[Icecast] problem creating a systemd service

Per Gunnarsson mustafejen at gmail.com
Tue May 26 05:10:17 UTC 2020


Hello!

Icecast behaves oddly for me in debian testing, somehow the permissions
on my log file directory was set to root:adm if I remember things right.

Also there was no systemd service starting when I tried to start from
/etc/init.d,
somehow init services refer to systemd services nowadays whether they exist
or not.

I tried to create a systemd service looking like this:

[Unit]
Description=icecast2 streaming server
After=network.target tor at default.service
Documentation=http://liquidsoap.fm/

[Service]
Type=forking
User=icecast2
Group=icecast
ExecStart=/usr/local/bin/icecast -c /etc/icecast2/icecast.xml
Restart=on-failure

[Install]
WantedBy=multi-user.target
Alias=icecast2.service




I have this in my icecast log file (both with the debian testing package
and built from source),

[2020-05-26  06:44:21] INFO main/_server_proc Caught halt request,
shutting down...
[2020-05-26  06:44:21] INFO main/main Shutting down
[2020-05-26  06:44:21] INFO fserve/fserve_shutdown file serving stopped
[2020-05-26  06:44:22] INFO slave/_slave_thread shutting down current relays
[2020-05-26  06:44:22] INFO slave/_slave_thread Slave thread shutdown
complete
[2020-05-26  06:44:22] INFO auth/auth_shutdown Auth shutdown
[2020-05-26  06:44:22] INFO yp/yp_shutdown YP thread down
[2020-05-26  06:44:22] INFO stats/stats_shutdown stats thread finished
[2020-05-26  06:44:22] INFO main/main Icecast 2.4.4 server started
[2020-05-26  06:44:22] INFO yp/yp_recheck_config Adding new YP server
"http://dir.xiph.org/cgi-bin/yp-cgi" (timeout 6s, default interval 30s)
[2020-05-26  06:44:22] INFO yp/yp_recheck_config Adding new YP server
"http://yp.shoutcast.com" (timeout 6s, default interval 30s)
[2020-05-26  06:44:22] INFO yp/yp_recheck_config Adding new YP server
"http://icecast-yp.internet-radio.com" (timeout 6s, default interval 30s)
[2020-05-26  06:44:22] INFO yp/yp_update_thread YP update thread started
[2020-05-26  06:44:22] INFO connection/get_ssl_certificate SSL
certificate found at /etc/icecast2/icecast.pem
[2020-05-26  06:44:22] INFO connection/get_ssl_certificate SSL using
ciphers
ECDH+AESGCM:DH+AESGCM:ECDH+AES256:DH+AES256:ECDH+AES128:DH+AES:ECDH+3DES:DH+3DES:RSA+AESGCM:RSA+AES:RSA+3DES:!aNULL:!MD5:!DSS
 

In my liquidsoap log file, I have these things.

2020/05/26 06:21:43 [Verket_opus:2] Connection failed: bad answer:
scanf: bad input at char number 0: looking for 'H', found '\021'


2020/05/26 06:48:12 [Verket_opus:3] Connecting mount verket.opus for
source at mustafejen.se...
2020/05/26 06:48:12 [Verket_opus:2] Connection failed: could not read
data from host: Connection reset by peer in read()

2020/05/26 06:47:58 [clock.wallclock_main:2] Error when starting
Verket_opus: File "request.ml", line 507, characters 2-8: Assertion failed!





<icecast>
    <!-- location and admin are two arbitrary strings that are e.g. visible
         on the server info page of the icecast web interface
         (server_version.xsl). -->
    <location>Ersboda</location>
    <admin>mustafejen at gmail.com</admin>

    <!-- IMPORTANT!
         Especially for inexperienced users:
         Start out by ONLY changing all passwords and restarting Icecast.
         For detailed setup instructions please refer to the documentation.
         It's also available here: http://icecast.org/docs/
    -->

    <limits>
        <clients>100</clients>
        <sources>20</sources>
        <queue-size>524288</queue-size>
        <client-timeout>30</client-timeout>
        <header-timeout>30</header-timeout>
        <source-timeout>30</source-timeout>
        <!-- If enabled, this will provide a burst of data when a client 
             first connects, thereby significantly reducing the startup 
             time for listeners that do substantial buffering. However,
             it also significantly increases latency between the source
             client and listening client.  For low-latency setups, you
             might want to disable this. -->
        <burst-on-connect>1</burst-on-connect>
        <!-- same as burst-on-connect, but this allows for being more
             specific on how much to burst. Most people won't need to
             change from the default 64k. Applies to all mountpoints  -->
        <burst-size>65535</burst-size>
    </limits>

    <authentication>
        <!-- Sources log in with username 'source' -->
        <source-password>downloaded_smut</source-password>
        <!-- Relays log in with username 'relay' -->
        <relay-password>good_dope</relay-password>

        <!-- Admin logs in with the username given below -->
        <admin-user>admin</admin-user>
        <admin-password>Nikki_Benz</admin-password>
    </authentication>

    <!-- set the mountpoint for a shoutcast source to use, the default if not
         specified is /stream but you can change it here if an alternative is
         wanted or an extension is required
    <shoutcast-mount>/live.nsv</shoutcast-mount>
    -->

    <!-- Uncomment this if you want directory listings -->
    <directory>
        <yp-url-timeout>30</yp-url-timeout>
        <yp-url>http://dir.xiph.org/cgi-bin/yp-cgi</yp-url>
    </directory>

    <directory>
        <yp-url-timeout>30</yp-url-timeout>
        <yp-url>http://yp.shoutcast.com</yp-url>
    </directory>

	<directory>
                <yp-url-timeout>30</yp-url-timeout>
                <yp-url>http://icecast-yp.internet-radio.com</yp-url>
        </directory>


    <!-- This is the hostname other people will use to connect to your server.
         It affects mainly the urls generated by Icecast for playlists and yp
         listings. You MUST configure it properly for YP listings to work!
    -->
    <hostname>mustafejen.se</hostname>

    <!-- You may have multiple <listener> elements -->
    <listen-socket>
        <port>8000</port>
        <!-- <bind-address>127.0.0.1</bind-address> -->
        <!-- <shoutcast-mount>/stream</shoutcast-mount> -->
    </listen-socket>

    <listen-socket>
        <port>8001</port>
    </listen-socket>

    <listen-socket>
        <port>8002</port>
    </listen-socket>



    <!--
    <listen-socket>
        <port>8080</port>
    </listen-socket>
    -->


	<listen-socket>
        <port>8443</port>
	<ssl>1</ssl>
	</listen-socket>

	<listen-socket>
        <port>8444</port>
	<ssl>1</ssl>
	</listen-socket>


    <!-- Global header settings 
         Headers defined here will be returned for every HTTP request to Icecast.

         The ACAO header makes Icecast public content/API by default
         This will make streams easier embeddable (some HTML5 functionality needs it).
         Also it allows direct access to e.g. /status-json.xsl from other sites.
         If you don't want this, comment out the following line or read up on CORS. 
    -->
    <http-headers>
        <header name="Access-Control-Allow-Origin" value="*" />
    </http-headers>

<!--
    Relaying
         You don't need this if you only have one server.
         Please refer to the config for a detailed explanation.
    
    <master-server>10.0.0.3</master-server>
    <master-server-port>8004</master-server-port>
    <master-update-interval>120</master-update-interval>
    <master-password>hackme</master-password>

	relay	-->

<!-- echomoscow 

    <relay>
        <server>ice912.echo.msk.ru</server>
        <port>9120</port>
        <mount>/stream</mount>
        <local-mount>/stream</local-mount>
        <on-demand>0</on-demand>

        <relay-shoutcast-metadata>0</relay-shoutcast-metadata>
    </relay>

	 echomoscow	-->



<!--

    <relay>
        <server>stations.pacifica.org</server>
        <port>8000</port>
        <mount>/kpfa_64</mount>
        <local-mount>/kpfa_64</local-mount>
        <on-demand>0</on-demand>

        <relay-shoutcast-metadata>1</relay-shoutcast-metadata>
    </relay>

	kpfa	-->

    <!-- setting this makes all relays on-demand unless overridden, this is
         useful for master relays which do not have <relay> definitions here.
         The default is 0 -->
    <!--<relays-on-demand>1</relays-on-demand>-->

    <!--
    <relay>
        <server>127.0.0.1</server>
        <port>8080</port>
        <mount>/example.ogg</mount>
        <local-mount>/different.ogg</local-mount>
        <on-demand>0</on-demand>

        <relay-shoutcast-metadata>0</relay-shoutcast-metadata>
    </relay>
    -->


    <!-- Mountpoints
         Only define <mount> sections if you want to use advanced options,
         like alternative usernames or passwords
    -->

    <!-- Default settings for all mounts that don't have a specific <mount type="normal">.
    -->
    <!-- 
    <mount type="default">
        <public>0</public>
        <intro>/server-wide-intro.ogg</intro>
        <max-listener-duration>3600</max-listener-duration>
        <authentication type="url">
                <option name="mount_add" value="http://auth.example.org/stream_start.php"/>
        </authentication>
        <http-headers>
                <header name="foo" value="bar" />
        </http-headers>
    </mount>
    -->

    <!-- Normal mounts -->


    <mount>
        <mount-name>/verketlive.ogg</mount-name>

        <username>source</username>
        <password>Agent_420</password>

        <max-listeners>40</max-listeners>
        <burst-size>65536</burst-size>
        <hidden>0</hidden>
        <no-yp>0</no-yp>
    </mount>


    <mount>
        <mount-name>/fest</mount-name>
        <max-listeners>40</max-listeners>
        <burst-size>65536</burst-size>
        <hidden>0</hidden>
        <no-yp>0</no-yp>
    </mount>


    <mount type="normal">
    <mount-name>/feting</mount-name>
    <public>1</public>
    <stream-name>This stream has moved</stream-name>
    <stream-description>This stream has moved</stream-description>
    <stream-url>http://76qugh5bey5gum7l.onion/geezer</stream-url>
    <genre>silence</genre>
    <bitrate>128</bitrate>
    <type>audio/mpeg</type>
    <hidden>0</hidden>
    <burst-size>65536</burst-size>
    </mount>

    <mount type="normal">
    <mount-name>/pausmusik</mount-name>
    <public>1</public>
    <stream-name>Oh no!</stream-name>
    <stream-description>Something went wrong</stream-description>
    <stream-url>https://mustafejen.se/~per</stream-url>
    <genre>Test stream</genre>
    <bitrate>128</bitrate>
    <type>audio/mpeg</type>
    <hidden>0</hidden>
    <burst-size>65536</burst-size>
    </mount>


    <mount type="normal">
    <mount-name>/stream.opus</mount-name>
    <public>1</public>
    <stream-name>mustafejen opus</stream-name>
    <stream-description>Stream from Ersboda</stream-description>
    <stream-url>https://mustafejen.se/~per</stream-url>
    <genre>Alternative, eclectic</genre>
    <bitrate>32</bitrate>
    <type>audio/ogg</type>
    <subtype>opus</subtype>
    <hidden>0</hidden>
    <burst-size>65536</burst-size>
    </mount>

<!--
    <mount type="normal">
    <mount-name>/stream.opus</mount-name>
    <public>1</public>
    <stream-name>mustafejen opus</stream-name>
    <stream-description>Stream from Ersboda</stream-description>
    <stream-url>https://mustafejen.se/~per</stream-url>
    <genre>Alternative, eclectic</genre>
    <bitrate>32</bitrate>
    <type>audio/opus</type>
    <hidden>0</hidden>
    <burst-size>65536</burst-size>
    </mount>
-->


    <mount type="normal">
    <mount-name>/pausmusik.opus</mount-name>
    <public>1</public>
    <stream-name>Oh no!</stream-name>
    <stream-description>Something went wrong</stream-description>
    <stream-url>https://mustafejen.se/~per</stream-url>
    <genre>Test stream</genre>
    <bitrate>32</bitrate>
    <type>audio/ogg</type>
    <subtype>opus</subtype>
    <hidden>0</hidden>
    <burst-size>65536</burst-size>
    </mount>


    <mount type="normal">
    <mount-name>/verket.opus</mount-name>
    <public>1</public>
    <stream-name>Verket opus</stream-name>
    <stream-description>Bands from Verket</stream-description>
    <stream-url>http://verketumea.se</stream-url>
    <genre>Mainly Punk</genre>
    <bitrate>64</bitrate>
    <type>audio/ogg</type>
    <subtype>opus</subtype>
    <hidden>0</hidden>
    <burst-size>65536</burst-size>
    </mount>

    <mount type="normal">
    <mount-name>/desktop.webm</mount-name>
    <public>1</public>
    <stream-name>penner</stream-name>
    <stream-description>Der Penner</stream-description>
    <stream-url>https://mustafejen.se/~per</stream-url>
    <genre>Domestic</genre>
    <bitrate>1500</bitrate>
    <type>video/webm</type>
    <subtype>webm</subtype>
    <hidden>0</hidden>
    <burst-size>65536</burst-size>
    </mount>


<!--	test	

    <mount>

        <mount-name>/tomte.ogg</mount-name>

<authentication type="htpasswd">
	<option name="filename" value="/etc/icecast2/.htpasswd"/>
	<option name="allow_duplicate_users" value="0"/>
	</authentication>
    <http-headers>
            <header name="Content-Type" value="audio/ogg" status="200" />
    </http-headers>
        <username>source</username>
        <password>Ivar_fultjackar</password>

        <burst-size>65536</burst-size>
        <hidden>0</hidden>
        <no-yp>0</no-yp>
	
    </mount>

-->


    <mount type="normal">
    <mount-name>/darkson.opus</mount-name>
    <public>1</public>
    <stream-name>Dark Sonnet opus</stream-name>
    <stream-description>Dark Sonnets</stream-description>
    <stream-url>Vet ej vilken hemsida</stream-url>
    <genre>Various</genre>
    <bitrate>64</bitrate>
    <type>audio/ogg</type>
    <subtype>opus</subtype>
    <hidden>0</hidden>
    <burst-size>65536</burst-size>
    </mount>

<!--	Dark sonnets klart	-->


<!--	test opus mount	-->

    <mount type="normal">
    <mount-name>/tomte.opus</mount-name>
    <public>1</public>
    <stream-name>test opus</stream-name>
    <stream-description>bara en testström</stream-description>
    <stream-url>Vet ej vilken hemsida</stream-url>
    <genre>Various</genre>
    <bitrate>256</bitrate>
    <type>audio/ogg</type>
    <subtype>opus</subtype>
    <hidden>0</hidden>
    <burst-size>65536</burst-size>
    </mount>

<!--	end test opus mount	-->


    <fileserve>1</fileserve>

    <paths>
        <!-- basedir is only used if chroot is enabled -->
        <basedir>/usr/share/icecast2</basedir>

        <!-- Note that if <chroot> is turned on below, these paths must both
             be relative to the new root, not the original root -->
        <logdir>/var/log/icecast2</logdir>
        <webroot>/usr/share/icecast2/web</webroot>
        <adminroot>/usr/share/icecast2/admin</adminroot>
        <!-- <pidfile>/usr/share/icecast2/icecast.pid</pidfile> -->

        <!-- Aliases: treat requests for 'source' path as being for 'dest' path
             May be made specific to a port or bound address using the "port"
             and "bind-address" attributes.
          -->
        <!--
        <alias source="/foo" destination="/bar"/>
        -->
        <!-- Aliases: can also be used for simple redirections as well,
             this example will redirect all requests for http://server:port/ to
             the status page
        -->
        <alias source="/" destination="/status.xsl"/>


        <ssl-certificate>/etc/icecast2/icecast.pem</ssl-certificate>
	<ssl-allowed-ciphers>ECDH+AESGCM:DH+AESGCM:ECDH+AES256:DH+AES256:ECDH+AES128:DH+AES:ECDH+3DES:DH+3DES:RSA+AESGCM:RSA+AES:RSA+3DES:!aNULL:!MD5:!DSS</ssl-allowed-ciphers>

    </paths>

    <logging>
        <accesslog>access.log</accesslog>
        <errorlog>error.log</errorlog>
        <!-- <playlistlog>playlist.log</playlistlog> -->
        <loglevel>3</loglevel> <!-- 4 Debug, 3 Info, 2 Warn, 1 Error -->
        <logsize>10000</logsize> <!-- Max size of a logfile -->
        <!-- If logarchive is enabled (1), then when logsize is reached
             the logfile will be moved to [error|access|playlist].log.DATESTAMP,
             otherwise it will be moved to [error|access|playlist].log.old.
             Default is non-archive mode (i.e. overwrite)
        -->
        <!-- <logarchive>1</logarchive> -->
    </logging>

    <security>
        <chroot>0</chroot>
        <!--
        <changeowner>
            <user>nobody</user>
            <group>nogroup</group>
        </changeowner>
        -->
    </security>
</icecast>







-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.xiph.org/pipermail/icecast/attachments/20200526/329cfe8d/attachment.htm>


More information about the Icecast mailing list