Re: /dev/pf permission for squid 3.2.0.6 on openbsd 4.8

2011-04-20 Thread Stuart Henderson
On 2011-04-20, Indunil Jayasooriya wrote: > On Tue, Apr 19, 2011 at 12:00 PM, Indunil Jayasooriya > wrote: > > >> many thanks. I got it working. I changed from http_port 3129 intercept to >> http_port 127.0.0.1:3129 intercept in squid.conf file. >> >> Here's the rule in pf.conf >> >> pass in log

Re: /dev/pf permission for squid 3.2.0.6 on openbsd 4.8

2011-04-20 Thread Indunil Jayasooriya
On Tue, Apr 19, 2011 at 12:00 PM, Indunil Jayasooriya wrote: > many thanks. I got it working. I changed from http_port 3129 intercept to > http_port 127.0.0.1:3129 intercept in squid.conf file. > > Here's the rule in pf.conf > > pass in log on $int_if proto tcp from $lan_net to any port 80 \ >

Re: /dev/pf permission for squid 3.2.0.6 on openbsd 4.8

2011-04-19 Thread Indunil Jayasooriya
> The non-obvious thing here is you must bind the listening socket in > squid to 127.0.0.1 e.g. > > http_port 127.0.0.1:3127 transparent > > I will talk to the port maintainer about removing --enable-pf-transparent. > > many thanks. I got it working. I changed from http_port 3129 intercept to http

Re: /dev/pf permission for squid 3.2.0.6 on openbsd 4.8

2011-04-15 Thread Indunil Jayasooriya
> The non-obvious thing here is you must bind the listening socket in > squid to 127.0.0.1 e.g. > > http_port 127.0.0.1:3127 transparent > > I will talk to the port maintainer about removing --enable-pf-transparent. > > Hi, I think this below link may be useful. ( this reply from a squid developer)

Re: /dev/pf permission for squid 3.2.0.6 on openbsd 4.8

2011-04-13 Thread Stuart Henderson
On 2011-04-08, Reyk Floeter wrote: > On Fri, Apr 08, 2011 at 03:25:55PM +0530, Indunil Jayasooriya wrote: >> I am trying to test squid 3.2.0.6 on OpenBSD 4.8 (amd64) in >> transparent mode. I can browse internet. But, I get the below error. >> > >> # chgrp _squid /dev/pf >> # chmod g+rw /dev/pf >

Re: /dev/pf permission for squid 3.2.0.6 on openbsd 4.8

2011-04-13 Thread Insan Praja SW
Hi, This link may help: http://wiki.squid-cache.org/ConfigExamples/Intercept/OpenBsdPf Thanks, On Wed, 13 Apr 2011 16:12:51 +0700, Muhammad Muntaza wrote: 2011/4/8, Indunil Jayasooriya : Hi list, I am trying to test squid 3.2.0.6 on OpenBSD 4.8 (amd64) in transparent mode. I can browse i

Re: /dev/pf permission for squid 3.2.0.6 on openbsd 4.8

2011-04-13 Thread Muhammad Muntaza
2011/4/8, Indunil Jayasooriya : > Hi list, > > I am trying to test squid 3.2.0.6 on OpenBSD 4.8 (amd64) in > transparent mode. I can browse internet. But, I get the below error. > > > > 2011/04/08 17:43:11 kid1| Intercept.cc(305) PfInterception: PF open > failed: (13) Permission denied > 2011/04/08

Re: /dev/pf permission for squid 3.2.0.6 on openbsd 4.8

2011-04-08 Thread Reyk Floeter
On Fri, Apr 08, 2011 at 03:25:55PM +0530, Indunil Jayasooriya wrote: > I am trying to test squid 3.2.0.6 on OpenBSD 4.8 (amd64) in > transparent mode. I can browse internet. But, I get the below error. > > # chgrp _squid /dev/pf > # chmod g+rw /dev/pf > scary. squid should not touch /dev/pf at

/dev/pf permission for squid 3.2.0.6 on openbsd 4.8

2011-04-08 Thread Indunil Jayasooriya
Hi list, I am trying to test squid 3.2.0.6 on OpenBSD 4.8 (amd64) in transparent mode. I can browse internet. But, I get the below error. 2011/04/08 17:43:11 kid1| Intercept.cc(305) PfInterception: PF open failed: (13) Permission denied 2011/04/08 17:43:11 kid1| Intercept.cc(305) PfInterception