Re: [squid-users] Cannot authenticate via LDAP. No username/password prompt

2008-04-08 Thread Nico Alberti
2008/4/7, Henrik Nordstrom [EMAIL PROTECTED]: mån 2008-04-07 klockan 13:11 +0200 skrev Nico Alberti: When I launch squid_ldap_auth with its arguments from command line, it works flawlessly, but when I try to access the cache I have a Cache Access Denied without any username prompt.

Re: [squid-users] proxy cache with multi back end server !

2008-04-08 Thread Mathieu Kretchner
I resend my mail because I've only sent it to Henrik ! So thanks for your help Henrik Nordstrom a écrit : ons 2008-04-02 klockan 09:20 +0200 skrev Mathieu Kretchner: Hello all, I'm trying to follow the how to here : http://wiki.squid-cache.org/SquidFaq/ReverseProxy in the section : Sending

Re: [squid-users] IIS auth. problem.

2008-04-08 Thread Emre Yilmaz
Thanks for your answer, Problem doesnt on only OWA, OWA is only use IIS auth. This problem accours all of IIS auth. And its not possible to know all of IIS sites. :( Emre Yilmaz wrote: Hi guys, My system is running on squid + DG transparent proxy.firewall is iptables running on same

[squid-users] Value of the ONNECT header is wrong with ipv6 and ssl.

2008-04-08 Thread S.KOBAYASHI
Dear developer, I'm handling ipv6 functions on ICAP, so I found a curious point. ICAP capable is ON and use ipv6 URI with SSL from the browser such as https://[ 2001:5c0:9a37:0:21d:9ff:fe68:333a]/. CONNECT header in the ICAP request-line which was sent from squid to ICAP server is 0.0.7.209:443

[squid-users] using squid for mirroring freesound.iua.upf.edu

2008-04-08 Thread Bram de Jong
Hello all, over at freesound ( http://freesound.iua.upf.edu ) we're slowly but surely going over 3TB/month and we thought we would use squid for mirroring the content. Freesound hosts a lot of rather large (2MB-600MB) audio files. The whole Freesound colection of files is about 260G large. We

Re: [squid-users] proxy cache with multi back end server !

2008-04-08 Thread Henrik Nordstrom
tis 2008-04-08 klockan 09:54 +0200 skrev Mathieu Kretchner: When I try to acces the second URL, Here is the error I get : The following error occurred: Document not found (error number 404) Disable friendly error messages or use another browser than MSIE and you will keep more hairs on your

Re: [squid-users] Cannot authenticate via LDAP. No username/password prompt

2008-04-08 Thread Henrik Nordstrom
tis 2008-04-08 klockan 09:46 +0200 skrev Nico Alberti: works flawlessly, but when I try to access the cache I have a Cache Access Denied without any username prompt. Version 3.0.STABLE2, installed from the Debian testing branch Upgrade. Known issue in that release. Regards Henrik

[squid-users] acl question

2008-04-08 Thread Paul Houselander (SME)
Hi Ive been using IP's in acl's to restrict access to squid, a redirector (squidguard) and a parent proxy (virus scanning proxy) This has been working fine and part of my squid.conf is below # Everything ACL - goes via parent and squidguard acl everything src /etc/squid/acl/everything

Re: [squid-users] proxy cache with multi back end server !

2008-04-08 Thread Mathieu Kretchner
I was thinking I've sent it before, anyway ! Here is my squid.conf based on the conf file from centos : http_port 80 defaultsite=myserver hierarchy_stoplist cgi-bin ? acl QUERY urlpath_regex cgi-bin \? cache deny QUERY acl apache rep_header Server ^Apache broken_vary_encoding allow apache

Re: [squid-users] acl question

2008-04-08 Thread Amos Jeffries
Paul Houselander (SME) wrote: Hi Ive been using IP's in acl's to restrict access to squid, a redirector (squidguard) and a parent proxy (virus scanning proxy) This has been working fine and part of my squid.conf is below # Everything ACL - goes via parent and squidguard acl everything src

Re: [squid-users] proxy cache with multi back end server !

2008-04-08 Thread Henrik Nordstrom
tis 2008-04-08 klockan 14:26 +0200 skrev Mathieu Kretchner: cache_peer ip_server1 parent 80 0 no-query originserver name=server1 cache_peer ip_server2 parent 80 0 no-query originserver name=server2 acl foo urlpath_regex ^/foo cache_peer_access server1 allow foo cache_peer_access server2 deny

Re: [squid-users] using squid for mirroring freesound.iua.upf.edu

2008-04-08 Thread Amos Jeffries
Bram de Jong wrote: Hello all, over at freesound ( http://freesound.iua.upf.edu ) we're slowly but surely going over 3TB/month and we thought we would use squid for mirroring the content. Freesound hosts a lot of rather large (2MB-600MB) audio files. The whole Freesound colection of files is

Re: [squid-users] proxy cache with multi back end server !

2008-04-08 Thread Mathieu Kretchner
I browse it with firefox, the web server is apache and the 3 OS (client and 2 servers) are linux. So it should work well, but it don't and when I swap the 2 ip_server I can see server2 but not server1 in foo directory ? Very strange. Henrik Nordstrom a écrit : tis 2008-04-08 klockan 14:26

[squid-users] squid 2.6 Problem with IP based session

2008-04-08 Thread Jarosch, Ralph
Hi together, I've an little problem with some websites. We have 6 Squid proxy. The first is the logging-server which has 5 parents for caching. The logging-server balances the http/https request via round robbin to the cache-server. At some websites when a client will login to an member content,

Re: [squid-users] squid 2.6 Problem with IP based session

2008-04-08 Thread J. Peng
No way, if you use squid as the logging-server. to adjust it, replace the logging-server from squid to LVS. If the network traffic is large, use LVS's DR or tunneling mode. On Tue, Apr 8, 2008 at 10:11 PM, Jarosch, Ralph [EMAIL PROTECTED] wrote: Hi together, I've an little problem with some

Re: [squid-users] About Cache Digest

2008-04-08 Thread Alex Rousskov
On Mon, 2008-04-07 at 10:43 +0200, Henrik Nordstrom wrote: mån 2008-04-07 klockan 11:44 +0800 skrev Zhou, Bo(Bram): 1. How often local host fetch the digest from peers? Each digest_rebuild_period as set by the peer. Any timer controls or just checks if the cache digests are expired?

Re: [squid-users] Value of the ONNECT header is wrong with ipv6 and ssl.

2008-04-08 Thread Alex Rousskov
On Tue, 2008-04-08 at 17:41 +0900, S.KOBAYASHI wrote: I'm handling ipv6 functions on ICAP, so I found a curious point. ICAP capable is ON and use ipv6 URI with SSL from the browser such as https://[ 2001:5c0:9a37:0:21d:9ff:fe68:333a]/. CONNECT header in the ICAP request-line which was sent

Re: [squid-users] proxy cache with multi back end server !

2008-04-08 Thread Henrik Nordstrom
tis 2008-04-08 klockan 15:07 +0200 skrev Mathieu Kretchner: I browse it with firefox, the web server is apache and the 3 OS (client and 2 servers) are linux. So it should work well, but it don't and when I swap the 2 ip_server I can see server2 but not server1 in foo directory ? What does

Re: [squid-users] compiling Squid with LDAP

2008-04-08 Thread Henrik Nordstrom
tis 2008-04-08 klockan 09:42 +0400 skrev [EMAIL PROTECTED]: Please help me with subj on OpenBSD. It falls with error include -I/usr/ports/www/squid/w-squid-2.6.STABLE18p0/squid-2.6.STABLE18/include -O2 -pipe -D_REENTRANT -MT squid_ldap_group.o -MD -MP -MF

Re: [squid-users] IIS auth. problem.

2008-04-08 Thread Henrik Nordstrom
tis 2008-04-08 klockan 01:00 -0700 skrev Emre Yilmaz: Problem doesnt on only OWA, OWA is only use IIS auth. This problem accours all of IIS auth. And its not possible to know all of IIS sites. :( Not sure what to say about that other than that Squid can not magically fix other software..

Re: [squid-users] acl question

2008-04-08 Thread Henrik Nordstrom
tis 2008-04-08 klockan 10:10 +0100 skrev Paul Houselander (SME): Which seemed to work but I noticed an IP I had in /etc/squid/acl/everything which was going via the parent and redirector started going direct? If I comment out all my proxy_auth lines and restart squid all works again. Can you

Re: [squid-users] squid 2.6 Problem with IP based session

2008-04-08 Thread Henrik Nordstrom
tis 2008-04-08 klockan 16:11 +0200 skrev Jarosch, Ralph: We have 6 Squid proxy. The first is the logging-server which has 5 parents for caching. The logging-server balances the http/https request via round robbin to the cache-server. At some websites when a client will login to an member

Re: [squid-users] what to block from the proxy to speed up?

2008-04-08 Thread Ben Hollingsworth
Rakotomandimby Mihamina wrote: Hi, I want to speedup the websurfing of my LAN. I have a squid running on the gateway, not transparent (people choose to use the proxy or not. I would like to know if there is a list of url patterns to block in order to have a more fluent surfing. For example, I

Re: [squid-users] proxy cache with multi back end server !

2008-04-08 Thread Mathieu Kretchner
Here is my log file during an http get on the two url : And no foo doesn't exist on server1 you've right ! [EMAIL PROTECTED] conf.d]# tail -f /var/log/squid/access.log /var/log/squid/cache.log == /var/log/squid/access.log == 1207671734.172 18 my_client TCP_MISS/200 21291 GET

Re: [squid-users] proxy cache with multi back end server !

2008-04-08 Thread Henrik Nordstrom
Please do that again, this time with a clean cache or using squidclient -r -p 80 http://...; TCP_NEGATIVE_HIT just says Squid already knows it failed from an earlier request... tis 2008-04-08 klockan 18:31 +0200 skrev Mathieu Kretchner: Here is my log file during an http get on the two url :

[squid-users] acl from file

2008-04-08 Thread Luis Daniel Lucio Quiroz
I have a huge txt file with domains that I want to ban, like this: .dom.com .dom2.net .etc I not sure I i can do this at my acl configuration acl banneddommains dstdomain /path/file.txt or how? TIA LD

RE: [squid-users] acl from file

2008-04-08 Thread Adam Carter
I have a huge txt file with domains that I want to ban, like this: .dom.com .dom2.net .etc I not sure I i can do this at my acl configuration acl banneddommains dstdomain /path/file.txt RTFM :-) From squid.conf; # TAG: acl # Defining an Access List # # acl aclname

Re: [squid-users] acl from file

2008-04-08 Thread Indunil Jayasooriya
On Wed, Apr 9, 2008 at 12:46 AM, Luis Daniel Lucio Quiroz [EMAIL PROTECTED] wrote: I have a huge txt file with domains that I want to ban, like this: .dom.com .dom2.net .etc I not sure I i can do this at my acl configuration acl banneddommains dstdomain /path/file.txt acl

[squid-users] delay pool question: how about a timeout variable?

2008-04-08 Thread Jason Haar
Hi there We are starting to use delay_pool to limit multimedia downloads (stop them swallowing our links). We've set just two pools (tracked per IP), a default (no limits) and a multimedia pool set at 300M and then throttle down to 1Kbyte/sec :-) Seems to work well - but there's no

[squid-users] pending squid-2.6 / squid-2.7 releases!

2008-04-08 Thread Adrian Chadd
G'day, There's a final release of Squid-2.6 coming up soon. Its a bugfix release so if you're running Squid-2.6 you may wish to give today's 2.6 snapshot a try. http://www.squid-cache.org/Versions/v2/2.6/changesets/ has the change details. Squid-2.7 should be released shortly after the next

[squid-users] squid-2 delay pool changes - statistics, new ACL

2008-04-08 Thread Adrian Chadd
G'day, I've recently committed some changes to the delay pool code in squid-2.HEAD. * Statistics for traffic transferred per-bucket and per-aggregate in each pool can be fetched via cachemgr mgr:delay2. Its in a machine-friendly format (a la cachemgr mgr:5min) and its useful primarily to