RE: [squid-users] Installing squidGuard - Fedora Core 3

2005-06-30 Thread Jay Turner
At the time I started using SquidGuard (around three years ago), it was well known that 3.2.9 was the most reliable version of DB to use. This was discussed extensively on the SquidGuard maillist in particular by Rick Matthews. I have not since bothered trying later versions of DB to see if it

RE: [squid-users] Re: Installing SquidGuard with Fedora Core 3

2005-06-30 Thread Jay Turner
As I said, It works fine for me on FC3 using BDB 3.2.9 Regards Jay -Original Message- From: Enrique Charry [mailto:[EMAIL PROTECTED] Sent: Friday, 1 July 2005 7:28 AM To: Squid Users Subject: [squid-users] Re: Installing SquidGuard with Fedora Core 3 Dear List: About answers

RE: [squid-users] Installing squidGuard - Fedora Core 3

2005-06-29 Thread Jay Turner
Contrary to the documentation, SquidGuard 1.2.0 requires Berkeley DB 3.2.9 to function correctly. I would ensure firstly that that is the version you have installed. You can check this by executing squidGuard -v which should return: SquidGuard: 1.2.0 Sleepycat Software: Berkeley DB 3.2.9:

[squid-users] STABLE10 default squid.conf

2005-05-24 Thread Jay Turner
Just downloaded STABLE10 tar.gz and there doesn't seem to be a squid.conf.default where I would expect it in src/ Didn't notice anything on the changelog about it being moved... Has it been left out accidently? Thanks Jay

RE: [squid-users] STABLE10 default squid.conf

2005-05-24 Thread Jay Turner
From: Jay Turner [mailto:[EMAIL PROTECTED] Just downloaded STABLE10 tar.gz and there doesn't seem to be a squid.conf.default where I would expect it in src/ Didn't notice anything on the changelog about it being moved... Has it been left out accidently? Thanks Jay Nevermind

RE: [squid-users] never use redirector for master user

2005-05-17 Thread Jay Turner
From: Robert Becskei [mailto:[EMAIL PROTECTED] Hello, with the help of the people at this mailing list I managed to configure my proxy server so that there is a master user who can do anything, and there is normal internet user who can only browse and download a few types of files. my

RE: [squid-users] IE improperly prompts for credentials; ntlm_auth with Samba 3.0.13, Squid 2.5.STABLE7, RedHat Linux 9.0, SmartFilter 4.01

2005-04-04 Thread Jay Turner
RedHat Linux 9.0, MIT Kerberos 1.4 built from source, Samba 3.0.13 built from source, Squid 2.5.STABLE7 built from source SmartFilter 4.01. Active Directory with Windows 2003 Why not use RPMs? Well - ADS support for Windows 2003 needs Kerberos 1.3 or

RE: [squid-users] Squid build blows up

2005-04-04 Thread Jay Turner
From: Greg Scott [mailto:[EMAIL PROTECTED] Sent: Tuesday, 5 April 2005 6:34 AM The fun just doesn't stop here in Minnesota. I am trying to rebuild Squid like this: cd /usr/local/squid/src/squid-2.5.STABLE7 ./configure \ --enable-smartfilter \ --enable-async-io \

[squid-users] IIS Authentication Error

2004-10-14 Thread Jay Turner
thesite to stop the page being cached and allow access to it before Squid requires Authentication but that didn't resolve it. Does anyone have any ideas? IIRC isn't there an issue that IIS NTLM authentication cannot be proxied? Could that be the case here? Thanks in advance Regards Jay Turner

RE: [squid-users] Squidguard

2004-09-05 Thread Jay Turner
You can only have one IP declaration per source created.. As taken from SquidGuard.org: ---(SNIPPED)--- HTH Regards Jay Not so Jay. From: http://www.squidguard.org/config/ ~~ Breaking long lines Generally you may break a (long) line by repeating the

RE: [squid-users] Hacking ntlm_auth to allow squidGuard ACLs

2004-09-03 Thread Jay Turner
Hi All, First post here! In the following article the author describes how to get Samba 3 and Squid working. http://www.informatikserver.at/modules.php?name=Newsfile=printsid=2710 However towards the end the author has a topic called Hacking ntlm_auth to allow squidGuard ACLs He

RE: [squid-users] Squidguard

2004-09-03 Thread Jay Turner
Hello, I am getting the following error and can not find out why: parse error in configfile squidGuard.conf line 4 Here is the top of the file: logdir /home/squid/squidextra/squidgaurd/squidGuard/log dbhome /home/squid/squidextra/squidgaurd/squidGuard/db src managers {

RE: [squid-users] log analysers

2004-08-18 Thread Jay Turner
Try SARG.. http://sarg.sourceforge.net/sarg.php It should do exactly what you want. Jay -Original Message- From: Payal Rathod [mailto:[EMAIL PROTECTED] Sent: Thursday, 19 August 2004 12:36 PM To: Squid ML Subject: [squid-users] log analysers Hi, I rotate my squid logs daily.

RE: [squid-users] maxconn

2004-07-27 Thread Jay Turner
Will acl localnet src 172.16.0.0/19 acl ahost src 172.16.1.1 acl conn_15 maxconn 15 http_access deny ahost conn_15 http_access allow localnet or similar not work for you? -Original Message- From: Sergey Matveychuk [mailto:[EMAIL PROTECTED] Sent: Tuesday, 27 July 2004 3:28 PM

[squid-users] Replace Squid Binary

2004-06-30 Thread Jay Turner
Hi all, I recently deployed a Squid2.5-Stable5 server to a client using NTLM authentication via Samba 2.7 I neglected to see that there was a patch available for an assertion failed: helper.c:323: srv-flags.reserved error that this client is currently experiencing.

RE: [squid-users] Squid Performance Analysis

2004-02-12 Thread Jay Turner
Is there something that analyzes the various *_HIT statuses in the log and produces a what might have been report? Does anyone know of any tools that are not listed on the Squid Cache web site that would provide this type of report? Your requirements sound like you are looking for a cache

RE: [squid-users] [Q] Squid Log Analyzers for Win32?

2003-11-10 Thread Jay Turner
Also try SawMill.. www.sawmill.net It's fantastic! -Original Message- From: Serassio Guido [mailto:[EMAIL PROTECTED] Sent: Monday, 10 November 2003 4:52 PM To: [EMAIL PROTECTED]; [EMAIL PROTECTED] Subject: Re: [squid-users] [Q] Squid Log Analyzers for Win32? Hi, At 22.14

[squid-users] IE6 SP1 Bug NTLM

2003-10-27 Thread Jay Turner
Hi All, I'm aware of the bug in IE 6 SP1 when using Basic Authentication, I was just wondering if anyone knows if NTLM (winbind) can be affected by it. I have a client using Squid and NTLM via winbind who has some IE6 SP1 clients exhibiting this same behaviour (Page not returned initially but

RE: [squid-users] Authentication by NT Domain Server

2003-09-24 Thread Jay Turner
See the FAQ regarding Authentication and the Winbind helpers Regards Jay -Original Message- From: Altrock, Jens [mailto:[EMAIL PROTECTED] Sent: Wednesday, 24 September 2003 9:46 PM To: '[EMAIL PROTECTED]' Subject: [squid-users] Authentication by NT Domain Server Hi all! Am new

RE: [squid-users] no cache on website

2003-09-18 Thread Jay Turner
Will always_direct produce the same results? ie pages won't be served from the cache as the request will be sent directly to the origin server. Or is this only applicable in proxy chaining? -Original Message- From: Marc Elsen [mailto:[EMAIL PROTECTED] Sent: Thursday, 18 September 2003

RE: [squid-users] prevent users from downloading very large files from internet ONLY

2003-09-04 Thread Jay Turner
You have defined the ACL name as SubnetB but you reference it in your reply_body_max rule as subnetB From memory squid.conf is case-sensitive is it not? -Original Message- From: Karmila Sari [mailto:[EMAIL PROTECTED] Sent: Thursday, 4 September 2003 2:08 PM To: [EMAIL PROTECTED]

RE: [squid-users] wb_group

2003-08-03 Thread Jay Turner
You need to supply the account name and the group to the wb_group helper. OK will be returned if the user provided is in the group provided. ie DOMAIN\\username Domain Users See if that helps Regards Jay -Original Message- From: Simon Bryan [mailto:[EMAIL PROTECTED] Sent: Monday, 4

RE: [squid-users] wb_group

2003-08-03 Thread Jay Turner
Bryan [mailto:[EMAIL PROTECTED] Sent: Monday, 4 August 2003 11:20 AM To: [EMAIL PROTECTED] Cc: [EMAIL PROTECTED] Subject: RE: [squid-users] wb_group Jay Turner said: You need to supply the account name and the group to the wb_group helper. OK will be returned if the user provided

RE: [squid-users] NTLM Domain Membership Issue

2003-07-30 Thread Jay Turner
Guido Cc: [EMAIL PROTECTED] Subject: RE: [squid-users] NTLM Domain Membership Issue Hi Jay, Sorry for the delayed response, but now I'm very busy. At 07.16 27/07/2003, Jay Turner wrote: -Original Message- From: Serassio Guido [mailto:[EMAIL PROTECTED] Sent: Saturday

[squid-users] NTLM Domain Membership Issue

2003-07-26 Thread Jay Turner
Hi All, I am experiencing an unusual problem with NTLM and Domain Membership.. Environment: Red Hat 7.3 Squid2.5-STABLE2 Samba 2.2.7-3.7.3 (Red Hat) Windows 2000 AD server (Native Mode with Pre-2000 compatibility) WinXP SP1, IE6 SP1 + all current patches applied Background: I have deployed

RE: [squid-users] Winbind problem

2003-07-21 Thread Jay Turner
Try adding # Misc winbind enum users = yes winbind enum groups = yes To smb.conf Regards Jay -Original Message- From: Tony Melia (DMS) [mailto:[EMAIL PROTECTED] Sent: Tuesday, 22 July 2003 5:11 AM To: '[EMAIL PROTECTED]' Subject: [squid-users] Winbind problem Hi, I know

RE: [squid-users] Running squid -k reconfigure frequently

2003-07-20 Thread Jay Turner
I have been running Squid versions 2.4 STABLE6 - 2.5 STABLE2 and I have a system that also uses reconfigure frequently to update blocking lists automatically for squidGuard. I generally use a 5 minute interval scheduled in cron but I use a token file that is checked for before I issue a

RE: [squid-users] winbind and samba

2003-07-17 Thread Jay Turner
And isn't this compatibility known as mixed-mode?? -Original Message- From: Henrik Nordstrom [mailto:[EMAIL PROTECTED] Sent: Thursday, 17 July 2003 2:55 PM To: [EMAIL PROTECTED]; Tony Grace; 'squid' Subject: Re: [squid-users] winbind and samba On Thursday 17 July 2003 07.07, Jay Turner

RE: [squid-users] winbind and samba

2003-07-17 Thread Jay Turner
]; Henrik Nordstrom Cc: [EMAIL PROTECTED] Subject: RE: [squid-users] winbind and samba Hi, At 09.37 17/07/2003, Jay Turner wrote: And isn't this compatibility known as mixed-mode?? No, If your squid works fine in mixed-mode, it works on native mode too. What is needed for running Squid + NTLM

RE: [squid-users] winbind and samba

2003-07-17 Thread Jay Turner
PROTECTED] Cc: Serassio Guido; Henrik Nordstrom; [EMAIL PROTECTED] Subject: RE: [squid-users] winbind and samba On Thu, 2003-07-17 at 19:19, Jay Turner wrote: Hi Guido, I found your post from February regarding this issue and I now understand what you are saying. As I will be connecting to a pre

RE: [squid-users] winbind and samba

2003-07-16 Thread Jay Turner
Just out of interest. Has anyone had success using winbind/ntlm authentication against a Windows 2000 server running in native mode? I have had it working no worries against 2000 server's in mixed-mode, but have read conflicting reports about NTLM in native mode. I am hoping someone can provide

RE: [squid-users] redirector_access usage

2003-06-24 Thread Jay Turner
Message- From: Henrik Nordstrom [mailto:[EMAIL PROTECTED] Sent: Tuesday, 24 June 2003 4:49 PM To: [EMAIL PROTECTED]; [EMAIL PROTECTED] Subject: Re: [squid-users] redirector_access usage On Tuesday 24 June 2003 04.17, Jay Turner wrote: i.e. I add a 'Staff' member to 'block' and they lose access

[squid-users] redirector_access usage

2003-06-23 Thread Jay Turner
Hi All, I'm having some trouble getting the redirector_access directive to work correctly for me with SquidGuard. I'm using Squid2.5STABLE2 with Winbind/NTLM Group authentication (wb_ntlmauth, wb_group), but I have tried on STABLE3 also with no luck. I have three global groups on my NT domain -

[squid-users] RE: redirector_access usage

2003-06-23 Thread Jay Turner
? I'm actually fairly happy with these results as at least now I am aware of what will happen when a change is made. (it won't start filtering immediately, but eventually it will) Jay -Original Message- From: Jay Turner [mailto:[EMAIL PROTECTED] Sent: Tuesday, 24 June 2003 10:18 AM

RE: [squid-users] iptables to limit connections

2003-06-16 Thread Jay Turner
taken from: http://www.cs.princeton.edu/~jns/security/iptables/ ## SYN-FLOODING PROTECTION # This rule maximises the rate of incoming connections. In order to do this we divert tcp # packets with the SYN bit set off to a user-defined chain. Up to limit-burst connections # can arrive in 1/limit

RE: [squid-users] Re: Squid_ldap_group vs. Notes

2003-03-19 Thread Jay Turner
I wanted to know if I was able to get the context of their login to log what department they belonged to perhaps. -Original Message- From: Henrik Nordstrom [mailto:[EMAIL PROTECTED] Sent: Wednesday, 19 March 2003 4:13 PM To: Jay Turner Cc: [EMAIL PROTECTED] Subject: RE: [squid-users] Re

RE: [squid-users] Re: Squid_ldap_group vs. Notes

2003-03-18 Thread Jay Turner
In follow up to this, squid_ldap_auth shows only the username in the access.log. Would squid_ldap_group be able to show the user's context? ie sales.company.username or similar? If squid_ldap_group is unable to do this, is there any way I can obtain this functionality? Thanks Regards Jay

[squid-users] wb_group space issue

2003-02-27 Thread Jay Turner
Hi All, I have successfully got wb_group installed and running on my Squid2.5-STABLE1 install. I am having a problem with NT domains that have a space in them (Domain Users). I downloaded the squid-2.5.STABLE1-spaces.patch file and it appears to have applied correctly: patching file

RE: [squid-users] Squid2.4 /etc/hosts

2003-02-04 Thread Jay Turner
: Wednesday, 5 February 2003 9:14 AM To: [EMAIL PROTECTED] Cc: Henrik Nordstrom; [EMAIL PROTECTED] Subject: RE: [squid-users] Squid2.4 /etc/hosts On Wed, 2003-02-05 at 12:02, Jay Turner wrote: But it is maintained by Red Hat who backport any security patches to the 2.4 version they ship with 7.3