh can optionally perform libwrap checks for the sshd service: because the connection to sshd will be coming locally from sslh, sshd cannot determine the IP of the client.

⁠Environment variables:

  • SSLH_OPTS - options to start. Options can be found on github repository or below
usage:
        sslh  [-v] [-i] [-V] [-f] [-n] [--transparent] [-F<file>]
        [-t <timeout>] [-P <pidfile>] [-u <username>] [-C <chroot>] -p <add> [-p <addr> ...]
        [--ssh <addr>]
        [--openvpn <addr>]
        [--tinc <addr>]
        [--xmpp <addr>]
        [--http <addr>]
        [--ssl <addr>]
        [--tls <addr>]
        [--adb <addr>]
        [--socks5 <addr>]
        [--anyprot <addr>]
        [--on-timeout <addr>]
-v: verbose
-V: version
-f: foreground
-n: numeric output
-u: specify under which user to run
-C: specify under which chroot path to run
--transparent: behave as a transparent proxy
-F: use configuration file (warning: no space between -F and file name!)
--on-timeout: connect to specified address upon timeout (default: ssh address)
-t: seconds to wait before connecting to --on-timeout address.
-p: address and port to listen on.
    Can be used several times to bind to several addresses.
--[ssh,ssl,...]: where to connect connections from corresponding protocol.
-P: PID file.
-i: Run as a inetd service.

⁠Main usage

sslh will always start in foreground mode, you don't need to add -f flag.

It is recommend to start container with --net host flag for easy usage

⁠Example with --net host
docker run --name sslh -d --env SSLH_OPTS='-p0.0.0.0:443 --anyprot 192.168.0.1:8443' --net host --restart always riftbit/sslh
⁠Example with exposed ports
docker run --name sslh -d  -p 443:7443 --env SSLH_OPTS='-p0.0.0.0:7443 --anyprot 172.16.0.10:8443' --restart always riftbit/sslh
⁠Enjoy :)

Tag summary

Content type

Image

Digest

Size

65.1 MB

Last updated

over 8 years ago

docker pull riftbit/sslh