[squid-users] A nice StoreID helper I have seen: squid_dedup

2019-01-17 Thread eliezer
I have seen that there is a very nice squid de-duplication helper at: https://github.com/frispete/squid_dedup I think it's worth adding into the squid-cache Related Software section. Eliezer Eliezer Croitoru Linux System Administrator Mobile:

Re: [squid-users] Digicert replacing couple root CA, why it wasn't mentioned here?

2019-01-17 Thread Alex Crow
It was all over the IT news sites I read (Register, Slashdot, etc). Changed all our Thawte certs from Symantec to Digicert a few months ago. Pretty painless actually. Alex On 17/01/2019 17:03, Eliezer Croitoru wrote: I noticed that there was a change in the RootCA world:

Re: [squid-users] Backing up squid cache and restoring it

2019-01-17 Thread Alex Rousskov
On 1/17/19 6:47 AM, Arne-Tobias Rak wrote: > my goal is to restore a previous cache state in squid 3.x running on > Ubuntu 16.04. > > So far I have tried to create a copy of the /var/spool/squid and > /var/log/squid folders. > When restoring the cache, I first shutdown squid using > /sudo squid

Re: [squid-users] Squid 4.5 crashes on FreeBSD

2019-01-17 Thread Alex Rousskov
On 1/17/19 3:41 AM, Marko Cupać wrote: > I am using Squid 4.5, and it crashes, giving the following in cache.log: > assertion failed: stmem.cc:98: "lowestOffset () <= target_offset" Probably bug #4823: https://bugs.squid-cache.org/show_bug.cgi?id=4823 Alex.

Re: [squid-users] squid 4.5, can't download certificate?

2019-01-17 Thread Alex Rousskov
On 1/16/19 10:30 PM, Dmitry Melekhov wrote: > 2019/01/17 09:18:21 kid1| ERROR: negotiating TLS on FD 55: error:14090086:SSL > routines:ssl3_get_server_certificate:certificate verify failed (1/-1/0) > In access log: > 1547702300.945  0 192.168.22.229 NONE/503 329 GET >

Re: [squid-users] Squid does not send request to parent proxy

2019-01-17 Thread Alex Rousskov
On 1/17/19 8:28 AM, Troiano Alessio wrote: > I'm not able to configure squid for using a parent proxy only for some > domain. All the rest should be fetched directly. I tried this configuration: > cache_peer 172.31.3.70 parent 8080 0 no-query default name=HUBATLDB > acl domainAT dstdomain

Re: [squid-users] External acl on delay_access directive

2019-01-17 Thread Alex Rousskov
On 1/17/19 9:13 AM, Luca Savarino wrote: > WARNING: ip_list ACL is used in context without an ALE > state. Assuming mismatch. > delay_access 1 allow ip_list Looks like a Squid bug to me -- Squid should supply ALE (a blob containing various transaction details) to the delay_access code but

[squid-users] External acl on delay_access directive

2019-01-17 Thread Luca Savarino
Hello,     Having recently upgraded from squid 3.4.8 to squid 4.4, I stumbled into an issue that I tried to simplify the most I could through the attached configuration files and the explanation below.     I would like to use an external acl to set bandwidth limitations for my different

[squid-users] Squid does not send request to parent proxy

2019-01-17 Thread Troiano Alessio
Hello all, I'm not able to configure squid for using a parent proxy only for some domain. All the rest should be fetched directly. I tried this configuration: cache_peer 172.31.3.70 parent 8080 0 no-query default name=HUBATLDB acl domainAT dstdomain voeazul.com.br cache_peer_access HUBATLDB allow

[squid-users] Backing up squid cache and restoring it

2019-01-17 Thread Arne-Tobias Rak
Hi, my goal is to restore a previous cache state in squid 3.x running on Ubuntu 16.04. So far I have tried to create a copy of the /var/spool/squid and /var/log/squid folders. When restoring the cache, I first shutdown squid using /sudo squid -k shutdown// //sudo service squid stop -k /and

[squid-users] Squid 4.5 crashes on FreeBSD

2019-01-17 Thread Marko Cupać
Hi, I am trying to move to Squid 4.x from 3.x on FreeBSD 12.0-RELEASE, but so far it is quite unstable for me. Right now I am using Squid 4.5, and it crashes, giving the following in cache.log: assertion failed: stmem.cc:98: "lowestOffset () <= target_offset" messages log shows squid restarts:

Re: [squid-users] proxy ntlm-auth problems

2019-01-17 Thread L . P . H . van Belle
i suggest you try:   auth_param negotiate program /usr/lib/squid/negotiate_wrapper_auth \     --kerberos /usr/lib/squid/negotiate_kerberos_auth -s s GSS_C_NO_NAME \     --ntlm /usr/bin/ntlm_auth --helper-protocol=gss-spnego --domain=MYDOMAIN Greetz,   Louis   Van: squid-users

[squid-users] proxy ntlm-auth problems

2019-01-17 Thread Silvester Langen
Hello squid users.   I have configured squid for ntlm authentication and it seems to work well. All needed browsers (ff, ie, chrome) work and programs like teamviewer or "heise register" do work too. But now I notice, that other programs like Sage HR, Dakota, Sfirm and Elster have

Re: [squid-users] Squid 4.5 and intermediate CA

2019-01-17 Thread FredB
Hi, I'm speaking about Intermediate CA (not root) with squid as client http://squid-web-proxy-cache.1019090.n4.nabble.com/Squid-4-and-missing-intermediate-certs-td4684653.html Not directly related, how you usually update your root CA for squid ? I'm just using ca-certificate directory from