Žiadny popis

z3APA3A 285a7e6765 Commit as 0.9.0 5 rokov pred
bin 35153001ed Use -fPIC instead of -fpic 5 rokov pred
cfg 177fbb1117 Change log location in demo scripts 8 rokov pred
doc 582f9d7be4 Minor documentation update 5 rokov pred
man 5448329c8a Document RADIUS support 5 rokov pred
scripts dec10d4edd Add rundir creation to linux start script 7 rokov pred
src b2f82ed04f More accurate conditions in sockmap's main event loop 5 rokov pred
.gitattributes a060376f1e initial import to git 11 rokov pred
.gitignore e2906f1219 pass version thorugh building environment 7 rokov pred
3proxy.ico 7951de875a Move icon compilations to makefiles 11 rokov pred
3proxy.rc 285a7e6765 Commit as 0.9.0 5 rokov pred
Makefile.FreeBSD 35153001ed Use -fPIC instead of -fpic 5 rokov pred
Makefile.Linux dd75eaa35e Link with -fPIE for Linux 5 rokov pred
Makefile.Solaris 35153001ed Use -fPIC instead of -fpic 5 rokov pred
Makefile.Solaris-gcc 35153001ed Use -fPIC instead of -fpic 5 rokov pred
Makefile.am a060376f1e initial import to git 11 rokov pred
Makefile.debug e37a7f48d7 Older CVS comments removed 11 rokov pred
Makefile.inc e37a7f48d7 Older CVS comments removed 11 rokov pred
Makefile.intl e37a7f48d7 Older CVS comments removed 11 rokov pred
Makefile.llvm 68e05d54d7 -fno-strict-aliasing added to gcc options 7 rokov pred
Makefile.msvc 9bd81a18b9 Use native OpenSSL 1.0 static build for Windows 7 rokov pred
Makefile.msvc64 9bd81a18b9 Use native OpenSSL 1.0 static build for Windows 7 rokov pred
Makefile.msvcARM64 a42bb38d76 Use WSAPoll on Windows (except lite version) 7 rokov pred
Makefile.msvcCE 6c3a5db52f Get rid of pstdint.h 7 rokov pred
Makefile.openwrt-mips 35153001ed Use -fPIC instead of -fpic 5 rokov pred
Makefile.unix 35153001ed Use -fPIC instead of -fpic 5 rokov pred
Makefile.unix-install 8d36bb6453 Correct install scripts to take binaries from bin/ 7 rokov pred
Makefile.watcom e2906f1219 pass version thorugh building environment 7 rokov pred
Makefile.win e7433d633c 'radius' and 'auth radius' support added (not tested yet) 9 rokov pred
Makefile.winCE e7433d633c 'radius' and 'auth radius' support added (not tested yet) 9 rokov pred
README 0d713dacc1 README updated 5 rokov pred
authors 92fbb0d2f5 More minor documentation updates 7 rokov pred
copying 92fbb0d2f5 More minor documentation updates 7 rokov pred
rus.3ps 19d047dcbe Proxy-Connection is long time depricated, use only Connection 8 rokov pred

README

# 3APA3A 3proxy tiny proxy server
(c) 2002-2020 by Vladimir '3APA3A' Dubrovin <3proxy@3proxy.ru>

Download:
https://github.com/z3APA3A/3proxy/releases
or
https://3proxy.org/download/
Archive of old versions: https://github.com/z3APA3A/3proxy-archive


3proxy --install

installs and starts proxy as Windows service
(config file should be located in the same directory)

3proxy --remove

removes the service (should be stopped before via
'net stop 3proxy').

To build in Linux install git and build-essential packages, use

git clone https://github.com/z3apa3a/3proxy
cd 3proxy
ln -s Makefile.Linux Makefile
make
sudo make install

use /etc/3proxy/add3proxyuser.sh script to add users.


Please read doc/html/index.html and man pages.

Features:
1. General
+ IPv6 support for incoming and outgoing connection,
can be used as a proxy between IPv4 and IPv6 networks
in either direction.
+ HTTP/1.1 Proxy with keep-alive client and server support,
transparent proxy support.
+ HTTPS (CONNECT) proxy (compatible with HTTP/2 / SPDY)
+ Anonymous and random client IP emulation for HTTP proxy mode
+ FTP over HTTP support.
+ DNS caching with built-in resolver
+ DNS proxy
+ DNS over TCP support, redirecting DNS traffic via parent
proxy
+ SOCKSv4/4.5 Proxy
+ SOCKSv5 Proxy
+ SOCKSv5 UDP and BIND support (fully compatible with
SocksCAP/FreeCAP for UDP)
+ Transparent SOCKS redirection for HTTP, POP3, FTP, SMTP
+ POP3 Proxy
+ FTP proxy
+ TCP port mapper (port forwarding)
+ UDP port mapper (port forwarding)
+ SMTP proxy
+ Threaded application (no child process).
+ Web administration and statistics
+ Plugins for functionality extension
+ Native 32/64 bit application
2. Proxy chaining and network connections
+ Can be used as a bridge between client and different proxy type
(e.g. convert incoming HTTP proxy request from client to SOCKSv5
request to parent server).
+ Connect back proxy support to bypass firewalls
+ Parent proxy support for any type of incoming connection
+ Username/password authentication for parent proxy(s).
+ HTTPS/SOCKS4/SOCKS5 and ip/port redirection parent support
+ Random parent selection
+ Chain building (multihop proxing)
+ Load balancing between few network connections by choosing network
interface
3. Logging
+ tuneable log format compatible with any log parser
+ stdout logging
+ file logging
+ syslog logging (Unix)
+ ODBC logging
+ RADIUS accounting
+ log file rotation
+ automatic log file processing with external archiver (for files)
+ Character filtering for log files
+ different log files for different servces are supported
4. Access control
+ ACL-driven Access control by username, source IP,
destination IP/hostname, destination port and destination action
(POST, PUT, GET, etc), weekday and daytime.
+ ACL-driven (user/source/destination/protocol/weekday/daytime or
combined) bandwith limitation for incoming and (!)outgoing trafic.
+ ACL-driven traffic limitation per day, week or month for incoming and
outgoing traffic
+ Connection limitation and ratelimting
+ User authentication by username / password
+ RADIUS Authentication and Authorization
+ User authentication by DNS hostname
+ Authentication cache with possibility to limit user to single IP address
+ Access control by username/password for SOCKSv5 and HTTP/HTTPS/FTP
+ Cleartext or encrypted (crypt/MD5 or NT) passwords.
+ Connection redirection
+ Access control by requested action (CONNECT/BIND,
HTTP GET/POST/PUT/HEAD/OTHER).
+ All access control entries now support weekday and time limitations
+ Hostnames and * templates are supported instead of IP address
5. Extensions
+ Regular expression filtering (with PCRE) via PCREPlugin
+ Authentication with Windows username/password (cleartext only)
+ SSL/TLS decryptions with certificate spoofing
+ Transparent redirection support for Linux and *BSD
6. Configuration
+ support for configuration files
+ support for includes in configuration files
+ interface binding
+ socket options
+ running as daemon process
+ utility for automated networks list building
+ configuration reload on any file change
Unix
+ support for chroot
+ support for setgid
+ support for setuid
+ support for signals (SIGUSR1 to reload configuration)
Windows
+ support --install as service
+ support --remove as service
+ support for service START, STOP, PAUSE and CONTINUE commands (on
PAUSE no new connection accepted, but active connections still in
progress, on CONTINUE configuration is reloaded)
Windows 95/98/ME
+ support --install as service
+ support --remove as service
6. Compilation
+ MSVC (static)
+ OpenWatcom (static)
+ Intel Windows Compiler (msvcrt.dll)
+ Windows/gcc (msvcrt.dll)
+ Cygwin/gcc (cygwin.dll)
+ Unix/gcc
+ Unix/ccc
+ Solaris
+ Mac OS X, iPhone OS
+ Linux and derivered systems
+ Lite version for Windows 95/98/NT/2000/XP/2003
+ 32 bit and 64 bit versions for Windows Vista and above, Windows 2008 server and above

3proxy Combined proxy server may be used as
executable or service (supports installation and removal).
It uses config file to read it's configuration (see
3proxy.cfg.sample for details).
3proxy.exe is all-in-one, it doesn't require all others .exe
to work.
See 3proxy.cfg.sample for examples, see man 3proxy.cfg

proxy HTTP proxy server, binds to port 3128
ftppr FTP proxy server, binds to port 21
socks SOCKS 4/5 proxy server, binds to port 1080
ftppr FTP proxy server, please do not mess it with FTP over HTTP
proxy used in browsers
pop3p POP3 proxy server, binds to port 110. You must specify
POP3 username as username@target.host.ip[:port]
port is 110 by default.
Exmple: in Username configuration for you e-mail reader
set someuser@pop.example.org, to obtains mail for someuser
from pop.somehost.ru via proxy.
smtpp SMTP proxy server, binds to port 25. You must specify
SMTP username as username@target.host.ip[:port]
port is 25 by default.
Exmple: in Username configuration for you e-mail reader
set someuser@mail.example.org, to send mail as someuser
via mail.somehost.ru via proxy.
tcppm TCP port mapping. Maps some TCP port on local machine to
TCP port on remote host.
udppm UDP port mapping. Maps some UDP port on local machine to
UDP port on remote machine. Only one user simulationeously
can use UDP mapping, so it cann't be used for public service
in large networks. It's OK to use it to map to DNS server
in small network or to map Counter-Strike server for single
client (you can use few mappings on different ports for
different clients in last case).
mycrypt Program to obtain crypted password fro cleartext. Supports
both MD5/crypt and NT password.
mycrypt password
produces NT password
mycrypt salt password
produces MD5/crypt password with salt "salt".
dighosts Utility for building networks list from web page.


Run utility with --help option for command line reference.

Latest version is available from https://3proxy.org/

Want to donate the project? https://3proxy.org/donations/