cli icon indicating copy to clipboard operation
cli copied to clipboard

invalid character '<' looking for beginning of value

Open 8000thCube opened this issue 5 months ago • 7 comments

I don't really know what happened here. I have a PC with Debian 12 operating system that I normally leave on to use the GPU for training local ML models and decided to host something there instead of getting a proper sever since I'm already leaving running anyway. After about a week loophole started saying

INF SSH Connection failed, retrying in 10 seconds... (Attempt {n}/5)
Initializing secure tunnel...  Error! ssh: handshake failed: ssh: unable to authenticate, attempted methods [none publickey], no supported methods remain

After 5 attempts it seemed to be done trying to reconnect, so I restarted the program and now it says

Registering your domain... Error! invalid character '<' looking for beginning of value

I'm not sure what to do with this. Restarting the computer didn't help, and it's not like I changed anything about the program I'm trying to expose. Where is it getting '<' from when looking for the beginning of the value? I think it's a bug probably idk.

8000thCube avatar Aug 12 '25 17:08 8000thCube

loophole.cloud domain seems to been expired?

Notalifeform avatar Aug 13 '25 05:08 Notalifeform

Hey. Yesterday, we had trouble with the certificate for the api endpoint. It should have lasted for about 15 minutes only.

Loophole itself does not receive much love from us recently, that's true. We just take it is still running for you for free. Unfortunately, we are fighting malicious users a lot during last weeks which sometimes leads to downtimes / hiccups in the service when trying to get them off the service.

0x7f avatar Aug 13 '25 07:08 0x7f

Hm, looks like an issue with the domain loophole.cloud itself. Investigating. Will keep you posted.

0x7f avatar Aug 13 '25 08:08 0x7f

The domains were cancelled by out provider. Still investigating why, but I was able to get them back. The service should be running again. Sorry for the inconvenience.

0x7f avatar Aug 13 '25 08:08 0x7f

The domains were cancelled by out provider. Still investigating why, but I was able to get them back. The service should be running again. Sorry for the inconvenience.

It's still there...🤔 Or should I need to wait more?

Loophole - End to end TLS encrypted TCP communication between you and your clients

Enter SSH password: Registering your domain... Error! invalid character '<' looking for beginning of value 8:46AM ERR Something unexpected happened, please let developers know 8:46AM FTL invalid character '<' looking for beginning of value


Also I have a question, are loophole supporting TCP and UDP?

aliyafarhana avatar Aug 13 '25 08:08 aliyafarhana

Works for me. Can you please retry?

Also I have a question, are loophole supporting TCP and UDP?

No, at the moment the whole service is designed to support HTTPS only. Technically, we could support TCP, but not in the secure way we do support https. That's why I did not want to support it yet. The HTTPS traffic is tunneled through an encrypted SSH connection to our backend servers. The https traffic inside this tunnel is encrypted again with the SSL certificate only you have on your machine. This make it impossible for us (or any malicious third party in between) to inspect the traffic you are hosting. We can not guarantee this for TCP which is why I don't want to offer it. I do understand the desire to host TCP via loophole and maybe we can find a way to securely host it in the future. Hope this helps.

0x7f avatar Aug 13 '25 09:08 0x7f

Works for me. Can you please retry?

Oh yeah, it's running now.


No, at the moment the whole service is designed to support HTTPS only. Technically, we could support TCP, but not in the secure way we do support https. That's why I did not want to support it yet. The HTTPS traffic is tunneled through an encrypted SSH connection to our backend servers. The https traffic inside this tunnel is encrypted again with the SSL certificate only you have on your machine. This make it impossible for us (or any malicious third party in between) to inspect the traffic you are hosting. We can not guarantee this for TCP which is why I don't want to offer it. I do understand the desire to host TCP via loophole and maybe we can find a way to securely host it in the future. Hope this helps.

Oh I see, it's okay then!

aliyafarhana avatar Aug 13 '25 09:08 aliyafarhana