What's coming in 4.2

  • @yusf You can restrict the port in IPTABLES as well, I don't remember if cloudron uses just IPTables or UFW but here is a rule for both that would work for routing to internal networks only:

    ufw allow from to any port 389
    (This allows from the network to TCP/UDP port 389. You can change the word "any" to "tcp" to restrict it to TCP only as well.)

    iptables -I INPUT -p tcp -s --dport 389 -j ACCEPT

    Please research what cloudron uses as it's firewall (I am almost positive it is iptables).

    Also note - This is an unsupported modification too.

    Also also note - You can probably make an app that can proxy this connection instead, using a different port, you can proxy to the LDAP server instead. (Say port 1389 as an example). This would probably work better since LDAP clients normally allow you to configure a port to connect to anyway.

  • @murgero Thanks! Though very unsupported also very interesting. Thought about the proxy app approach but you know my level id of expertise: not enough. 😆

  • @yusf Maybe it will be my weekend project this week. Build an LDAP Proxy app for Cloudron.

    I'll hit you up on Matrix if I get something working. 🙂

  • @murgero I’ve been meaning to do the same.

    Should be doable with something like HAProxy, but I wanted to use some better auth mechanism, so I’ve been working on this:

    The server is essentially just an ssh server that is configured to disallow running commands and only allow port forwarding. The client can be run anywhere and it exposes the ports for you.

    I’m planning to run a server on my Cloudron to forward LDAP and Graphite (hopefully), and then I can deploy a client on my other VPS. I also plan to do the same with my NAS at home so I can have my VPS access it without exposing http access to my home network.

    There are many ways to do this though. 🙂

  • @iamthefij said in What's coming in 4.2:

    There are many ways to do this though.

    True. I was more thinking of using stunnel for this.

  • @yusf said in What's coming in 4.2:

    It's out!

    Nope, it's not out. I've recieved a notification of the new version on one Cloudron but I can't install it yet.

  • Staff

    It is not out yet due to regressions in the app task management. We are working on this and will announce it when it is really out. Sorry for all those update available notifications which appeared to have been issued in between.

  • Staff

    Alright, we have started rolling out 4.2 slowly. If someone here wants it early, ping us on the chat as always. Thanks for your patience!

  • I’ve received another notification saying

    Cloudron v4.2.5 is available

    but this update too is nowhere to be found.

  • Staff

    @yusf Did it work out?

    4.2 is now available for all

  • @girish It did update, yes. 🎉

  • I have one SSD and one HDD in my homeserver running Cloudron 4.2.6 - neither are shown in "Graphs"...

  • Staff

    @necrevistonnezr Can you open a separate thread for that (since I am going to close this release thread and announce 4.2.). Can you also please provide the df -h output in the post. Thanks!

  • Hi, I was wondering if there is already some documentation for the external LDAP support. Wanted to see if I could hook my cloudron to the ldap tree exposed from my Univention UCS.

  • I've this problem with 4.2.x now that makes the memory graph only show app memory usage from my main domain. Reproducable?

  • @yusf My memory graph is seemingly ok, I can see all 3 of my domains in it.

