Re: [squid-users] issue with video

2015-12-11 Thread Magic Link
https://drive.google.com/file/d/0B5u1WrFLUfPiNWhXLVRJZnJETzA/view?usp=sharing I test with squid 3.5.10 (from debian testing repository) et no luck :( it doesn't work too To: squid-users@lists.squid-cache.org From: yvoi...@gmail.com Date: Thu, 10 Dec 2015 21:25:46 +0600 Subject: Re: [squid-users]

Re: [squid-users] squid reverse proxy infront of exchange 2010

2015-12-11 Thread dweimer
On 2015-12-10 10:29 pm, Alex Samad wrote: Hi I did the change over today. Tested with Window 7 + exchange 2010 and it wouldn't connect whilst there was no tls1 ! interesting IE worked against the web site so .. Did you come across this issues ? On 11 December 2015 at 11:09, dweimer

[squid-users] Antw: Kerberos-Authentication to AD 2012

2015-12-11 Thread Rainer Backes
Is there no one who could help me ? >>> "Rainer Backes" 02.12.2015 20:12 >>> Hi, I'm trying to build a Squid-Proxy that integrates with an Active Directory - and I think I'm only one step from succeeding, but I still get one error from negotiate_kerberos_auth. Here is my

Re: [squid-users] Squid with NTLM auth behind netscaler

2015-12-11 Thread Fabio Bucci
No suggestions? 2015-12-07 14:57 GMT+01:00 Fabio Bucci : > Thanks Amos. > So, what do you suggest? Implement kerberos authetication instead NTLM one? > > I have to check if netscaler is able to perform that kind hack you wrote > before. > > Thanks again, > Fabio > >

Re: [squid-users] Squid with NTLM auth behind netscaler

2015-12-11 Thread Amos Jeffries
On 12/12/2015 3:08 a.m., Fabio Bucci wrote: > No suggestions? > I've already suggested several times to use Kerberos. But the choice is yours. Amos ___ squid-users mailing list squid-users@lists.squid-cache.org

Re: [squid-users] Squid with NTLM auth behind netscaler

2015-12-11 Thread Fabio Bucci
Thank Amos i know you suggested kerberos. How can i implement it instead of LDAP? 2015-12-11 15:39 GMT+01:00 Amos Jeffries : > On 12/12/2015 3:08 a.m., Fabio Bucci wrote: > > No suggestions? > > > > I've already suggested several times to use Kerberos. But the choice is >

Re: [squid-users] https and URL rewriting

2015-12-11 Thread Amos Jeffries
On 11/12/2015 10:30 p.m., Eugene M. Zheganin wrote: > Hi. > > I'm using URL rewriting to display instant messages to users. I'm doing > it using traffic interception and squid in transparent mode, so far I'm > intercepting http only. But I wonder, how it will behave with https, > since it's a

Re: [squid-users] squid 3.4, dstdomain

2015-12-11 Thread Amos Jeffries
On 11/12/2015 10:00 p.m., Massimo.Sala wrote: >> Massimo > >>> 2015/12/10 10:33:49| ERROR: '.addons.mozilla.org' is a subdomain of >>> 'addons.mozilla.org' > > > > Francesco aka Kinkie > >> No bug, it is really intentional: ".addons.mozilla.org" also matches >> "addons.mozilla.org" (without

Re: [squid-users] Squid 32-bit (2.7.2) much faster than Squid 64-bit (3.5.11)

2015-12-11 Thread Mike
I believe one possible issue is here: max_filedescriptors 3200 Need to have squid and the OS working together, adding it to squid without the proper setting in the OS causes delays and slow performance. I would suggest commenting this out and restarting the squid service to see if that helps.

[squid-users] Sha 256?

2015-12-11 Thread George Hollingshead
i am getting this message when trying to run my newly compiled squid 3.5.11. i think it's related to openssl but i'm really lost. Any incite on what's needed to correct this? i'm really determined to bump ssl so i can log them but it's becoming a pain for my skill level; lol Thanx FATAL: sign

Re: [squid-users] Sha 256?

2015-12-11 Thread Amos Jeffries
On 12/12/2015 10:55 a.m., George Hollingshead wrote: > i am getting this message when trying to run my newly compiled squid > 3.5.11. i think it's related to openssl but i'm really lost. > > Any incite on what's needed to correct this? i'm really determined to bump > ssl so i can log them but

Re: [squid-users] Squid with NTLM auth behind netscaler

2015-12-11 Thread Amos Jeffries
On 12/12/2015 3:42 a.m., Fabio Bucci wrote: > Thank Amos i know you suggested kerberos. How can i implement it instead of > LDAP? Amos ___ squid-users mailing list

Re: [squid-users] Help with basic config for ssl bump

2015-12-11 Thread Amos Jeffries
On 12/12/2015 7:48 a.m., Yuri Voinov wrote: > > http://wiki.squid-cache.org/ConfigExamples/Intercept/SslBumpExplicit > > Feel free to read our good Wiki. > > 12.12.15 0:46, George Hollingshead пишет: >> Can any of you help a newb out here. I'm upgradihng from 3.0 to 3.5 so i >> can see https

Re: [squid-users] Fw: Squid 32-bit (2.7.2) much faster than

2015-12-11 Thread Amos Jeffries
On 12/12/2015 7:42 a.m., Patrick Flaherty wrote: > Hello, > > I added the following line to my squid.conf and now Squid 3.5.11 is as fast > as 2.7.2 and feels like direct internet access. > > dns_v4_first on > That plus the huge difference in speed tells me that you have very broken IPv6

Re: [squid-users] Sha 256?

2015-12-11 Thread Amos Jeffries
On 12/12/2015 6:05 p.m., Amos Jeffries wrote: > On 12/12/2015 10:55 a.m., George Hollingshead wrote: >> i am getting this message when trying to run my newly compiled squid >> 3.5.11. i think it's related to openssl but i'm really lost. >> >> Any incite on what's needed to correct this? i'm

Re: [squid-users] reverse proxy setup

2015-12-11 Thread Amos Jeffries
On 12/12/2015 4:07 p.m., Alex Samad wrote: > Hi > > I'm thinking it is outlook not being able to talk tls1.1 and/or tls > 1.2 to squid. I am in the process of patching up my test box. > > By ignoring that, I mean the reason its there is that outlook tried to > talk tls1 to it whilst I had tls1

Re: [squid-users] squid 3.4, dstdomain

2015-12-11 Thread Massimo . Sala
> Massimo >> 2015/12/10 10:33:49| ERROR: '.addons.mozilla.org' is a subdomain of >> 'addons.mozilla.org' Francesco aka Kinkie > No bug, it is really intentional: ".addons.mozilla.org" also matches > "addons.mozilla.org" (without the dot). Francesco, thank you for the explanation. Is it

[squid-users] Fw: Squid 32-bit (2.7.2) much faster than Squid 64-bit (3.5.11)

2015-12-11 Thread TarotApprentice
Sorry should have replied to the list. MarkJ - Forwarded Message - >From: Tarot Apprentice >To: Patrick Flaherty >Sent: Friday, 11 December 2015, 14:10 >Subject: Re: [squid-users] Squid 32-bit (2.7.2) much faster than Squid 64-bit

Re: [squid-users] Fw: Squid 32-bit (2.7.2) much faster than Squid 64-bit (3.5.11)

2015-12-11 Thread Amos Jeffries
On 11/12/2015 10:16 p.m., TarotApprentice wrote: > Sorry should have replied to the list. > > MarkJ > > - Forwarded Message - >> From: Tarot Apprentice >> >> Looking at the startup logs the 3.4.11 says "store logging disabled" (it had >> an error) so would account for some of the

[squid-users] Help with basic config for ssl bump

2015-12-11 Thread George Hollingshead
Can any of you help a newb out here. I'm upgradihng from 3.0 to 3.5 so i can see https connects and i'm a little confused as to what i need to add to my working config for SSL bump i have certificates generated just a basic squid.conf of what i need to add to get SSL bump so i can log https

Re: [squid-users] Help with basic config for ssl bump

2015-12-11 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 http://wiki.squid-cache.org/ConfigExamples/Intercept/SslBumpExplicit Feel free to read our good Wiki. 12.12.15 0:46, George Hollingshead пишет: > Can any of you help a newb out here. I'm upgradihng from 3.0 to 3.5 so i > can see https connects

Re: [squid-users] reverse proxy setup

2015-12-11 Thread Alex Samad
Hi I'm thinking it is outlook not being able to talk tls1.1 and/or tls 1.2 to squid. I am in the process of patching up my test box. By ignoring that, I mean the reason its there is that outlook tried to talk tls1 to it whilst I had tls1 turned off A On 11 December 2015 at 15:50, Amos Jeffries