[squid-users] PAC file on a squid proxy

2015-05-19 Thread Monah Baki
Hi all, Our upstream proxy (cloud based) requires a PAC file to be deployed on each workstation. Is there a way to have a PAC file on a squid servers and then have users use the local squid servers instead. Thanks Monah ___ squid-users mailing list

[squid-users] BUG 3279: HTTP reply without Date:

2015-04-12 Thread Monah Baki
Hi all, Compiled squid 3.5.2 on CentOS 6.6 as follows: $ ./configure --prefix=/home/cache --enable-follow-x-forwarded-for --with-large-files --enable-ssl --disable-ipv6 --enable-esi --enable-kill-parent-hack --enable-snmp --with-pthreads --with-filedescriptors=65535

Re: [squid-users] squid intercept config

2015-03-30 Thread Monah Baki
at 12:12 PM, Yuri Voinov yvoi...@gmail.com wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - From your PC run telnet 10.0.0.24 80. You've seen if TCP socket opens. 05.03.15 23:10, Monah Baki пишет: How can I confirm, I have access only to the BSD box Thanks On Thu, Mar 5, 2015

Re: [squid-users] I am seeing the following in my cache.log

2015-03-24 Thread Monah Baki
squid server started complaining about running out of file descriptors, and stopped working. Thanks On Tue, Mar 24, 2015 at 8:58 PM, Amos Jeffries squ...@treenet.co.nz wrote: On 25/03/2015 9:05 a.m., Monah Baki wrote: Thanks Yuri for the URL. The company is a small ISP using policy based routing

[squid-users] How to run squidclient

2015-03-20 Thread Monah Baki
Hi all, I am running CentOS 6.6 64 bit, and need to get some information from the command line. Compiled squid as: ./configure --prefix=/home/cache --enable-follow-x-forwarded-for --with-large-files --enable-ssl --disable-ipv6 --enable-esi --enable-kill-parent-hack --enable-snmp --with-pthreads

Re: [squid-users] How to run squidclient

2015-03-20 Thread Monah Baki
-cache (squid/3.5.2)/p !-- ERR_ACCESS_DENIED -- /div /body/html On Fri, Mar 20, 2015 at 12:13 PM, Amos Jeffries squ...@treenet.co.nz wrote: On 20/03/2015 11:04 p.m., Monah Baki wrote: Hi all, I am running CentOS 6.6 64 bit, and need to get some information from the command line

Re: [squid-users] How to run squidclient

2015-03-20 Thread Monah Baki
Regarding DNS lookup, if I type nslookup 10.0.0.24 or nslookup isn-phc-cache, Our nameservers in /etc/resolv.conf are google's name server Do I need to resolve first to use squidclient??? [root@ISN-PHC-Cache bin]# ./squidclient -vv -j isn-phc-cache mgr:info verbosity level set to 2 Request:

Re: [squid-users] squid intercept config

2015-03-13 Thread Monah Baki
, something I do not know, don't add it. On Fri, Mar 13, 2015 at 1:23 PM, Amos Jeffries squ...@treenet.co.nz wrote: On 14/03/2015 6:15 a.m., Antony Stone wrote: On Friday 13 March 2015 at 17:47:44 (EU time), Monah Baki wrote: http_access allow localhost manager http_access deny manager

Re: [squid-users] squid intercept config

2015-03-13 Thread Monah Baki
TCP_REFRESH_UNMODIFIED/304 329 GET http://js.moatads.com/turner763610601596/moatad.js - ORIGINAL_DST/ 80.239.148.9 application/x-javascript On Fri, Mar 13, 2015 at 12:18 PM, Yuri Voinov yvoi...@gmail.com wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 13.03.15 21:58, Monah Baki пишет

Re: [squid-users] squid intercept config

2015-03-07 Thread Monah Baki
at 11:26 PM, Amos Jeffries squ...@treenet.co.nz wrote: On 6/03/2015 1:19 a.m., Monah Baki wrote: Hi all, can anyone verify if this is correct, need to make ure that users will be able to access the internet via the squid. Running FreeBSD with a single interface with Squid-3.5.2 Policy

Re: [squid-users] squid intercept config

2015-03-07 Thread Monah Baki
a.m., Monah Baki wrote: Forgot to paste my test. Basically from my squid server: root@ISN-PHC-CACHE:/cache/squid/bin # ./squidclient -h www.cnn.com -H 'Host: www.cnn.com\n' -p 80 HTTP/1.1 302 Found Server: Varnish Retry-After: 0 Content-Length: 0 Location: http

Re: [squid-users] squid intercept config

2015-03-07 Thread Monah Baki
in pass in log quick on bge0 pass out log quick on bge0 pass out keep state On Sat, Mar 7, 2015 at 8:24 AM, Amos Jeffries squ...@treenet.co.nz wrote: On 8/03/2015 1:09 a.m., Monah Baki wrote: Forgot to paste my test. Basically from my squid server: root@ISN-PHC-CACHE:/cache/squid/bin

Re: [squid-users] squid intercept config

2015-03-07 Thread Monah Baki
2015 12:08:21 GMT Via: 1.1 varnish Connection: close X-Served-By: cache-lhr6328-LHR X-Cache: MISS X-Cache-Hits: 0 Thanks Monah On Fri, Mar 6, 2015 at 11:26 PM, Amos Jeffries squ...@treenet.co.nz wrote: On 6/03/2015 1:19 a.m., Monah Baki wrote: Hi all, can anyone verify if this is correct

Re: [squid-users] Fwd: squid intercept config

2015-03-06 Thread Monah Baki
:57 AM, Antony Stone antony.st...@squid.open.source.it wrote: On Friday 06 March 2015 at 14:50:50 (EU time), Monah Baki wrote: http://wiki.squid-cache.org/ConfigExamples/Intercept/FreeBsdPf So something else is missing? Can you run a packet sniffer on the proxy, to see what packets come

[squid-users] Fwd: squid intercept config

2015-03-06 Thread Monah Baki
,ar;q=0.6 Via: 1.1 ISN-PHC-CACHE (squid/3.5.2) X-Forwarded-For: 10.0.0.23 Cache-Control: max-age=259200 Connection: keep-alive Any ideas? -- Forwarded message -- From: Monah Baki monahb...@gmail.com Date: Thu, Mar 5, 2015 at 7:19 AM Subject: squid intercept config To: Squid Users

Re: [squid-users] Fwd: squid intercept config

2015-03-06 Thread Monah Baki
box? I.e., web-server? 06.03.15 19:26, Monah Baki пишет: I went and changed the 10.0.0.0/8 to 10.0.0.23, which is the client station we are testing on, same results. Forward loop detected Thanks On Fri, Mar 6, 2015 at 8:14 AM, Antony Stone antony.st...@squid.open.source.it wrote

Re: [squid-users] Fwd: squid intercept config

2015-03-06 Thread Monah Baki
smartphone on the Verizon Wireless 4G LTE network. *From: *Yuri Voinov *Sent: *Friday, March 6, 2015 8:44 AM *To: *Monah Baki *Cc: *squid-users@lists.squid-cache.org *Subject: *Re: [squid-users] Fwd: squid intercept config Ok. In this case this is NAT misconfiguration. You need to check

Re: [squid-users] squid intercept config

2015-03-05 Thread Monah Baki
How can I confirm, I have access only to the BSD box Thanks On Thu, Mar 5, 2015 at 11:12 AM, Yuri Voinov yvoi...@gmail.com wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Does 80 port outside BSD-box listens? 05.03.15 21:25, Monah Baki пишет: root@ISN-PHC-CACHE:/cache/squid/bin

Re: [squid-users] squid intercept config

2015-03-05 Thread Monah Baki
complete pf.conf, please. 05.03.15 19:45, Monah Baki пишет: In my squid.conf http_port 3128 http_port 3129 intercept Thanks On Thu, Mar 5, 2015 at 8:44 AM, Yuri Voinov yvoi...@gmail.com wrote: Squid access denied? Look at this: In my /etc/pf.conf rdr pass inet proto tcp

Re: [squid-users] squid intercept config

2015-03-05 Thread Monah Baki
?! Current is 15.4 05.03.15 21:09, Monah Baki пишет: PORT STATE SERVICE VERSION 23/tcp open telnet Cisco IOS telnetd MAC Address: 88:5A:92:63:77:81 (Cisco) Device type: router Running: Cisco IOS 12.X OS CPE: cpe:/h:cisco:7600_router cpe:/o:cisco:ios:12.2 OS details: Cisco 7600 router

Re: [squid-users] squid intercept config

2015-03-05 Thread Monah Baki
So from my proxy server, everything looks good? On Thu, Mar 5, 2015 at 1:12 PM, Yuri Voinov yvoi...@gmail.com wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Looks good too. Damn. Will think. Need to run some external checks. 06.03.15 0:10, Monah Baki пишет: root@ISN-PHC

Re: [squid-users] squid intercept config

2015-03-05 Thread Monah Baki
squid builed? I.e, squid -v? 05.03.15 18:19, Monah Baki пишет: Hi all, can anyone verify if this is correct, need to make ure that users will be able to access the internet via the squid. Running FreeBSD with a single interface with Squid-3.5.2 Policy based routing on Cisco

Re: [squid-users] squid intercept config

2015-03-05 Thread Monah Baki
, Monah Baki пишет: Yes, correct On Thu, Mar 5, 2015 at 9:23 AM, Yuri Voinov yvoi...@gmail.com wrote: 10.0.0.23 is your host? And 10.0.0.24 is proxy box? 05.03.15 20:15, Monah Baki пишет: '--prefix=/cache/squid' '--enable-follow-x-forwarded-for' '--with-large-files' '--enable-ssl

[squid-users] Squid in transparent

2015-02-26 Thread Monah Baki
Hi all, I have client who has his Policy Based Routing as: interface GigabitEthernet0/0/1.1 (route policy on the LAN interface) ip policy route-map CFLOW ip access-list extended REDIRECT (Redirect of my IP www) deny tcp host 10.0.0.24 any eq www permit tcp host 10.0.0.23 any eq www

[squid-users] squid 3.5.2 and MRTG

2015-02-22 Thread Monah Baki
Hi all, I need to monitor squid 3.5.2 using MRTG and can't seem to find any examples on how to do that. I found the following but nothing happens.Clueless on how to do this. Thanks Target[proxy-hit]: cacheHttpHitscacheServerRequests:pub...@proxy.sg.private :3401 # If you are using Squid 2.6