[squid-users] squid through another proxy

2004-03-16 Thread babar haq
Hi I know we can configure squid to work through another proxy. Can we make squid work through another socks server. Or is there a way to use a socks server for internet sharing. Babar -- ___ Sign-up for Ads Free at Mail.com

[squid-users] applying patch files

2004-03-16 Thread Andrej G. Zadorozhnyj
I have Squid 2.5 Stable 4 installed from port tree (portrevision 10 FreeBSD 4.9) and I want to install by hand (because there is not new port revision in port tree yet) new patch files, but I don't known how to do it! Can anybody explain me how to do it correctly? Andrej.

RE: [squid-users] applying patch files

2004-03-16 Thread Elsen Marc
I have Squid 2.5 Stable 4 installed from port tree (portrevision 10 FreeBSD 4.9) and I want to install by hand (because there is not new port revision in port tree yet) new patch files, but I don't known how to do it! Can anybody explain me how to do it correctly? Andrej. %

RE: [squid-users] squid through another proxy

2004-03-16 Thread Elsen Marc
Hi I know we can configure squid to work through another proxy. - Check 'cache_peer' directive in squid.conf.default (and comments). Can we make squid work through another socks server. Or is - No. M. there a way to use a socks server for internet sharing. Babar

RE: [squid-users] verify winbind support

2004-03-16 Thread Babar Kazmi
Dear Bilal Try squid -v Also try configuring ntlm at your squid.conf and try running squid -k Regards Babar Kazmi From: Bilal Dar Hi, How can i check if my squid version supports winbind. Thanks.

Re: AW: [squid-users] [Squid-Users] Problems with cachemgr.cgi

2004-03-16 Thread Serassio Guido
Hi, At 08.28 16/03/2004, Altrock, Jens wrote: I was sure until you mentioned that ;) No, just kidding, I am not at all sure now. But strange is that there comes a user/password/domain dialog box after renaming the file to .exe and trying to access the cachemgr via browser.. anyway I have full

[squid-users] Wbinfo_group.pl

2004-03-16 Thread Martin, Neil
Hi. I'm using Redhat Enterprise Linux with Squid 2.5 STABLE 5. It appears as though wbinfo_group.pl has an issue with shellwords.pl. It seems to hang? Is there any update or patch available for this Thanks Neil

[squid-users] external_acl module

2004-03-16 Thread Ilya
Is it possible to pass to the exterbal_acl module the client port? client:2323 --- squid (squid passes to external_acl module port 2323) wbr, Ilya

[squid-users] SSO with Novell eDirectory

2004-03-16 Thread Stephane DESMET
Hello. I am trying to setup SSO with Squid and Novell eDirectory. Since Samba cannot use e-directory password at this time, I am looking for any other way to do that. I was thinking of synchronising an Active Directory to my eDirectory. This way, each change on my eDirectory would be also made

[squid-users] NTLM: TCP_DENIED 407 message size

2004-03-16 Thread Rodrigo Royo, Diego
Hi, We are using squid.2.5.STABLE5 pached + samba.3.0.2 to support NTLM authentication. It works fine, but we have noticed a lot of traffic due to TCP_DENIED 407 when using https (port 443), each requests take about 1.7 kBytes, is possible to reduce this? Thanks

Re: [squid-users] NTLM: TCP_DENIED 407 message size

2004-03-16 Thread Antonio Manfreda
Not possible, it's the way proxy authentication works. See this link for more info about NTLM authentication mechanism. http://squid.sourceforge.net/ntlm/client_proxy_protocol.html Regards, Antonio Manfreda - Original Message - From: Rodrigo Royo, Diego [EMAIL PROTECTED] To: [EMAIL

Re: [squid-users] applying patch files

2004-03-16 Thread Duane Wessels
On Tue, 16 Mar 2004, Andrej G. Zadorozhnyj wrote: I have Squid 2.5 Stable 4 installed from port tree (portrevision 10 FreeBSD 4.9) and I want to install by hand (because there is not new port revision in port tree yet) new patch files, but I don't known how to do it! Can anybody explain

AW: [squid-users] Wbinfo_group.pl

2004-03-16 Thread Altrock, Jens
look here, they have found some more problems with the wbinfo_group.pl script and got a working version (tested it, runs fine): http://itmanagers.net/postt10.html Regards, Jens Altrock -Ursprüngliche Nachricht- Von: Martin, Neil [mailto:[EMAIL PROTECTED] Gesendet: Dienstag, 16. März

AW: AW: [squid-users] [Squid-Users] Problems with cachemgr.cgi

2004-03-16 Thread Altrock, Jens
Anonymous Access is allowed, although I don't mind about that for I have used a Domain Admin account so that should work too... execute permissions are also set. renaming the file to .exe on apache brigs up the following error: couldn't create child process: 720005: cachemgr.exe strange

Re: [squid-users] squid through another proxy

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004, babar haq wrote: I know we can configure squid to work through another proxy. Yes. Can we make squid work through another socks server. Or is there a way to use a socks server for internet sharing. Many people have reported success in SOCKSifying Squid using runsocks

Re: [squid-users] applying patch files

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004, Andrej G. Zadorozhnyj wrote: I have Squid 2.5 Stable 4 installed from port tree (portrevision 10 FreeBSD 4.9) and I want to install by hand (because there is not new port revision in port tree yet) new patch files, but I don't known how to do it! Can anybody explain me

Re: [squid-users] Wbinfo_group.pl

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004, Martin, Neil wrote: Hi. I'm using Redhat Enterprise Linux with Squid 2.5 STABLE 5. It appears as though wbinfo_group.pl has an issue with shellwords.pl. It seems to hang? shellwords.pl and most other Perl programs has an issue with UTF-8 locales. In the script

[squid-users] authenticateUserRequestUsername() method

2004-03-16 Thread Graeme Bisset
Hi, This question would probably suit the squid-dev list better but here goes... I'm currently migrating from a '2.5-PRE3' build to a '2.5-STABLE5' build and in both systems I use NTLM authentication using Winbindd. When I call the authenticateUserRequestUsername() method on the 2.5-PRE3 build

Re: [squid-users] SSO with Novell eDirectory

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004, Stephane DESMET wrote: I am trying to setup SSO with Squid and Novell eDirectory. First question: Is there any other proxy servers supporting this type of configuration without requiring special client software? I was thinking of synchronising an Active Directory to my

Re: [squid-users] Special access rights to a sub-group of users

2004-03-16 Thread fefi
Hi Henrik ! I've made several tests with the statement orders. none of them worked... I got the feeling that the acl statement is not understood with only the IP address... Thanks for any help. Regards, Fernanda On 16 Mar 2004, Henrik Nordstrom wrote: On Mon, 15 Mar 2004 [EMAIL

Re: [squid-users] Special access rights to a sub-group of users

2004-03-16 Thread fefi
Hi Henrik ! I've made several tests with the statement orders. none of them worked... I got the feeling that the acl statement is not understood with only the IP address... Thanks for any help. Regards, Fernanda On 16 Mar 2004, Henrik Nordstrom wrote: On Mon, 15 Mar 2004 [EMAIL

Re: [squid-users] external_acl module

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004, Ilya wrote: Is it possible to pass to the exterbal_acl module the client port? No and yes. It is not supported in the standard Squid-2.5, but it is supported by patches and in the upcoming Squid-3.0 release. Had a customer needing to implement the IDENT protocol via

[squid-users] WG: parseBytesUnits : unknown bytes unit 'allow' IN reply_body_ma x_size

2004-03-16 Thread Krakovic, Roman
I get this error when implementing this line : (Squid 3.0 March 2004) reply_body_max_size 2 allow internetuser OR reply_body_max_size 5000 allow internetuser OR similar. ERROR WHEN STARTING SQUID : parseBytesUnits : unknown bytes unit 'allow' It seems the bytes count cannot be read. BUT

Re: [squid-users] applying patch files

2004-03-16 Thread Thomas-Martin Seck
* Andrej G. Zadorozhnyj ([EMAIL PROTECTED]): I have Squid 2.5 Stable 4 installed from port tree (portrevision 10 FreeBSD 4.9) and I want to install by hand (because there is not new port revision in port tree yet) new patch files, but I don't known how to do it! Can anybody explain me how to

Re: [squid-users] external_acl module

2004-03-16 Thread Ilya
On Tue, 16 Mar 2004 17:38:02 +0100 (CET) Is it possible to pass to the exterbal_acl module the client port? No and yes. It is not supported in the standard Squid-2.5, but it is supported by patches and in the upcoming Squid-3.0 release. Where can i find such patch? Does this feature described

[squid-users] Re: Squid ACL

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004, selvam e wrote: Dear Sir, I am check the access.log under /usr/local/squid/var/log in access.log, 1079367942.764 375 192.9.200.247 TCP_DENIED/403 1355 GET http://mail.yahoo.com/ -NONE/- text/html the above line was repeated in several times in log. How to

Re: [squid-users] problems detecting downloads with Squid

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004, Luis Miguel wrote: Thanks, it works not allowing this kind of download. Are there any way to pass this downloads to the redirector? It is already, but as you noticed there is no way for the redirector to tell that this is a download. This is because redirectors is

Re: [squid-users] NTLM: TCP_DENIED 407 message size

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004, Rodrigo Royo, Diego wrote: We are using squid.2.5.STABLE5 pached + samba.3.0.2 to support NTLM authentication. It works fine, but we have noticed a lot of traffic due to TCP_DENIED 407 when using https (port 443), each requests take about 1.7 kBytes, is possible to reduce

Re: [squid-users] authenticateUserRequestUsername() method

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004, Graeme Bisset wrote: When I call the authenticateUserRequestUsername() method on the 2.5-PRE3 build I am returned the domain name and the user name but when I run it on 2.5-STABLE5 I am only returned the user name. Not here... the full login name including domain is

Re: [squid-users] Special access rights to a sub-group of users

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004 [EMAIL PROTECTED] wrote: I've made several tests with the statement orders. none of them worked... So what have you tried? I got the feeling that the acl statement is not understood with only the IP address... It works.. as long as you do not use IP addresses

Re: [squid-users] parseBytesUnits : unknown bytes unit 'allow' IN reply_body_max_si ze

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004, Krakovic, Roman wrote: I get this error when implementing this line : (Squid 3.0 March 2004) parseBytesUnits : unknown bytes unit 'allow' reply_body_max_size 2 allow internetuser OR reply_body_max_size 5000 allow internetuser OR similar. See the release

Re: [squid-users] Re: Squid ACL

2004-03-16 Thread Michael Gale
Hello, Look for your squid binary (/usr/local/squid/sbin/squid ) and run: /usr/local/squid/sbin/squid -k reconfigure or /usr/local/squid/sbin/squid --help Michael. On Tue, 16 Mar 2004 18:30:35 +0100 (CET) Henrik Nordstrom [EMAIL PROTECTED] wrote: On Tue, 16 Mar 2004, selvam e

[squid-users] Squid Configuration -- 2 Questions

2004-03-16 Thread Jim Gifford
Question 1 : I want to limit things to only the local network. Do I have the proper configuration line for this? ./configure --prefix=/usr --sysconfdir=/etc/squid --localstatedir=/var --lib execdir=/usr/lib/squid --datadir=/usr/share/squid \ --enable-removal-policies=lru,heap

Re: [squid-users] Squid Configuration -- 2 Questions

2004-03-16 Thread Michael Gale
Hello, I believe these setting should be setup in the squid.conf file and you have compiled squid. For auto-discover I believe you need to run squid in transparent mode, so it listens on port 80 and not 3128. Why run a proxy server for access to a local network only ? Michael. On Tue, 16 Mar

RE: [squid-users] squid with wccp on solaris

2004-03-16 Thread James Zhao
I got the gre kernel module from oops and loaded it on my solaris box, still, it's not working. Has anyone successfully made this work on solaris? I have searched the web for several days and I haven't seen anyone claiming it's working on solaris. Maybe I have to switch to linux for this. James

Re: [squid-users] Squid Configuration -- 2 Questions

2004-03-16 Thread Jim Gifford
Maybe I used the wrong terminology. I only want the authorized users from (LAN) 192.168.0.0 to use the proxy. I want everyone from the Internet to use the servers I provide (ftp,www, etc).

Re: [squid-users] Special access rights to a sub-group of users

2004-03-16 Thread fefi
Hello again, Henrik! Here is what I tried: acl subgroup src 120.202.200.7 acl rionet src 120.202.200.0/255.0.0.0 acl morning time SMTWHFA 08:30-12:30 acl afternoon time SMTWHFA 13:30-18:30 acl denied_ext url_regex \.zip$ acl denied_ext url_regex \.midi$ \.wav$ acl denied_ext url_regex

Re: [squid-users] Special access rights to a sub-group of users

2004-03-16 Thread fefi
Hello again, Henrik! Here is what I tried: acl subgroup src 120.202.200.7 acl rionet src 120.202.200.0/255.0.0.0 acl morning time SMTWHFA 08:30-12:30 acl afternoon time SMTWHFA 13:30-18:30 acl denied_ext url_regex \.zip$ acl denied_ext url_regex \.midi$ \.wav$ acl denied_ext url_regex

Re: [squid-users] Squid Configuration -- 2 Questions

2004-03-16 Thread Michael Gale
Hello, Do you want the proxy to be available from the out side to ? What you most likely want is: You have a firewall with 3 zones, internal, external and dmz (SSN). You want users who are accessing the web servers located on the DMZ or external servers (such as google) to go through

[squid-users] Simple Q - wccp versions

2004-03-16 Thread steve . bondy
Can someone answer a simple question for me? I haven't been able to find the answer in the FAQ or anything yet. All Cisco documentation and all other references I can find refer to WCCP version 1 and 2, while the squid configuration guide refers to WCCP version 3 and 4. Can someone explain? I'm

Re: [squid-users] Special access rights to a sub-group of users

2004-03-16 Thread Muthukumar
- Original Message - acl subgroup src 120.202.200.7 acl rionet src 120.202.200.0/255.0.0.0 Put acl like this acl rionet src 120.202.200.0/255.0.0.0 acl subgroup src 120.202.200.7/32 acl morning time SMTWHFA 08:30-12:30 acl afternoon time SMTWHFA 13:30-18:30 acl denied_ext

RE: [squid-users] I need longer lines in access.log

2004-03-16 Thread Elsen Marc
I need longer lines for the urls in access.log It does not give me the whole url from Google image searches. I have another proxy product that gives me netscape style logs and it does give me the whole url. I use NetTracker to find out where our students are going and I can do

RE: [squid-users] squid and samba 3

2004-03-16 Thread Elsen Marc
I compiled the stock squid and samba 3 from source and installed. I didn't use any flags and was wondering if the stock setup will let me do active directory authentication? If it will not work this way what is the bare minimum to do this or do I have to follow the endless steps

Re: [squid-users] external_acl module

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004, Ilya wrote: Where can i find such patch? Looking.. ah, have forgot to publish the 2.5 version of this patch. Will appear on devel.squid-cache.org in a few days with the name external_acl_fuzzy. Does this feature described in upcoming Squid-3.0 release documentation?

RE: [squid-users] squid with wccp on solaris

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004, James Zhao wrote: I got the gre kernel module from oops and loaded it on my solaris box, still, it's not working. Does the router indicate it has redirected packets to the cache? What does tcpdump on the cache server say? Does anything hit your ip-filter interception

Re: [squid-users] Simple Q - wccp versions

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004 [EMAIL PROTECTED] wrote: All Cisco documentation and all other references I can find refer to WCCP version 1 and 2, while the squid configuration guide refers to WCCP version 3 and 4. WCCPv1 is WCCP wire protocol version 3. WCCPv2 is WCCP wire protocol version 4. Regards

Re: [squid-users] Two wccpv2 squid on the same box???

2004-03-16 Thread Henrik Nordstrom
On Wed, 17 Mar 2004, nqdinh wrote: Can I install 2 instance squid with wccpv2 on the same box and how to do that? No, but maninly because there is not WCCP kernel implementations supporting multiple instances of WCCPv2. Regards Henrik

Re: [squid-users] Special access rights to a sub-group of users

2004-03-16 Thread Henrik Nordstrom
On Wed, 17 Mar 2004, Muthukumar wrote: - Original Message - acl subgroup src 120.202.200.7 acl rionet src 120.202.200.0/255.0.0.0 Put acl like this acl rionet src 120.202.200.0/255.0.0.0 This sis NOT a valid netmaks for this network. The above should be either

Re: [squid-users] Special access rights to a sub-group of users

2004-03-16 Thread Henrik Nordstrom
On Tue, 16 Mar 2004 [EMAIL PROTECTED] wrote: Hello again, Henrik! acl subgroup src 120.202.200.7 acl rionet src 120.202.200.0/255.0.0.0 acl morning time SMTWHFA 08:30-12:30 acl afternoon time SMTWHFA 13:30-18:30 acl denied_ext url_regex \.zip$ acl denied_ext url_regex \.midi$