At the time I started using SquidGuard (around three years ago), it was well
known that 3.2.9 was the most reliable version of DB to use. This was
discussed extensively on the SquidGuard maillist in particular by Rick
Matthews. I have not since bothered trying later versions of DB to see if it
As I said, It works fine for me on FC3 using BDB 3.2.9
Regards
Jay
-Original Message-
From: Enrique Charry [mailto:[EMAIL PROTECTED]
Sent: Friday, 1 July 2005 7:28 AM
To: Squid Users
Subject: [squid-users] Re: Installing SquidGuard with Fedora Core 3
Dear List:
About answers
Contrary to the documentation, SquidGuard 1.2.0 requires Berkeley DB 3.2.9
to function correctly.
I would ensure firstly that that is the version you have installed.
You can check this by executing squidGuard -v
which should return:
SquidGuard: 1.2.0 Sleepycat Software: Berkeley DB 3.2.9:
Just downloaded STABLE10 tar.gz and there doesn't seem to be a
squid.conf.default where I would expect it in src/
Didn't notice anything on the changelog about it being moved... Has it been
left out accidently?
Thanks
Jay
From: Jay Turner [mailto:[EMAIL PROTECTED]
Just downloaded STABLE10 tar.gz and there doesn't seem to be a
squid.conf.default where I would expect it in src/
Didn't notice anything on the changelog about it being moved...
Has it been
left out accidently?
Thanks
Jay
Nevermind
From: Robert Becskei [mailto:[EMAIL PROTECTED]
Hello,
with the help of the people at this mailing list I managed to
configure my
proxy server so that there is a master
user who can do anything, and there is normal internet user who can only
browse and download a few types of files.
my
RedHat Linux 9.0,
MIT Kerberos 1.4 built from source,
Samba 3.0.13 built from source,
Squid 2.5.STABLE7 built from source
SmartFilter 4.01.
Active Directory with Windows 2003
Why not use RPMs? Well - ADS support for Windows 2003 needs Kerberos
1.3 or
From: Greg Scott [mailto:[EMAIL PROTECTED]
Sent: Tuesday, 5 April 2005 6:34 AM
The fun just doesn't stop here in Minnesota. I am trying to rebuild
Squid like this:
cd /usr/local/squid/src/squid-2.5.STABLE7
./configure \
--enable-smartfilter \
--enable-async-io \
thesite
to stop the page being cached and allow access to it before Squid requires
Authentication but that didn't resolve it.
Does anyone have any ideas? IIRC isn't there an issue that IIS NTLM
authentication cannot be proxied? Could that be the case here?
Thanks in advance
Regards
Jay Turner
You can only have one IP declaration per source created..
As taken from SquidGuard.org:
---(SNIPPED)---
HTH
Regards
Jay
Not so Jay.
From: http://www.squidguard.org/config/
~~
Breaking long lines
Generally you may break a (long) line by repeating the
Hi All,
First post here!
In the following article the author describes how to get Samba 3 and
Squid working.
http://www.informatikserver.at/modules.php?name=Newsfile=printsid=2710
However towards the end the author has a topic called Hacking ntlm_auth
to allow squidGuard ACLs He
Hello,
I am getting the following error and can not find out why:
parse error in configfile squidGuard.conf line 4
Here is the top of the file:
logdir /home/squid/squidextra/squidgaurd/squidGuard/log
dbhome /home/squid/squidextra/squidgaurd/squidGuard/db
src managers {
Try SARG..
http://sarg.sourceforge.net/sarg.php
It should do exactly what you want.
Jay
-Original Message-
From: Payal Rathod [mailto:[EMAIL PROTECTED]
Sent: Thursday, 19 August 2004 12:36 PM
To: Squid ML
Subject: [squid-users] log analysers
Hi,
I rotate my squid logs daily.
Will
acl localnet src 172.16.0.0/19
acl ahost src 172.16.1.1
acl conn_15 maxconn 15
http_access deny ahost conn_15
http_access allow localnet
or similar not work for you?
-Original Message-
From: Sergey Matveychuk [mailto:[EMAIL PROTECTED]
Sent: Tuesday, 27 July 2004 3:28 PM
Hi all,
I recently deployed a Squid2.5-Stable5 server to a client using NTLM
authentication via Samba 2.7
I neglected to see that there was a patch available for an
assertion failed: helper.c:323: srv-flags.reserved error that this client
is currently experiencing.
Is there something that analyzes the various *_HIT statuses in the log
and produces a what might have been report? Does anyone know of any
tools that are not listed on the Squid Cache web site that would provide
this type of report?
Your requirements sound like you are looking for a cache
Also try SawMill..
www.sawmill.net
It's fantastic!
-Original Message-
From: Serassio Guido [mailto:[EMAIL PROTECTED]
Sent: Monday, 10 November 2003 4:52 PM
To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
Subject: Re: [squid-users] [Q] Squid Log Analyzers for Win32?
Hi,
At 22.14
Hi All,
I'm aware of the bug in IE 6 SP1 when using Basic Authentication, I was just
wondering if anyone knows if NTLM (winbind) can be affected by it.
I have a client using Squid and NTLM via winbind who has some IE6 SP1
clients exhibiting this same behaviour (Page not returned initially but
See the FAQ regarding Authentication and the Winbind helpers
Regards
Jay
-Original Message-
From: Altrock, Jens [mailto:[EMAIL PROTECTED]
Sent: Wednesday, 24 September 2003 9:46 PM
To: '[EMAIL PROTECTED]'
Subject: [squid-users] Authentication by NT Domain Server
Hi all!
Am new
Will always_direct produce the same results?
ie pages won't be served from the cache as the request will be sent directly
to the origin server.
Or is this only applicable in proxy chaining?
-Original Message-
From: Marc Elsen [mailto:[EMAIL PROTECTED]
Sent: Thursday, 18 September 2003
You have defined the ACL name as SubnetB
but you reference it in your reply_body_max rule as subnetB
From memory squid.conf is case-sensitive is it not?
-Original Message-
From: Karmila Sari [mailto:[EMAIL PROTECTED]
Sent: Thursday, 4 September 2003 2:08 PM
To: [EMAIL PROTECTED]
You need to supply the account name and the group to the wb_group helper.
OK will be returned if the user provided is in the group provided.
ie DOMAIN\\username Domain Users
See if that helps
Regards
Jay
-Original Message-
From: Simon Bryan [mailto:[EMAIL PROTECTED]
Sent: Monday, 4
Bryan [mailto:[EMAIL PROTECTED]
Sent: Monday, 4 August 2003 11:20 AM
To: [EMAIL PROTECTED]
Cc: [EMAIL PROTECTED]
Subject: RE: [squid-users] wb_group
Jay Turner said:
You need to supply the account name and the group to the
wb_group helper.
OK will be returned if the user provided
Guido
Cc: [EMAIL PROTECTED]
Subject: RE: [squid-users] NTLM Domain Membership Issue
Hi Jay,
Sorry for the delayed response, but now I'm very busy.
At 07.16 27/07/2003, Jay Turner wrote:
-Original Message-
From: Serassio Guido [mailto:[EMAIL PROTECTED]
Sent: Saturday
Hi All,
I am experiencing an unusual problem with NTLM and Domain Membership..
Environment:
Red Hat 7.3
Squid2.5-STABLE2
Samba 2.2.7-3.7.3 (Red Hat)
Windows 2000 AD server (Native Mode with Pre-2000 compatibility)
WinXP SP1, IE6 SP1 + all current patches applied
Background:
I have deployed
Try adding
# Misc
winbind enum users = yes
winbind enum groups = yes
To smb.conf
Regards
Jay
-Original Message-
From: Tony Melia (DMS) [mailto:[EMAIL PROTECTED]
Sent: Tuesday, 22 July 2003 5:11 AM
To: '[EMAIL PROTECTED]'
Subject: [squid-users] Winbind problem
Hi, I know
I have been running Squid versions 2.4 STABLE6 - 2.5 STABLE2 and I have a
system that also uses reconfigure frequently to update blocking lists
automatically for squidGuard.
I generally use a 5 minute interval scheduled in cron but I use a token file
that is checked for before I issue a
And isn't this compatibility known as mixed-mode??
-Original Message-
From: Henrik Nordstrom [mailto:[EMAIL PROTECTED]
Sent: Thursday, 17 July 2003 2:55 PM
To: [EMAIL PROTECTED]; Tony Grace; 'squid'
Subject: Re: [squid-users] winbind and samba
On Thursday 17 July 2003 07.07, Jay Turner
]; Henrik Nordstrom
Cc: [EMAIL PROTECTED]
Subject: RE: [squid-users] winbind and samba
Hi,
At 09.37 17/07/2003, Jay Turner wrote:
And isn't this compatibility known as mixed-mode??
No, If your squid works fine in mixed-mode, it works on native mode too.
What is needed for running Squid + NTLM
PROTECTED]
Cc: Serassio Guido; Henrik Nordstrom; [EMAIL PROTECTED]
Subject: RE: [squid-users] winbind and samba
On Thu, 2003-07-17 at 19:19, Jay Turner wrote:
Hi Guido,
I found your post from February regarding this issue and I now understand
what you are saying.
As I will be connecting to a pre
Just out of interest.
Has anyone had success using winbind/ntlm authentication against a Windows
2000 server running in native mode?
I have had it working no worries against 2000 server's in mixed-mode, but
have read conflicting reports about NTLM in native mode.
I am hoping someone can provide
Message-
From: Henrik Nordstrom [mailto:[EMAIL PROTECTED]
Sent: Tuesday, 24 June 2003 4:49 PM
To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
Subject: Re: [squid-users] redirector_access usage
On Tuesday 24 June 2003 04.17, Jay Turner wrote:
i.e. I add a 'Staff' member to 'block' and they lose access
Hi All,
I'm having some trouble getting the redirector_access directive to work
correctly for me with SquidGuard.
I'm using Squid2.5STABLE2 with Winbind/NTLM Group authentication
(wb_ntlmauth, wb_group), but I have tried on STABLE3 also with no luck.
I have three global groups on my NT domain -
?
I'm actually fairly happy with these results as at least now I am aware of
what will happen when a change is made. (it won't start filtering
immediately, but eventually it will)
Jay
-Original Message-
From: Jay Turner [mailto:[EMAIL PROTECTED]
Sent: Tuesday, 24 June 2003 10:18 AM
taken from: http://www.cs.princeton.edu/~jns/security/iptables/
## SYN-FLOODING PROTECTION
# This rule maximises the rate of incoming connections. In order to do this
we divert tcp
# packets with the SYN bit set off to a user-defined chain. Up to
limit-burst connections
# can arrive in 1/limit
I wanted to know if I was able to get the context of their login to log what
department they belonged to perhaps.
-Original Message-
From: Henrik Nordstrom [mailto:[EMAIL PROTECTED]
Sent: Wednesday, 19 March 2003 4:13 PM
To: Jay Turner
Cc: [EMAIL PROTECTED]
Subject: RE: [squid-users] Re
In follow up to this, squid_ldap_auth shows only the username in the
access.log.
Would squid_ldap_group be able to show the user's context? ie
sales.company.username or similar?
If squid_ldap_group is unable to do this, is there any way I can obtain this
functionality?
Thanks
Regards
Jay
Hi All,
I have successfully got wb_group installed and running on my Squid2.5-STABLE1 install.
I am having a problem with NT domains that have a space in them (Domain Users).
I downloaded the squid-2.5.STABLE1-spaces.patch file and it appears to have applied
correctly:
patching file
: Wednesday, 5 February 2003 9:14 AM
To: [EMAIL PROTECTED]
Cc: Henrik Nordstrom; [EMAIL PROTECTED]
Subject: RE: [squid-users] Squid2.4 /etc/hosts
On Wed, 2003-02-05 at 12:02, Jay Turner wrote:
But it is maintained by Red Hat who backport any security patches to the
2.4
version they ship with 7.3
39 matches
Mail list logo