Dear All
I am facing a strange problem while using Squid 2.5. I configured PCQ Linux
2007 for squid.
First, I have observed last month that squid failed to connect to
websites/internet. When I cheeked the squid.conf file, I found it becomes
totally BLANK. No data was there.I restored the
Might want to have a look at
http://www.mnot.net/cgi_buffer/
which, despite its name, has a PHP one-line drop-in that might do the
trick.
Mind you, I haven't looked at that code in years, and there very well
may be some bugs in there, or compatibility with newer versions of
PHP, but
Hello ssp,
Thursday, May 10, 2007, 9:22:05 AM, you wrote:
(1)Is it something to do with log rotation which is set on every 5
days?(defaults setting).This problem occuring after log rotation , so far i
observed.How these squid.conf.1 to squid.conf.4 get created?
Show you squid.conf and squid
Thank you!
Seems to working fine now.
On 5/9/07, Henrik Nordstrom [EMAIL PROTECTED] wrote:
ons 2007-05-09 klockan 14:25 +0200 skrev Patrik Hansson:
Hello.
I´v just gotten squid installed and working with NTLM and AD Groups.
What i whant is to block some files for normal users, like .exe,
Ok, thanks - that works and i see that a sibling becomes some request
for caches.
But if i stop the local apache on a server and ask over the server the
website - squid sad
2007/05/10 08:10:30| Detected DEAD Parent: 127.0.0.1
2007/05/10 08:10:30| TCP connection to 127.0.0.1/80 failed
Thats ok
add no-query to cache_peer line !
i think this 'solve' ...
On 5/10/07, Marcel Alburg [EMAIL PROTECTED] wrote:
Ok, thanks - that works and i see that a sibling becomes some request
for caches.
But if i stop the local apache on a server and ask over the server the
website - squid sad
Hello to all,
when upgrading from squid 2.5 STABLE12 to squid 2.6STABLE9, i've noticed some
troubles when trying to access some https web sites using java applets.
We are using NTLM authentication for internet access, and it seems to be the
reason of the problem (user is asked to log in on a
My cache peer lines look like this
On first server:
cache_peer 127.0.0.1parent 80 0 originserverno-query default
cache_peer server2sibling 80 3130 proxy-only no-delay allow-miss
name=server2
On second server:
cache_peer 127.0.0.1parent 80 0 originserverno-query
On Thu, May 10, 2007, Lionel D?ruaz wrote:
Hello to all,
when upgrading from squid 2.5 STABLE12 to squid 2.6STABLE9, i've noticed some
troubles when trying to access some https web sites using java applets.
We are using NTLM authentication for internet access, and it seems to be the
Hi there
I´m trying to set up squid whit authentication, but i would need it
asking the user the credencials.
Allrdy set up an squid_ldap_auth but a login prompt comes, every time.
trying now with squid_ldap_group, but still nothing, from the Unix
prompt i can authenticate a user whit some
My cache peer lines look like this
On first server:
cache_peer 127.0.0.1parent 80 0 originserverno-query default
cache_peer server2sibling 80 3130 proxy-only no-delay allow-miss
name=server2
On second server:
cache_peer 127.0.0.1parent 80 0 originserverno-query
On Thu, May 10, 2007, Alexandre Correa wrote:
Hello again :)
i?m planing to move my new squid box to act with cisco using wccp v2 !!
today my network topology:
(internet) - cisco -- switch -- (eth0) gateway+squid (eth1) --
clients
squid is running on gateway..
the new topology
Hello Duarte,
If you want authenticate users from LDAP only, this configuration is
enough:
auth_param basic program /usr/local/libexec/squid/squid_ldap_auth -b
ou=People,dc=test,dc=com ldap.test.com
auth_param basic children 5
auth_param basic realm Squid proxy-caching web server
[skipped]
acl
Hi,
i really wanna is to authenticated on ldap, but the browser not to show
a pop-up,
it's possible? samba ( maybe ntlm ?)
what does the [skipped], does ?
thanks
Sergey A. Kobzar wrote:
Hello Duarte,
If you want authenticate users from LDAP only, this configuration is
enough:
auth_param
Hello Duarte,
Thursday, May 10, 2007, 2:09:05 PM, you wrote:
Hi,
i really wanna is to authenticated on ldap, but the browser not to show
a pop-up,
it's possible? samba ( maybe ntlm ?)
I gave you working configuration. Just forgot about -v 3 option. :)
what does the [skipped], does ?
Ok, i think i´m not explaining so good.
I have allready squid authentication, what i need is that the browser
does not show the prompt just get the credencials whitout prompting the
user, for example me user is part of a domain só thé get the user from
the computer and the user would not have
Hello Duarte,
Many browsers have option to save username and passwd ;)
Thursday, May 10, 2007, 2:30:40 PM, you wrote:
Ok, i think i´m not explaining so good.
I have allready squid authentication, what i need is that the browser
does not show the prompt just get the credencials whitout
Hello Duarte,
Many browsers have option to save username and passwd ;)
Thursday, May 10, 2007, 2:30:40 PM, you wrote:
Ok, i think i´m not explaining so good.
I have allready squid authentication, what i need is that the browser
does not show the prompt just get the credencials whitout
Hi, Sergey
I know that, but for example in IE ou Firefox the prompt still open ,
although the password is saved, my question is if there is some way that
the prompt ( although the password is save ) is not shown.
Dny way thanks for the tips.
Sergey A. Kobzar wrote:
Hello Duarte,
Many
Hello!
We're having problems with the url of a financial magazine:
http://www.cash-online.de/
Without proxy the sites shows rapidly...with proxy squid 2.6.5-4 the
site does NOT load.
Is this an squid-issue, or where may be the problem ?
GreetinX Ove Starckjohann
ons 2007-05-09 klockan 15:27 -0400 skrev Chad Harrelson:
Wow. Thanks Henrik! This is the command that got it going:
echo 0 /proc/sys/net/ipv4/conf/gre1/rp_filter
I thought for sure that I had run across documentation that told me to
enable rp_filter. Oh, it's working now. Now on the
On 5/10/07, Starckjohann, Ove [EMAIL PROTECTED] wrote:
Hello!
We're having problems with the url of a financial magazine:
http://www.cash-online.de/
Without proxy the sites shows rapidly...with proxy squid 2.6.5-4 the
site does NOT load.
Is this an squid-issue, or where may be the problem ?
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
On 05/10/2007 08:44 AM, Duarte Lázaro wrote:
Hi, Sergey
I know that, but for example in IE ou Firefox the prompt
still open , although the password is saved, my question
is if there is some way that the prompt ( although the
password is save )
direct hit :-)
echo 0 /proc/sys/net/ipv4/tcp_window_scaling
solved the issue :-)
Thank you !!!
Greets
Ove Starckjohann
-Ursprüngliche Nachricht-
Von: Chris Nighswonger [mailto:[EMAIL PROTECTED]
Gesendet: Donnerstag, 10. Mai 2007 15:06
An: Starckjohann, Ove
Cc:
On 5/10/07, Starckjohann, Ove [EMAIL PROTECTED] wrote:
direct hit :-)
echo 0 /proc/sys/net/ipv4/tcp_window_scaling
You might want to add that to your system config (not sure where off
the top of my head) so that it will survive a reboot.
Chris
On Thu, May 10, 2007 at 11:46:42AM +1200, [EMAIL PROTECTED] wrote:
I don't have the web skills that you do, but I found the easiest way to
make php's cache-able was to lynx dump the php to a .html, and have
apache serve index.html in preference to index.phtml. Naturally, all
links to pages
Hi Henrik, thanks for your continued help. I changed the GRE tunnel
end point and the wccp2_router statement to match the router id of
150.125.127.142 but now squid and the router don't negotiate. As you
can see here below, there is a mismatch in the I_See_You packet IDs.
May 10 13:12:39.011
* Chris Nighswonger [EMAIL PROTECTED]:
echo 0 /proc/sys/net/ipv4/tcp_window_scaling
You might want to add that to your system config (not sure where off
the top of my head) so that it will survive a reboot.
/etc/sysctl.conf
--
Ralf Hildebrandt (i.A. des IT-Zentrums) [EMAIL
tor 2007-05-10 klockan 09:19 -0400 skrev Chad Harrelson:
Hi Henrik, thanks for your continued help. I changed the GRE tunnel
end point and the wccp2_router statement to match the router id of
150.125.127.142 but now squid and the router don't negotiate. As you
can see here below, there is a
tor 2007-05-10 klockan 01:07 +0100 skrev Shadi Almosri:
it seems to be using the main IP each time a request is made
regardless of the rules that i have set for where the incoming request
is from
Any errors in cache.log?
Have you disabled serverside persistent connections?
tor 2007-05-10 klockan 11:12 +0200 skrev Lionel Déruaz:
The same websites work fine on my old proxy (squid 2.5 stable9), and this
proxy uses also NTLM authentication.
Do you know what could have changed in squid that explain this different
behavior ?
Same Samba version? The bulk of the NTLM
tor 2007-05-10 klockan 12:09 +0100 skrev Duarte Lázaro:
i really wanna is to authenticated on ldap, but the browser not to show
a pop-up,
it's possible? samba ( maybe ntlm ?)
This depends entirely on browser support and which scheme you are using.
Few if browsers support fully saved proxy
On 5/10/07, [EMAIL PROTECTED] [EMAIL PROTECTED] wrote:
Hi,
Is it possible to generate squid log file with date extension
(like /var/log/squid/access.log-`date +%Y%m%d` format) in real time (i mean
it is not generated by logrotate) ?
Currently it's not possible.
You can rename old files after
I am trying to modify my ACL to prevent a specific IP address within a range
already defined in http_access and acl.
Where within this do I state *not* (!) 192.168.1.200?
Thank you.
acl NET_ONE src 192.168.0.0/16
or
http_access allow NET_ONE
On 5/10/07, Vadim Pushkin [EMAIL PROTECTED] wrote:
I am trying to modify my ACL to prevent a specific IP address within a range
already defined in http_access and acl.
Where within this do I state *not* (!) 192.168.1.200?
Thank you.
acl NET_ONE src 192.168.0.0/16
or
http_access allow
On 5/10/07, Vadim Pushkin [EMAIL PROTECTED] wrote:
I am trying to modify my ACL to prevent a specific IP address within a range
already defined in http_access and acl.
Where within this do I state *not* (!) 192.168.1.200?
acl NET_ONE src 192.168.0.0/16
or
http_access allow NET_ONE
I think
Thank you very much!
.vp
On 5/10/07, Vadim Pushkin [EMAIL PROTECTED] wrote:
I am trying to modify my ACL to prevent a specific IP address within a
range
already defined in http_access and acl.
Where within this do I state *not* (!) 192.168.1.200?
Thank you.
acl NET_ONE src
I just tried using 150.125.125.186 (closest IP) as the wccp2_router
address and the router ID as the GRE endpoint as you recommended but
the router would not negotiate with squid. The cache server
would not show up at all when doing a: sh ip wccp. So then I switched
them. Router ID as the
I just finished the set up CISCO + SQUID = WCCP and its working great I
didnt use tproxy, I am using ufdb for content filtering.
Im running centos 4 squid 2.6.STABLE12 (created the rpms) ip_gre module
If you need any help I could send you the files
Cisco 3845
Using wccpv2 whith access list
Hello everyone.
I need a way of dropping some active request of some users every now and
then. I googled and looked at the list archive, but got nothing in
return (or maybe I didn't understand something).
I use squid 2.5-14 on FreeBSD 6.
Is there any way of doing this?
Regards
Isnard
Hello Isnard,
# man (8) tcpdrop
DESCRIPTION
The tcpdrop command drops the TCP connection specified by the local
address laddr, port lport and the foreign address faddr, port fport.
Addresses and ports can be specified by name or numeric value.
I hope this will help ;)
tor 2007-05-10 klockan 11:12 +0200 skrev Lionel Déruaz:
The same websites work fine on my old proxy (squid 2.5 stable9), and this
proxy uses also NTLM authentication.
Do you know what could have changed in squid that explain this different
behavior ?
Same Samba version? The bulk of
Fernando Rodriguez wrote:
Hello,
Is there any way to compress on the fly the requested data for the client in
order to save bandwith, or is there any compression method that can be used
with squid??
Thanks
---
Fernando Rodriguez
tor 2007-05-10 klockan 13:10 -0400 skrev Chad Harrelson:
Can you think of anything else?
Check your firewall rules on the Squid server. The message suggests that
the I_SEE_YOU messages isn't reaching your Squid.
Like I said, this work with protocol
1. Also, the only other strange config I
tor 2007-05-10 klockan 10:11 +0200 skrev Marcel Alburg:
But if i stop the local apache on a server and ask over the server the
website - squid sad
2007/05/10 08:10:30| Detected DEAD Parent: 127.0.0.1
2007/05/10 08:10:30| TCP connection to 127.0.0.1/80 failed
Thats ok
but the result is
tor 2007-05-10 klockan 13:48 -0800 skrev Chris Robertson:
http://devel.squid-cache.org/gzip/
The best way to get features out of development is either coding them
yourself, or sponsorship. The To Do list on this one is pretty short...
Well.. the To Do hasn't really been updated.. but yes.
On Thu, May 10, 2007, Fernando Rodriguez wrote:
I just finished the set up CISCO + SQUID = WCCP and its working great I
didn?t use tproxy, I am using ufdb for content filtering.
Im running centos 4 squid 2.6.STABLE12 (created the rpms) ip_gre module
If you need any help I could send you
On Thu, May 10, 2007, Kinkie wrote:
On 5/10/07, [EMAIL PROTECTED] [EMAIL PROTECTED] wrote:
Hi,
Is it possible to generate squid log file with date extension
(like /var/log/squid/access.log-`date +%Y%m%d` format) in real time (i mean
it is not generated by logrotate) ?
Currently it's not
I am having problem with Firefox 1.5, FF2.XX and IE 6 and 7 and proxy
autoconfiguration. After a few days of searching and trying, i am
unable to use autoconfiguration for my proxy.
1. I have the following dhcpd.conf file:
max-lease-time 28800;
default-lease-time 14400;
option subnet-mask
Okay, this is strange.
I have a squid 2.6.STABLE12 instance running on 32-bit Linux in web
accelerator setup.
Squid conf:
# delay pools
delay_pools 1
delay_class 1 3
# allow a maximum of 200 mebibits (25 mebibytes per second) in
# aggregate...
delay_parameters 1 26214400/26214400 xxx/xxx
On Thu, May 10, 2007, Pitti, Raul wrote:
I am having problem with Firefox 1.5, FF2.XX and IE 6 and 7 and proxy
autoconfiguration. After a few days of searching and trying, i am
unable to use autoconfiguration for my proxy.
I've made WPAD work but I've not made it work with a DHCP
Hi,
I wanted to ask if this is possible. Ive just installed a second squid
server and was wondering if I could create somewhat a loadbalancing without
using TCP-loadbalancer or HA by using a proxy.pac that is capable of
detecting a busy/failed server and connect to the next available proxy
On Fri, May 11, 2007, SSCR Internet Admin wrote:
Hi,
I wanted to ask if this is possible. Ive just installed a second squid
server and was wondering if I could create somewhat a loadbalancing without
using TCP-loadbalancer or HA by using a proxy.pac that is capable of
detecting a
I've made WPAD work but I've not made it work with a DHCP
configuration. I've done mine with DNS.
Does anyone here have an example of a WPAD+DHCP
configuration? If so I'd like to talk to you and document
it on the Wiki.
Here's what we use to support WPAD+DHCP:
[From dhcpd.conf, in the
David Gameau wrote:
Here's what we use to support WPAD+DHCP:
[From dhcpd.conf, in the global section of the file]
option option-252 code 252 = text;
option option-252 http://wpad.example.com/wpad.dat\n;;
Note that IE6 truncates the answer it gets (by dropping the
last character), which is
On Thu, May 10, 2007, Pitti, Raul wrote:
I am having problem with Firefox 1.5, FF2.XX and IE 6 and 7 and proxy
autoconfiguration. After a few days of searching and trying, i am
unable to use autoconfiguration for my proxy.
I've made WPAD work but I've not made it work with a DHCP
On Fri, May 11, 2007, David Gameau wrote:
I've made WPAD work but I've not made it work with a DHCP
configuration. I've done mine with DNS.
Does anyone here have an example of a WPAD+DHCP
configuration? If so I'd like to talk to you and document
it on the Wiki.
Here's what we
Thanks Adrian it works! I could see that it shift to the other server when
I manually shutdown squid.
Now, this could be a harder (for a noob like me). What if I have 500
workstation, so I have to config each browser to use my new pac file, is
there a way that this pac will eventually force
-Original Message-
From: Adrian Chadd [mailto:[EMAIL PROTECTED]
On Fri, May 11, 2007, David Gameau wrote:
I've made WPAD work but I've not made it work with a DHCP
configuration. I've done mine with DNS.
Does anyone here have an example of a WPAD+DHCP
configuration?
On Fri, May 11, 2007, SSCR Internet Admin wrote:
Thanks Adrian it works! I could see that it shift to the other server when
I manually shutdown squid.
Now, this could be a harder (for a noob like me). What if I have 500
workstation, so I have to config each browser to use my new pac file,
I am looking at implementing squid for one of my clients and have a
question regarding bandwidth usage. In the scenario I will have multiple
locations with very few PC's approximately 2-3 machines per location.
If I setup a main squid server in one of my main locations with a
standard DSL
well, you can be sure i'll provide a fully working example as soon as I
get my config working. :-D (just to prevent others to waste as much
time as myself.)
RP
Adrian Chadd wrote:
On Fri, May 11, 2007, SSCR Internet Admin wrote:
Thanks Adrian it works! I could see that it shift to the
I've created a Wordpress blog (which will be linked off the front page
of the new site) which I and some of the other developers will include
developments, announcements and general tidbits about Squid development.
http://squidproxy.wordpress.com/ (squid was taken.)
Thanks,
Adrian
I am looking at implementing squid for one of my clients and have a
question regarding bandwidth usage. In the scenario I will have multiple
locations with very few PC's approximately 2-3 machines per location.
If I setup a main squid server in one of my main locations with a
standard DSL
On 5/10/07, Adrian Chadd [EMAIL PROTECTED] wrote:
There's plenty of examples of proxy.pac file based load balancing and failover.
It's important to keep in mind that some PAC behavior, including
failover, is different for different browsers and browser versions --
this particularly applies to
On Thu, May 10, 2007, K K wrote:
On 5/10/07, Adrian Chadd [EMAIL PROTECTED] wrote:
There's plenty of examples of proxy.pac file based load balancing and
failover.
It's important to keep in mind that some PAC behavior, including
failover, is different for different browsers and browser
66 matches
Mail list logo