could not find out the fixed codes..
Regards,
--
Mikio Kishi
On Sat, Dec 19, 2020 at 5:39 PM Amos Jeffries wrote:
> On 19/12/20 8:07 pm, mikio.ki...@gmail.com wrote:
> > Hi,
> >
> > I have the following same problem using access_log.
> >
>
> What version of Squi
rite each log line to disk immediately at the completion of each
request.
> Place: the filename and path to be written.
Regards,
--
Mikio Kishi
___
squid-users mailing list
squid-users@lists.squid-cache.org
http://lists.squid-cache.org/listinfo/squid-users
tly I am using CentOS7 which openssl package
version is still 1.0.
Upgrading openssl to v1.1.1 is challenging for me. Could you please
implement the rusted first option to squid-4 ? ...
Regards,
--
Mikio Kishi
On Mon, Jun 29, 2020 at 7:05 PM Amos Jeffries wrote:
> On 29/06/20 7:29 pm,
hink that the following topic is also the same issue.
[squid-users] (92) Protocol error (TLS code: X509_V_ERR_CERT_HAS_EXPIRED)
Regards,
--
Mikio Kishi
On Sat, Jun 27, 2020 at 9:29 PM Amos Jeffries wrote:
> On 27/06/20 7:07 pm, mikio.kishi wrote:
> > Hi all,
> >
> > I am curr
seems to be NOT trusted_first mode. Are there any solutions to
change to trusted_first
verification mode for squid ?
Regards,
--
Mikio Kishi
___
squid-users mailing list
squid-users@lists.squid-cache.org
http://lists.squid-cache.org/listinfo/squid-users
feature ? I would like to use a forwarded-for header(with
sslbump) between
trusted proxies.
Regards,
--
Mikio Kishi
___
squid-users mailing list
squid-users@lists.squid-cache.org
http://lists.squid-cache.org/listinfo/squid-users
Hi, Amos
Do you have any plans to release the official stable version for squid5 ?
I'm strongly interested in squid5 features. So, if you have any schedules,
please let me know.
Regards,
--
Mikio Kishi
On Fri, Jun 19, 2020 at 9:41 PM Amos Jeffries wrote:
> The Squid HTTP Proxy team is v
Alex,
>The feature has already been rejected from the official v4 inclusion
>because the underlying changes are too big/risky for that branch.
I see. I understood that the v4 won't be able to support it.
Anyway, when will you release v5 officially ?
Regards,
--
Mikio Kishi
On Mon, Jul 15
gh parent proxy are not allowed");
837 ErrorState *anErr = new ErrorState(ERR_CANNOT_FORWARD,
Http::scServiceUnavailable, request);
838 fail(anErr);
839 self = NULL; // refcounted
840 return;
841 }
Do you have any plan to sup
.
Sincerely,
--
Mikio Kishi
On Wed, Nov 9, 2011 at 6:14 PM, Amos Jeffries squ...@treenet.co.nz wrote:
On 9/11/2011 6:07 p.m., Mikio Kishi wrote:
Hi,
Squid 3.1 seems to response HTTP/1.0 to the client even if the
server responses HTTP/1.1 to squid. Why ?
For your information, Squid 3.2 responses
Hi,
Squid 3.1 seems to response HTTP/1.0 to the client even if the
server responses HTTP/1.1 to squid. Why ?
For your information, Squid 3.2 responses HTTP/1.1.
Sincerely,
--
Mikio Kishi
,
--
Mikio Kishi
Hi, Amos
Squid can be used in many ways.
In my opinion, if squid users can control tproxy off/on by not only port base
(e.g. http_port tproxy) but also acl base, it purely becomes
more convenient.
Sincerely,
--
Mikio Kishi
On Thu, Jul 21, 2011 at 7:46 PM, Amos Jeffries squ
Hi,
How about this problem ?
--mkishi
On Sun, Oct 17, 2010 at 3:19 PM, Mikio Kishi mki...@104.net wrote:
Hi, Amos
Proxy-Connection is a non-standard header. Squid and other software used it
incorrectly with an overlap in same meaning Connection. We have removed it
from outgoing details
.
Proxy-Authenticate: NTLM
Proxy-Authenticate: Basic realm=XXX
It looks ok. But, InternetExplorer8 has never been trying Basic
authentication...
How can I let IE try Basic auth after NTLM auth failed ?
Squid version: 3.1.9
Sincerely,
--
Mikio Kishi
On Thu, Nov 18, 2010 at 6
such an authentication switching ?
Sincerely,
--
Mikio Kishi
3.1.7 cannot load flash video in news.yahoo.com
Sincerely,
--
Mikio Kishi
On Mon, Nov 1, 2010 at 4:47 AM, Amos Jeffries squ...@treenet.co.nz wrote:
On 30/10/10 00:45, Mikio Kishi wrote:
Hi, Henrik
Was the post handling specification modified on squid-3.1.9 ?
On 3.1.9, multi post requests
Hi, Henrik
Was the post handling specification modified on squid-3.1.9 ?
On 3.1.9, multi post requests in a http connection became OK.
--mkishi
2010/9/9 Henrik Nordström hen...@henriknordstrom.net:
ons 2010-09-08 klockan 14:46 +0900 skrev Mikio Kishi:
It's still a feature, right
on Windows7. Please check it.
--mkishi
On Sun, Oct 17, 2010 at 7:39 AM, Amos Jeffries squ...@treenet.co.nz wrote:
On 17/10/10 09:54, Mikio Kishi wrote:
Hi, Amos
Very probably yes. The root cause of your problem is still not clear, it
may be a duplicate or side effect of one of the other keep-alive
must become Proxy-Connection:
keep-alive
What do you think ?
--mkishi
On Thu, Oct 14, 2010 at 9:11 AM, Amos Jeffries squ...@treenet.co.nz wrote:
On Wed, 13 Oct 2010 21:26:56 +0900, Mikio Kishi mki...@104.net wrote:
Hi, Henrik
Has the following already been fixed on squid-3.1.8 ?
I'd like
Hi, Henrik
Has the following already been fixed on squid-3.1.8 ?
I'd like to know the current status about it.
Sincerely,
--mkishi
2010/6/7 Mikio Kishi mki...@104.net:
Hi, Henrik
Thank you for your reply.
I'll wait it. Please fix it !
Sincerely,
--
Mikio Kishi
2010/5/15 Henrik
Hi, all
I'm looking for squid config(squid.conf) parser script like perl or
python library.
Please tell me if it already exists.
Sincerely,
--
Mikio Kishi
Hi, Amos
To what purpose?
I'd like to implement my squid config viewer. It becomes easier to implement it
if there is already such a parser library. Just a simple question.
--mkishi
On Fri, Sep 10, 2010 at 1:10 PM, Amos Jeffries squ...@treenet.co.nz wrote:
On 10/09/10 05:32, Mikio Kishi
PM, Amos Jeffries squ...@treenet.co.nz wrote:
On 08/09/10 17:46, Mikio Kishi wrote:
Hi, Henrik
fre 2007-04-13 klockan 22:25 +0200 skrev Sebastian Weber:
Hendrik, thank you - that solved the problem. Now, I have a new one
however:
The client - proxy connection is kept alive correctly
, there are some web applications which requires
multi post requests in a http connection...
Sincerely,
--
Mikio Kishi
Hi,
By the way, Are there any workarounds or ad-hoc patches to avoid this problem ?
I'd like to avoid it as soon as possible
--mkishi
On Wed, Aug 25, 2010 at 1:07 PM, Mikio Kishi mki...@104.net wrote:
Hi, Amos
It's been committed to 3.HEAD and currently winding it's way down
Hi,
That poster did not register a bug report. We have not yet fixed the
problem.
I did. # Bug 3025
Sincerely,
--
Mikio Kishi
On Tue, Aug 24, 2010 at 11:18 AM, Amos Jeffries squ...@treenet.co.nz wrote:
On Mon, 23 Aug 2010 12:39:01 -0700, Ming Fu ming...@watchguard.com
wrote:
Hi,
I
Hi,
I have still been facing the #bug 2583. (using squid3.1.4)
http://bugs.squid-cache.org/show_bug.cgi?id=2583
It have already fixed, right ?
I really really hope that the patch is applied to squid3.1
Sincerely,
--
Mikio Kishi
Hi, Amos
It's been committed to 3.HEAD and currently winding it's way down the
releases. Possibly in 3.1.8 if it applies cleanly.
OK, I'll be waiting for 3.1.8 !!!
--mkishi
On Wed, Aug 25, 2010 at 11:11 AM, Amos Jeffries squ...@treenet.co.nz wrote:
On Wed, 25 Aug 2010 02:03:45 +0900, Mikio
Authentication Required
Proxy-Authenticate: Basic realm=X
* I don't use squid's authentication feature.
I'd like squid to permit the header. Do you understand ?
Sincerely,
--
Mikio Kishi
On Sun, Aug 15, 2010 at 10:40 AM, Amos Jeffries squ...@treenet.co.nz wrote:
Mikio Kishi
Hi, Henrik
On NTLM authentication environment, we could not do POST request
which size is over SQUID_TCP_SO_RCVBUF.
Should work. If not then file a bug report.
Have the problem already been fixed ? If still not, I'd like to do a bug report.
Sincerely,
--
Mikio Kishi
2010/6/7 Henrik
?
Squid version: 3.1.6
Sincerely,
--
Mikio Kishi
Hi, Henrik
Bug 2697 mentioned in this thread is considered fixed already in 3.1.4.
It's OK!. Thank you!
Sincerely,
--
Mikio Kishi
2010/6/7 Henrik Nordström hen...@henriknordstrom.net:
mån 2010-06-07 klockan 02:34 +0900 skrev Mikio Kishi:
When will the fix be released ? Please tell me
Hi, all
On NTLM authentication environment, we could not do POST request
which size is over SQUID_TCP_SO_RCVBUF.
What do you think ?
Squid version: 3.1.0.15
Sincerely,
--
Mikio Kishi
Hi, Henrik
Thank you for your reply.
I'll wait it. Please fix it !
Sincerely,
--
Mikio Kishi
2010/5/15 Henrik Nordström hen...@henriknordstrom.net:
fre 2010-05-14 klockan 23:01 +0900 skrev Mikio Kishi:
The first condition orig_request-flags.must_keepalive should have
triggered when
Hi, Amos
When will the fix be released ? Please tell me.
Sincerely,
--
Mikio Kishi
On Sun, May 2, 2010 at 3:14 PM, Mikio Kishi mki...@104.net wrote:
Hi, Amos
For example, if we do squid -k reconfigure in above adaptation
configuration,
- The length of *Adaptation::AllRules().items[0
Hi, Henrik
The first condition orig_request-flags.must_keepalive should have
triggered when seeing NTLM/Negotiate/Kerberos passthru.
I think so, too !
Could you fix it ?
Sincerely,
--
Mikio Kishi
2010/5/13 Henrik Nordström hen...@henriknordstrom.net:
ons 2010-05-12 klockan 18:54 +0900
-stats.n_keepalives_sent 0.50)
2011 flags.keepalive = 1;
I think that we have to insert the following code
else if (_peer-connection_auth == 1)
flags.keepalive = 1;
What do you think ?
Squid version: 3.1.1
Sincerely,
--
Mikio Kishi
could be OK. but I don't know about the latter one.
I'd like to try the next release !
Sincerely,
--
Mikio Kishi
On Sun, May 2, 2010 at 12:01 PM, Amos Jeffries squ...@treenet.co.nz wrote:
Mikio Kishi wrote:
Hi,
I think that Adaptation::AllRules() config data is broken after
squid -k
not be cleared...
- There is mismatches between
print Adaptation::AllRules().items[0].acl.cfgline and
print Adaptation::AllRules().items[0].acl.aclList._acl.cfgline
I don't know why. The Adaptation::AllRules() list could be broken...
What do you think ?
Sincerely,
--
Mikio Kishi
not applicable on
intercepted requests.);
return -1;
}
... snip ...
}
Sincerely,
--
Mikio Kishi
On Sat, Apr 25, 2009 at 10:44 PM, Mikio Kishi mki...@104.net wrote:
Hi, Amos
Added to Squid-3.
I'd really really appreciate !
Sincerely,
--
Mikio Kishi
On Fri, Apr 24, 2009 at 1
Hi, all
We sometimes face memory resource problem by squid memory leak. So,
we would like to restart the squid child process mandatorily when
the process size becomes (for example) over 1G byte.
Does squid have such a check function ? or do you have any idea ?
Sincerely,
--
Mikio Kishi
is turned on (default)
- The /etc/resolv.conf on squid server is following
nameserver 127.0.0.1
- The localhost nameserver on squid server is just only cache
server which is like BIND.
Is is correct ?
Sincerely,
--
Mikio Kishi
On Tue, Feb 2, 2010 at 7:33 PM, Amos Jeffries squ
Hi, Amos
Ah sure. Thanks for the reminder.
Applied to HEAD, should be added to 3.1 in a few days.
I'll be waiting !
And now, for something completely different, when would you release
3.1 STABLE ?
Do you have any plan ?
Sincerely,
--
Mikio Kishi
On Tue, Nov 3, 2009 at 6:34 PM, Amos
Hi, Amos
squid-3.0.STABLE18 is OK. but squid-3.1.0.14 ...
Could you fix that ?
Sincerely,
--
Mikio Kishi
On Sun, Oct 18, 2009 at 3:52 AM, Mikio Kishi mki...@104.net wrote:
Hi, all
I'd like to use acl aclname myip on squid-3.1.0.14 like the following.
acl testmyip myip 1.1.1.1/32
? Something wrong ?
Please give me some advice...
Sincerely,
--
Mikio Kishi
On Sun, Oct 18, 2009 at 3:52 AM, Mikio Kishi mki...@104.net wrote:
Hi, all
I'd like to use acl aclname myip on squid-3.1.0.14 like the following.
acl testmyip myip 1.1.1.1/32
But, the following error occurred
::RegistryProtoype(ACLMyIP::RegistryEntry_, myip);
What do you think ?
Sincerely,
--
Mikio Kishi
Hi, Jeff
Thank you for your reply.
many people have said, aufs for linux and diskd for bsd will get
better performance.
also I have tried COSS under linux, very good too.
OK ! I'll try it !
Sincerely,
--
Mikio Kishi
On Fri, Sep 18, 2009 at 12:23 PM, Jeff Pang pa...@arcor.de wrote:
2009
Hi, Amos and Henrik
The only problem will be objects without any Content-Length, of which there
are still many.
In this case, I hope that acl MAX100Mbyte becomes false.
What do you think ?
Sincerely,
--
Mikio Kishi
On Tue, Sep 15, 2009 at 8:55 AM, Amos Jeffries squ...@treenet.co.nz wrote
Hi, all
Now, which type of cache store do you recommend ?
(ufs, aufs and diskd ...)
squid version: 3.1.0.13
Sincerely,
--
Mikio Kishi
Hi, all
I'd like to use the acl object using Content-Length like the following.
For example
acl MAX100Mbyte rep_max_content_length 100M
Is it possible ?
Sincerely,
--
Mikio Kishi
rep_max_content_length 100M
icap_service av respmod_precache 1 icap://127.0.0.1:1344/av/respmod
icap_class respmod av
icap_access respmod deny MAX100Mbyte
icap_access respmod allow all
I can't apply reply_body_max_size to above
Sincerely,
--
Mikio Kishi
On Mon, Sep 14, 2009 at 10:26 PM
Hi, all
The default connect-fail-limit value on squid-3.1.0.7 was 10.
But, squid-3.1.0.13's one becomes just 1... Why ?
cache_cf.cc on squid-3.1.0.13
1891 if (p-connect_fail_limit 1)
1892 p-connect_fail_limit = 1;
Sincerely,
--
Mikio Kishi
Hi, Amos
Thank you for STABLE18! I'll try it!
By the way, squid-3.1.0.12 also has same problem, right ?
Sincerely,
--
Mikio Kishi
On Tue, Aug 4, 2009 at 8:15 AM, Amos Jeffriessqu...@treenet.co.nz wrote:
On Tue, 4 Aug 2009 04:05:55 +0900, Mikio Kishi mki...@104.net wrote:
Hi,
I hope next
Hi,
I hope next release! When would you release STABLE18 ?
Sincerely,
--
Mikio Kishi
On Sat, Aug 1, 2009 at 6:55 PM, Amos Jeffriessqu...@treenet.co.nz wrote:
Amos Jeffries wrote:
Thomas Meier wrote:
im also have this error:
2009/07/30 09:48:16| HttpMsg.cc(157) first line of HTTP message
Hi, all
In CONNECT case via cache_peer_access, the %03Hs(LFT_HTTP_CODE) in
access.log always shows 000.
I guess the following line is needed in tunnel.cc#tunnelProxyConnected()
*tunnelState-status_ptr = HTTP_OK;
What do you think?
- Environment
squid-3.1.0.7
Sincerely,
--
Mikio Kishi
Hi, all
The acl for cache_peer_access is not onBlockingCheck but fastCheck.
Why ? Are there any problem if the acl is onBlockingCheck.
- Environment
squid-3.1.0.7
Sincerely,
--
Mikio Kishi
Hi, Amos
Added to Squid-3.
I'd really really appreciate !
Sincerely,
--
Mikio Kishi
On Fri, Apr 24, 2009 at 1:20 PM, Amos Jeffries squ...@treenet.co.nz wrote:
Mikio Kishi wrote:
Hi, Amos
Ah, you need the follow_x_forwarded_for feature on Proxy(1).
That's right, I know about
,
COMM_NONBLOCKING,
getOutgoingTOS(request),
url);
}
I think it has no harmful effects. I long for that.
Would you modify that ?
Sincerely,
--
Mikio Kishi
On Sun, Apr 12, 2009 at 1:25 PM, Amos Jeffries squ...@treenet.co.nz
most important !!!
I think that I have to use tproxy(not transparent)
to achieve above demands... what do you think ?
Sincerely,
--
Mikio Kishi
On Thu, Apr 9, 2009 at 4:54 PM, Amos Jeffries squ...@treenet.co.nz wrote:
Mikio Kishi wrote:
Hi, Amos
HTTPS encrypted traffic cannot be intercepted
,
temp,
COMM_NONBLOCKING, // need COMM_TRANSPARENT
getOutgoingTOS(request),
url);
... snip ...
What do you think ?
--
Sincerely,
Mikio Kishi
:8080
^
(2) 192.168.0.2 -- 10.0.0.2:443
^^^
Just only thing I'd like to do is source address spoofing
using tproxy.
Does that make sense ?
Sincerely,
--
Mikio Kishi
On Thu, Apr 9, 2009 at 10:52 AM, Amos
Hi, Amos
Internal.
External dnssrver helper is obsolete, a blocking process, and very limited
in its performance capabilities.
That's exactly what I'd like to know !
I'll try the internel one.
--
Sincerely,
Mikio Kishi
On Sun, Mar 22, 2009 at 9:04 AM, Amos Jeffries squ...@treenet.co.nz
Hi, all
On squid 3.0(STABLE13), which do you recommend, dns_internal mode or
dnsserver mode ?
--
Sincerely,
Mikio Kishi
Hi, Junyong and Amos
On Fri, Feb 6, 2009 at 9:45 PM, Amos Jeffries squ...@treenet.co.nz wrote:
Not at all. I wish you can succeed. And please share your expirence
for me.
I could build it ! thank you.
(Squid 3.1, Linux Kernel 2.6.28, iptables 1.4.3rc1)
Now, I'm researching more detail.
hmm,
combination of version do you recommend ?
Sincerely,
--
Mikio Kishi
...
--
Sincerely,
Mikio Kishi
// note that '' allows for 0-termination of the full backup
buffer
1288 return virginBody.size() TheBackupLimit;
1289 }
--
Sincerely,
Mikio Kishi
.
Allow: 204 is sent if it's known the whole message can be buffered
within the buffer limits (SQUID_TCP_SO_RCVBUF). It's not relaed to
previews.
thank you!
--
Sincerely,
Mikio Kishi
Allow: 204 header to icap server, right ?
If not, please tell me detail.
- Environment
squid-3.0.STABLE10
--
Sincerely,
Mikio Kishi
break;
I think that
outint = al-cache.requestSize;
must be
outoff = al-cache.requestSize;
.
--
Sincerely,
Mikio Kishi
Hi, Henrik
Thank you for your reply.
I hope for the next release !
--
Sincerely,
Mikio Kishi
On Sat, Oct 18, 2008 at 11:52 PM, Henrik Nordstrom
[EMAIL PROTECTED] wrote:
Indeed. Congratulations to your first contribution to the Squid source
code! Will show up at
http://www.squid-cache.org
72 matches
Mail list logo