[squid-users] sslcrtvalidator_program

2014-12-01 Thread WorkingMan
Spam detection software, running on the system "master.squid-cache.org", has identified this incoming email as possible spam. The original message has been attached to this so you can view it or label similar future email. If you have any questions, see @@CONTACT_ADDRESS@@ for details. Content p

[squid-users] Forward proxy with BASIC authentication

2014-12-01 Thread fzab_
Hi, I want to use Squid locally on my computer to forward all traffic to a parent Squid proxy which uses BASIC authentication. The aim is to not store my password on every configuration file that needs internet access. So here's the only lines I added to Squid default conf file : /cache_peer x.x.

Re: [squid-users] squid 3.5x: Active Directory accounts with space issue

2014-12-01 Thread David Touzeau
Le 30/11/2014 09:08, Amos Jeffries a écrit : -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 30/11/2014 12:52 a.m., David Touzeau wrote: Le 26/11/2014 11:27, Amos Jeffries a écrit : On 24/11/2014 12:01 a.m., David Touzeau wrote: Hi We have connected 3.5.0.2-20141121-r13666 with Active Direc

Re: [squid-users] Memory Leak Squid 3.4.9 on FreeBSD 10.0 x64

2014-12-01 Thread k simon
I used the ugly tuning: set vm.defer_swapspace_pageouts to 1. But it is may caused some issue when the physic memory is really exhausted. I have no much time to investigate the right way, but I think maybe vm.swap_idle_threshold1/vm.swap_idle_threshold2 or vm.overcommit etc. maybe harmful.

Re: [squid-users] Problem with digest authentification and credential backend

2014-12-01 Thread FredB
> > Ok, thanks, > > Tested with both nonce_count and nonce_max_duration, no problem. Do > you known if it works with squid 3.5 ? > > No sorry I don't know, but if the patch can be applied I guess that yes it can works. Except if there are some changes in DIGEST between 3.4 and 3.5. __

Re: [squid-users] WARNING: there are more than 100 regular expressions

2014-12-01 Thread FredB
Maybe you should use a tool that has been created for the only purpose of filtering web sites. Like, e2guardian, squidguard, etc Fred ___ squid-users mailing list squid-users@lists.squid-cache.org http://lists.squid-cache.org/listinfo/squid-users

Re: [squid-users] Memory Leak Squid 3.4.9 on FreeBSD 10.0 x64

2014-12-01 Thread Doug Sampson
>Maybe your problem is related to sysctl mib tuning about > swap/overcommit etc. I did not observed memory leak with squid 3.4.4, > but FB 10 do swap frequently than old version. Could you elaborate a bit more? That went over my head. What could I do in terms of tuning the system? ~Doug

Re: [squid-users] WARNING: there are more than 100 regular expressions

2014-12-01 Thread Marcello Romani
Il 01/12/2014 09:57, Amos Jeffries ha scritto: [...] If you are importing a public list of domains to block please investigate whether your list source supports squid dstdomain ACL formats. The best lists provide files with Squid dstdomain format (which is also almost identical to the rbldnsd '

Re: [squid-users] Multiple SSL Domains on Reverse Proxy

2014-12-01 Thread Kinkie
Hi all, I've created bug 4153 to track progress. On Mon, Dec 1, 2014 at 8:59 AM, Henrik Nordstrom wrote: > > lör 2014-11-29 klockan 20:39 -0500 skrev Roman Gelfand: >> Is it possible to listen on port 443 for requests for multiple domains >> ie... www.xyz.com, www.mno.com, etc...? > > If you h

Re: [squid-users] squid-3.5.0.2-20141031-r13657 crashes

2014-12-01 Thread Amos Jeffries
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 1/12/2014 9:44 a.m., James Harper wrote: > I've been getting squid crashes with squid-3.5.0.2-20141031-r13657. > Basically I think my cache got corrupt - started seeing > TCP_SWAPFAIL_MISS and md5 mismatches. Config is cache_dir ufs > /usr/local/squ

Re: [squid-users] Squid WCCP with multiple workers

2014-12-01 Thread Stephen Baynes
Thanks for the suggestion of making wccp conditional on worker 1. Unfortunately it does not work. Stephen On 1 December 2014 at 08:38, Henrik Nordstrom wrote: > fre 2014-11-28 klockan 10:28 + skrev Stephen Baynes: >> Is WCCP supposed to work with Squid multiple workers? > > In theory it shou

Re: [squid-users] Squid 3.4.9 RPM release

2014-12-01 Thread Amos Jeffries
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 1/12/2014 10:11 p.m., Omid Kosari wrote: > Any news about ubuntu version ? Feel free to grab the 3.4.8-2 packages from Debian official repositories. It contains all the useful parts of Ubuntu packages except upstart integration and should work fine

Re: [squid-users] Squid WCCP with multiple workers

2014-12-01 Thread Amos Jeffries
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 1/12/2014 9:38 p.m., Henrik Nordstrom wrote: > fre 2014-11-28 klockan 10:28 + skrev Stephen Baynes: >> Is WCCP supposed to work with Squid multiple workers? > > In theory it should work.. but not sure it has been adapted for > multi-worker. N

Re: [squid-users] Best way to deny access to URLs in Squid 3.3.x?

2014-12-01 Thread Rafael Akchurin
Hello Mirza, We are building MSI installer for the Squid you are using (see sources at https://github.com/diladele/squid3-windows and http://squid.diladele.com/) - it is now very early Alpha and MSI for the qlproxyd will follow in a week or so. I will try to post the update when it is ready.

Re: [squid-users] 2.7.STABLE9 & Error with option deny_info from local requests

2014-12-01 Thread Amos Jeffries
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 29/11/2014 2:40 a.m., Mark Riede wrote: > Hello, > > I have a strange behavior with Squid 2.7.STABLE9 and local > requests which should be intercept by the option deny_info. > 1) *Please* upgrade your Squid. 2.7 has been unsupported for more than

Re: [squid-users] Squid 3.4.9 RPM release

2014-12-01 Thread Omid Kosari
Any news about ubuntu version ? -- View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/Squid-3-4-9-is-available-tp4668181p4668576.html Sent from the Squid - Users mailing list archive at Nabble.com. ___ squid-users mailing

Re: [squid-users] long standing bug about aufs on freebsd 10

2014-12-01 Thread k simon
I did not observed this bug with diskd, but diskd have less performance. Simon 在 14/12/1 13:49, d...@getbusi.com 写道: FWIW I have this bug in CentOS 6. On Mon, Dec 1, 2014 at 4:48 PM, k simon mailto:chio1...@gmail.com>> wrote: Hi, Lists, AUFS can not run stable one day and report

Re: [squid-users] Memory Leak Squid 3.4.9 on FreeBSD 10.0 x64

2014-12-01 Thread k simon
Maybe your problem is related to sysctl mib tuning about swap/overcommit etc. I did not observed memory leak with squid 3.4.4, but FB 10 do swap frequently than old version. Simon ___ squid-users mailing list squid-users@lists.squid-cache.org http:

Re: [squid-users] WARNING: there are more than 100 regular expressions

2014-12-01 Thread Amos Jeffries
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 28/11/2014 10:23 p.m., navari.lore...@gmail.com wrote: > I saw that the error does not preclude the use of the lines over > the 100. I have no problem with the CPU ( 7 % ) . Only I do not > like to see " Warning" > The RE engine can scan for indiv

Re: [squid-users] Memory Leak Squid 3.4.9 on FreeBSD 10.0 x64

2014-12-01 Thread Amos Jeffries
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 26/11/2014 8:59 a.m., Doug Sampson wrote: > > Thanks, Amos, for your pointers. > > I've commented out all the fresh_patterns lines appearing above > the last two lines. > > I also have dropped diskd in favor of using aufs exclusively, > taking ou

Re: [squid-users] Squid WCCP with multiple workers

2014-12-01 Thread Henrik Nordstrom
fre 2014-11-28 klockan 10:28 + skrev Stephen Baynes: > Is WCCP supposed to work with Squid multiple workers? In theory it should work.. but not sure it has been adapted for multi-worker. > It works with 1 worker. If we change the number of workers from 1 to 2 > we see it fail. The router no l

Re: [squid-users] Multiple SSL Domains on Reverse Proxy

2014-12-01 Thread Henrik Nordstrom
lör 2014-11-29 klockan 20:39 -0500 skrev Roman Gelfand: > Is it possible to listen on port 443 for requests for multiple domains > ie... www.xyz.com, www.mno.com, etc...? If you have one IP address per domain then it's just one https_port with explicit ip:port per domain, with vhost or defaultdom