Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • Bookmarks
  • Search
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

Cloudron Forum

Apps - Status | Demo | Docs | Install
  1. Cloudron Forum
  2. 2FAuth
  3. OpenID is not timing out and cannot signin

OpenID is not timing out and cannot signin

Scheduled Pinned Locked Moved 2FAuth
9 Posts 3 Posters 1.7k Views 3 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • S Offline
    S Offline
    skeats
    wrote on last edited by
    #1

    Hello,

    I just installed 2FAuth and I tried signing in with OpenID so I can sign in with my Cloudron login, but it is not working at all. How do I go about fixing this since I am checking and resources are not even being pegged. It is showing a 110: Connection timed out error. The only thing I changed in the App Data was changing the Site_Owner to my e-mail.

    Thanks,

    1 Reply Last reply
    0
    • S Offline
      S Offline
      skeats
      wrote on last edited by
      #2

      ug 27 10:52:02 172.18.0.1 - - [27/Aug/2024:14:52:02 +0000] "GET / HTTP/1.1" 200 1302 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36 Edg/128.0.0.0"
      Aug 27 10:52:02 172.18.0.1 - - [27/Aug/2024:14:52:02 +0000] "GET /api/v1/user HTTP/1.1" 401 41 "https://2fauth.experiencedmg.net/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36 Edg/128.0.0.0"
      Aug 27 10:52:04 172.18.0.1 - - [27/Aug/2024:14:52:04 +0000] "GET /socialite/redirect/openid HTTP/1.1" 302 1378 "https://2fauth.experiencedmg.net/login" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36 Edg/128.0.0.0"
      Aug 27 10:52:10 172.18.0.1 - - [27/Aug/2024:14:52:10 +0000] "GET / HTTP/1.1" 200 1298 "-" "Mozilla (CloudronHealth)"
      Aug 27 10:52:20 172.18.0.1 - - [27/Aug/2024:14:52:20 +0000] "GET / HTTP/1.1" 200 1300 "-" "Mozilla (CloudronHealth)"
      Aug 27 10:52:30 172.18.0.1 - - [27/Aug/2024:14:52:30 +0000] "GET / HTTP/1.1" 200 1297 "-" "Mozilla (CloudronHealth)"
      Aug 27 10:52:40 172.18.0.1 - - [27/Aug/2024:14:52:40 +0000] "GET / HTTP/1.1" 200 1300 "-" "Mozilla (CloudronHealth)"
      Aug 27 10:52:50 172.18.0.1 - - [27/Aug/2024:14:52:50 +0000] "GET / HTTP/1.1" 200 1302 "-" "Mozilla (CloudronHealth)"
      Aug 27 10:53:00 172.18.0.1 - - [27/Aug/2024:14:53:00 +0000] "GET / HTTP/1.1" 200 1301 "-" "Mozilla (CloudronHealth)"
      Aug 27 10:53:05 172.18.0.1 - - [27/Aug/2024:14:53:05 +0000] "GET /socialite/callback/openid?code===https%3A%2F%2Fmy.experiencedmg.net%2Fopenid HTTP/1.1" 504 578 "https://my.experiencedmg.net/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36 Edg/128.0.0.0"
      Aug 27 10:53:05 2024/08/27 14:53:05 [error] 69#69: 245 upstream timed out (110: Connection timed out) while reading response header from upstream, client: 172.18.0.1, server: _, request: "GET /socialite/callback/openid?code=**&state==https%3A%2F%2Fmy.experiencedmg.net%2Fopenid HTTP/1.1", upstream: "fastcgi://unix:/run/php/php8.3-fpm.sock", ho

      1 Reply Last reply
      0
      • nebulonN Offline
        nebulonN Offline
        nebulon
        Staff
        wrote on last edited by
        #3

        Are other apps with OpenID working? If my.experiencedmg.net is your actual dashboard and thus OpenID provider domain, than at least it also times out for me here.

        1 Reply Last reply
        0
        • S Offline
          S Offline
          skeats
          wrote on last edited by
          #4

          @nebulon yes it is my dashboard and other apps that use OpenID are working just fine. It is just 2fAuth app that is causing me issues

          1 Reply Last reply
          0
          • nebulonN Offline
            nebulonN Offline
            nebulon
            Staff
            wrote on last edited by
            #5

            Can you curl your OpenID provider domain ( http://my.experiencedmg.net/ ) from within the webterminal into the 2FAauth app instance?

            curl -v http://my.experiencedmg.net/.well-known/openid-configuration
            

            This should return a JSON file.

            1 Reply Last reply
            0
            • J Offline
              J Offline
              joseph
              Staff
              wrote on last edited by
              #6

              FWIW, I cannot access https://my.experiencedmg.net from here. Is there some firewall?

              1 Reply Last reply
              0
              • S Offline
                S Offline
                skeats
                wrote on last edited by
                #7

                Yes since I am self hosting it in my office on my own equipment I have an enterprise grade firewall that the server sits behind.

                1 Reply Last reply
                0
                • S Offline
                  S Offline
                  skeats
                  wrote on last edited by
                  #8

                  I did the curl command it timed out on port 80. This is weird since I have port 80 and 443 open. Unless you are outside of Canada and the US, as those the only 2 countries I allow because we operate in both countries. The rest of the world is blocked

                  1 Reply Last reply
                  0
                  • nebulonN Offline
                    nebulonN Offline
                    nebulon
                    Staff
                    wrote on last edited by
                    #9

                    This is especially strange since you mentioned that other apps do work, so if you run that curl command from within a webterminal into that other app, it succeeds?

                    Just in case if this is a hairpin issue maybe, checkout https://docs.cloudron.io/troubleshooting/#hairpin-nat

                    1 Reply Last reply
                    0

                    Hello! It looks like you're interested in this conversation, but you don't have an account yet.

                    Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.

                    With your input, this post could be even better 💗

                    Register Login
                    Reply
                    • Reply as topic
                    Log in to reply
                    • Oldest to Newest
                    • Newest to Oldest
                    • Most Votes


                    • Login

                    • Don't have an account? Register

                    • Login or register to search.
                    • First post
                      Last post
                    0
                    • Categories
                    • Recent
                    • Tags
                    • Popular
                    • Bookmarks
                    • Search