[squid-users] Squid 3.1.8 and zero sized reply

2011-03-07 Thread Francesco
Hello, i am experiencing some problems of zero sized reply even though i have upgraded to 3.1.8 version. For example, this is an example site: http://itinerari.mondodelgusto.it/eventi Trying this site without proxy it works. I have tried this workaround i found on the list: acl broken dstdomain

[squid-users] Re: Squid DG Sandwich... Squid3 (auth) - DansGuardian-Squid3(proxy)

2011-03-07 Thread bwright
Any other ideas? I know there have to be a good amount of people running the sandwich setup... Pretty Please -- View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/Squid-DG-Sandwich-Squid3-auth-DansGuardian-Squid3-proxy-tp3311884p3339327.html Sent from the

[squid-users] Re: Squid DG Sandwich... Squid3 (auth) -DansGuardian-Squid3(proxy)

2011-03-07 Thread Chad Naugle
Is it possible for you to setup a dummy box for ONLY the Squid Auth, and the other two services on a separate box, to see if there is any performance gains? Chances are, it's the Kerb-Auth in general that is tying things up - DG, so try and eliminate system performance with all 3 running as being

Re: [squid-users] Re: Squid DG Sandwich... Squid3 (auth) - DansGuardian-Squid3(proxy)

2011-03-07 Thread Marcus Kool
I heard that development of Dansguardian stopped, so I suggest to investigate other solutions. You could reduce squid+DG+Squid to Squid+ufdbGuard. ufdbGuard is a free URL filter and works with various URL database providers. Marcus bwright wrote: Any other ideas? I know there have to be

[squid-users] Bypassing a bandwidth shaper

2011-03-07 Thread Mike Husmann
Hello all, Thanks for everyone who works to make this such a great product. I've built a transparent proxy from source (2.7..) and it works really well. What I'm wondering now is if I can fool my downstream bandwidth shaper into not throttling the cache hits that come from squid. Is it

[squid-users] Squid 3.1.11 assertion error bodyPipe != NULL

2011-03-07 Thread Guy Helmer
A customer is using HTTPS to access a website running on IIS 5, and Squid is fairly consistently hitting this assertion error while they attempt to access the site. Squid seems to be failing on a different request than the request for the problematic site, though - the request in this

Re: [squid-users] Bypassing a bandwidth shaper

2011-03-07 Thread Amos Jeffries
On Mon, 7 Mar 2011 11:26:09 -0600, Mike Husmann wrote: Hello all, Thanks for everyone who works to make this such a great product. I've built a transparent proxy from source (2.7..) and it works really well. What I'm wondering now is if I can fool my downstream bandwidth shaper into not

[squid-users] help with squid redirectors

2011-03-07 Thread Osmany
Greetings everyone, So I'm having trouble with my squid proxy-cache server. I recently added a redirect program because I had to make users go to my kaspersky admin kit and my WSUS services to get their updates and it works fine but I get constantly a warning and squid just collapses after a few

Re: [squid-users] Bypassing a bandwidth shaper

2011-03-07 Thread Mike Husmann
On Mon, Mar 7, 2011 at 4:03 PM, Amos Jeffries squ...@treenet.co.nz wrote: On Mon, 7 Mar 2011 11:26:09 -0600, Mike Husmann wrote: Hello all,  Thanks for everyone who works to make this such a great product. I've built a transparent proxy from source (2.7..) and it works really well.  What

Re: [squid-users] help with squid redirectors

2011-03-07 Thread Amos Jeffries
On Mon, 07 Mar 2011 16:59:07 -0500, Osmany wrote: Greetings everyone, So I'm having trouble with my squid proxy-cache server. I recently added a redirect program because I had to make users go to my kaspersky admin kit and my WSUS services to get their updates and it works fine but I get

Re: [squid-users] Squid 3.1.11 assertion error bodyPipe != NULL

2011-03-07 Thread Amos Jeffries
On Mon, 7 Mar 2011 14:12:46 -0600, Guy Helmer wrote: A customer is using HTTPS to access a website running on IIS 5, and Squid is fairly consistently hitting this assertion error while they attempt to access the site. Squid seems to be failing on a different request than the request for the

[squid-users] connection-auth

2011-03-07 Thread Vernon A. Fort
My setup is a non-transparent proxy running gentoo. Simply put, if you want to browse, set the proxy option in your browser. With that said, we have had difficulty in connecting to a share point site/server for one of our external groups. We had already set the connection-auth=on to fix a

[squid-users] connection-auth

2011-03-07 Thread Vernon A. Fort
My setup is a non-transparent proxy running gentoo. Simply put, if you want to browse, set the proxy option in your browser. With that said, we have had difficulty in connecting to a share point site/server for one of our external groups. We had already set the connection-auth=on to fix a

Re: [squid-users] help with squid redirectors

2011-03-07 Thread Amos Jeffries
On Tue, 08 Mar 2011 11:58:57 +1300, Amos Jeffries wrote: On Mon, 07 Mar 2011 16:59:07 -0500, Osmany wrote: Greetings everyone, So I'm having trouble with my squid proxy-cache server. I recently added a redirect program because I had to make users go to my kaspersky admin kit and my WSUS

Re: [squid-users] Squid 3.1.8 and zero sized reply

2011-03-07 Thread Amos Jeffries
On Mon, 7 Mar 2011 13:43:52 +0100 (CET), Francesco wrote: Hello, i am experiencing some problems of zero sized reply even though i have upgraded to 3.1.8 version. For example, this is an example site: http://itinerari.mondodelgusto.it/eventi Trying this site without proxy it works. I have

Re: [squid-users] connection-auth

2011-03-07 Thread Amos Jeffries
On Mon, 07 Mar 2011 17:14:40 -0600, Vernon A. Fort wrote: My setup is a non-transparent proxy running gentoo. Simply put, if you want to browse, set the proxy option in your browser. With that said, we have had difficulty in connecting to a share point site/server for one of our external

[squid-users] Dual Level Authentication

2011-03-07 Thread Go Wow
Hi All, I have implemented the AD authentication with squid3. I would like to add another level of authentication which should be local to unix box something like ncsa. When AD authentication fails then it should switch to other authentication and even if it fails then deny the packet. In

[squid-users] pf rdr to localhost-ip or just port...

2011-03-07 Thread jiluspo
with 127.0.0.1 might require tuning with net.local.stream.* and would consume more memory if set high. so far i've noticed with 127.0.0.1 browsing seems like faster than the other, but im not sure what I've missed. rdr on em1 inet proto tcp from any to ! (em1) port = http - 127.0.0.1 port

Re: [squid-users] Dual Level Authentication

2011-03-07 Thread Amos Jeffries
On 08/03/11 18:42, Go Wow wrote: Hi All, I have implemented the AD authentication with squid3. I would like to add another level of authentication which should be local to unix box something like ncsa. When AD authentication fails then it should switch to other authentication and even if it

Re: [squid-users] pf rdr to localhost-ip or just port...

2011-03-07 Thread Amos Jeffries
On 08/03/11 19:30, jiluspo wrote: with 127.0.0.1 might require tuning with net.local.stream.* and would consume more memory if set high. so far i've noticed with 127.0.0.1 browsing seems like faster than the other, but im not sure what I've missed. Not surptrising. The localhost interface is