Re: haproxy-systemd-wrapper with -sf causes it to exit and print usage info

2015-01-21 Thread Yaron Rosenbaum
Hi Brian Thanks! I wish there was a built-in feature in haproxy to reload on config change. That would make a lot of people happy. Maybe I’ll open an issue for that. Regarding USR2 - 1) Are you sure it’s not USR1 ? 2) If I understand correctly, then what you’re saying would cause the unit to

DN Single line representation delimiter

2015-01-21 Thread Phillip Decker
Hello, I'm writing with regard to the current delimiter used when haproxy passes the DN as one line from an SSL cert along in the headers to backend servers- Right now, that seems to be hardcoded to a '/' in the ssl_sock.c file, in function ssl_sock_get_dn_oneline(...) on approximately file line

Re: Problems about Hot Configuration of Haproxy

2015-01-21 Thread Vincent Bernat
❦ 22 janvier 2015 11:47 +0800, hu.zhang hu.zh...@dev.bessystem.com : Thank you for your quick reply. I did a test in this way. I found the maximum connection time into 3S. Our client is particularly concerned about the http response time. Do you have another way to add/remove the servers?

Re: haproxy-systemd-wrapper with -sf causes it to exit and print usage info

2015-01-21 Thread Yuan Long
$ /etc/init.d/haproxy Usage: /etc/init.d/haproxy {start|stop|status|restart|try-restart|reload|force-reload} $ Are reload/force-reload not enough. Regards, Long Wu Yuan 龙 武 缘 Sr. Linux Engineer 高级工程师 ChinaNetCloud

Re: Problems about Hot Configuration of Haproxy

2015-01-21 Thread hu.zhang
Hi,Vivek: Thank you for your quick reply. I did a test in this way. I found the maximum connection time into 3S. Our client is particularly concerned about the http response time. Do you have another way to add/remove the servers? Regards, Hu -邮件原件- 发件人: Vivek Malik

Re: What is the hardware requirement for haproxy?

2015-01-21 Thread Willy Tarreau
Hi, On Tue, Jan 20, 2015 at 10:42:01AM -0800, Bryan Talbot wrote: The hardware requirements for haproxy itself are very modest and nearly anything will work. The requirements really depend on how much and what sort of traffic you need to handle. Network card and CPU speed are the most

OCSP requests for SSL Client Authentication

2015-01-21 Thread SEPAROVIC, Jason (Jason)** CTR **
Hi, Can haproxy be configured to make OCSP requests to an OCSP Responder to check certificate status when authenticating a client? Current support for CRL seems limited in that it’s not realtime and the haproxy process must be reloaded whenever a change in CRL number is detected by an external

RE: Rebuild Haproxy with new openssl version

2015-01-21 Thread Lukas Tribus
I have installed haproxy from ubuntu repo (haproxy version : 1.5.9). Recently Openssl security team released security patches for vulnerability (USN-2459-1). Please let me know how to rebuild the haproxy with newly installed Openssl version. Don't rebuild. Just use your operating systems

Re: TPROXY - any functionality lost?

2015-01-21 Thread Baptiste
On Tue, Jan 20, 2015 at 6:13 PM, Shawn Heisey hapr...@elyograg.org wrote: On 1/20/2015 6:12 AM, Thomas Heil wrote: On 20.01.2015 03:26, Shawn Heisey wrote: When haproxy is run in TPROXY mode, does it lose any functionality, or can I do all the same things as I can when it's acting in normal

The Hot Sell Portable waterproof sports camcorder from Winseen

2015-01-21 Thread fieldmonitor004
Dear Friend, How are you? You got this email because we would like to recommend to you our hottest Mini Sports Camera, Nightshot Flashlight DV, HD Car DVR products as follows: 1. Portable 1080P Nightshot Flashlight DVF082 with build in dual LED, G-sensor, Motion

Re: TPROXY - any functionality lost?

2015-01-21 Thread Shawn Heisey
On 1/21/2015 2:52 AM, Baptiste wrote: Everything is explained here: http://blog.haproxy.com/2013/09/16/howto-transparent-proxying-and-binding-with-haproxy-and-aloha-load-balancer/ If you can't do it, maybe you should ask the HAProxy experts to help you: