Re: [squid-users] squid loops on passive ftp requests

2011-10-11 Thread Erich Titl
Hi Amos on 10.10.2011 23:33, Amos Jeffries wrote: On Mon, 10 Oct 2011 15:30:16 +0200, Erich Titl wrote: Hi Folks I am using 3.02.11 as our forward and reverse proxy. It appears our this set up has problems with passive ftp. I am gettting clean Passive Mode Responses which appear not to be

[squid-users] Essential ICAP service eown error not working reliably

2011-10-11 Thread Justin Lawler
Hi, We have an application that integrates with squid over ICAP - a java based application. We're finding that the java application has very long garbage collection pauses at times (20+ seconds), where the application becomes completely unresponsive. We have squid configured to use this

[squid-users] Only TCP_MISS

2011-10-11 Thread Artemis Braja
Hello, I have installed squid 3.1.4 with yum and I have a common configuration: acl manager proto cache_object acl localhost src 127.0.0.1/32 acl localhost src ::1/128 acl to_localhost dst 127.0.0.0/8 0.0.0.0/32 acl to_localhost dst ::1/128 acl localnet src 10.0.0.0/8 # RFC1918 possible internal

[squid-users] Transparent / Standard mode comparative

2011-10-11 Thread David Touzeau
Dear all I would like to know what are the limitations using squid in transparent mode between using squid in standard mode I know there are Transparent mode limitations : No user authentication method. No all HTTPS features. Is someone know what are others limitations ? Best regards.

Re: [squid-users] Only TCP_MISS

2011-10-11 Thread Amos Jeffries
On 11/10/11 21:40, Artemis Braja wrote: Hello, I have installed squid 3.1.4 with yum and I have a common configuration: snip cache_mem 768 MB http_port 3128 hierarchy_stoplist cgi-bin ? cache_dir aufs /cache1 28660 128 128 maximum_object_size 320010 KB snip The problem is tha the access

Re: [squid-users] Transparent / Standard mode comparative

2011-10-11 Thread Fred B
- David Touzeau da...@touzeau.eu a écrit : Dear all I would like to know what are the limitations using squid in transparent mode between using squid in standard mode I know there are Transparent mode limitations : No user authentication method. No all HTTPS features. Is

[squid-users] Squid 3.1.16

2011-10-11 Thread Fred B
Hi, Does anyone know the release date for squid 3.1.16 (approximately of course) ? Thanks Fred

Re: [squid-users] Squid 3.1.16

2011-10-11 Thread Amos Jeffries
On 11/10/11 23:03, Fred B wrote: Hi, Does anyone know the release date for squid 3.1.16 (approximately of course) ? My stable cycle release policy has it due at the end of this month at the latest. But it is likely to be a bit earlier with the way bug fixes are happening right now. Amos

[squid-users] Please help setup my new squid servers

2011-10-11 Thread mc8647tv
Good morning, I just received my new 3 servers for the squid infrastructure. Each server has: 2 CPU X5690 (each has 6 cores/12 threads, 3.46 Ghz) 12 GB ram (I have kits to upgrade to 24 if needed) 8 hd 146GB 15k rpm (I also have 300/600/900 GB 10k available) Actual setup are a couple of 2.7 that

Re: [squid-users] Transparent / Standard mode comparative

2011-10-11 Thread David Touzeau
Le mardi 11 octobre 2011 à 11:50 +0200, Fred B a écrit : - David Touzeau da...@touzeau.eu a écrit : Dear all I would like to know what are the limitations using squid in transparent mode between using squid in standard mode I know there are Transparent mode limitations

[squid-users] Add top information to all webpages (like godaddy AD)

2011-10-11 Thread Jorge Bastos
Howdy, I'd like to do something that I don't know if that's possible somehow. I have squid configured as transparent, and I'd like to add on everypage that the user visits, information on the top of the pages, like an AD. Is this possible? For example Godaddy has this on the free hosting

Re: [squid-users] Add top information to all webpages (like godaddy AD)

2011-10-11 Thread Hasanen AL-Bana
I believe yes ! but it will cause lots of troubles with pages like facebook gmail you can redirect all requests to a url_rewriter script. squid will pass the requested url to the script , then the script must generate a page with 2 iFrames , first iFrame will hold the Ad, the second iFrame goes

Re: [squid-users] Add top information to all webpages (like godaddy AD)

2011-10-11 Thread Ed W
So you could be smarter and instead inject some javascript which checks if you are in a frameset and if not creates one. This of course has some subtleties with ajax... Ed W On 11/10/2011 12:28, Hasanen AL-Bana wrote: I believe yes ! but it will cause lots of troubles with pages like

Re: [squid-users] Facebook page very slow to respond

2011-10-11 Thread Ed W
On 08/10/2011 20:25, Wilson Hernandez wrote: Thanks for replying. Well, our cache.log looks ok. No real problems there but, will be monitoring it closely to check if there is something unusual. As for the DNS, we have local DNS server inside our LAN that is used by 95% of the machines. This

Re: [squid-users] Add top information to all webpages (like godaddy AD)

2011-10-11 Thread Hasanen AL-Bana
you don't want to create iframe for request , some requests will be for queries made by ajax and you don't want to touch that...it is better to add it only to the home page. On Tue, Oct 11, 2011 at 2:43 PM, Ed W li...@wildgooses.com wrote: So you could be smarter and instead inject some

[squid-users] Recurrent crashes and warnings: Your cache is running out of filedescriptors

2011-10-11 Thread Leonardo
Hi all, I'm running a transparent Squid proxy on a Linux Debian 5.0.5, configured as a bridge. The proxy serves a few thousands of users daily. It uses Squirm for URL rewriting, and (since 6 weeks) sarg for generating reports. I compiled it from source. This is the output of squid -v: Squid

[squid-users] Block specific HTTPS site

2011-10-11 Thread Eduardo Porte
Hi! I'm trying withou success to block the site: https://www.hidemyass.com. My question is, how can I block some specifics HTTPS sites and allow others? In this example, I need to block only https://www.hidemyass.com. Which ACL in squid.conf should I use ? Tks.

Re: [squid-users] Block specific HTTPS site

2011-10-11 Thread Alex Crow
On 11/10/11 14:29, Eduardo Porte wrote: Hi! I'm trying withou success to block the site: https://www.hidemyass.com. My question is, how can I block some specifics HTTPS sites and allow others? In this example, I need to block only https://www.hidemyass.com. Which ACL in squid.conf should I

Re: [squid-users] Recurrent crashes and warnings: Your cache is running out of filedescriptors

2011-10-11 Thread Wilson Hernandez
I was having this problem in the past and created the following script to start squid: #!/bin/sh -e # echo Starting squid... ulimit -HSn 65536 sleep 1 /usr/local/squid/sbin/squid echo Done.. That fixed the problem and hasn't happen ever since. Hope that helps. On 10/11/2011 9:07 AM,

Re: [squid-users] Facebook page very slow to respond

2011-10-11 Thread Wilson Hernandez
On 10/11/2011 7:47 AM, Ed W wrote: On 08/10/2011 20:25, Wilson Hernandez wrote: Thanks for replying. Well, our cache.log looks ok. No real problems there but, will be monitoring it closely to check if there is something unusual. As for the DNS, we have local DNS server inside our LAN that is

Re: [squid-users] Recurrent crashes and warnings: Your cache is running out of filedescriptors

2011-10-11 Thread Fred B
- Leonardo leonardodiserpierodavi...@gmail.com a écrit : Hi all, I'm running a transparent Squid proxy on a Linux Debian 5.0.5, configured as a bridge. The proxy serves a few thousands of users daily. It uses Squirm for URL rewriting, and (since 6 weeks) sarg for generating

[squid-users] squid + wccp2

2011-10-11 Thread benjamin fernandis
Hi All, We have requirement to configure squid to deploy with cisco wccp2. I have some confusion regarding configuration, kindly clear my queries and guide me to configure it. My current network senario: Wan side cisco 7200 router ( wan ip 84.24.xx.xx ) ( lan ip 149.255.xx.xx) ( lan ip is bgp

[squid-users] Re: Recurrent crashes and warnings: Your cache is running out of filedescriptors

2011-10-11 Thread Leonardo
@Fred B: Could you post the result of df -h /var FilesystemSize Used Avail Use% Mounted on /dev/sda1 65G 38G 25G 61% / Here it is. I should have added before that there is plenty of space left on device. Thanks, Leonardo

[squid-users] Re: Recurrent crashes and warnings: Your cache is running out of filedescriptors

2011-10-11 Thread Leonardo
@Wilson Hernandez: #!/bin/sh -e ulimit -HSn 65536 sleep 1 /usr/local/squid/sbin/squid Thanks a lot Wilson, that worked like a charm. It successfully increased the number of FDs for Squid to 65536. I'll give you feedback tomorrow, when the proxy will be under heavy usage. If everything

[squid-users] squid 3.2.0.12 delay_pool

2011-10-11 Thread Jean-Philippe Menil
Hi, i recently compiled squid 3.2.0.12, and it seems that i'm unable to make delay_pool working correctly. My delay_pools configuration was working well with squid 3.1.15, and now i'm erracic comportment. I'm a missing something with this new version? Below is my current delay_pool

Re: [squid-users] Block specific HTTPS site

2011-10-11 Thread Luis Daniel Lucio Quiroz
2011/10/11 Alex Crow a...@nanogherkin.com: On 11/10/11 14:29, Eduardo Porte wrote: Hi! I'm trying withou success to block the site: https://www.hidemyass.com. My question is, how can I block some specifics HTTPS sites and allow others? In this example, I need to block only

Re: [squid-users] Add top information to all webpages (like godaddy AD)

2011-10-11 Thread Luis Daniel Lucio Quiroz
2011/10/11 Hasanen AL-Bana hasa...@gmail.com: you don't want to create iframe for request , some requests will be for queries made by ajax and you don't want to touch that...it is better to add it only to the home page. On Tue, Oct 11, 2011 at 2:43 PM, Ed W li...@wildgooses.com wrote: So you

[squid-users] squid 2.7 ... memory leak?

2011-10-11 Thread jiluspo
(valgrind --tool=memcheck --leak-check=yes squid -Nd1) 2011/10/12 01:25:38| Asking valgrind for memleaks ==9877== 36 bytes in 1 blocks are definitely lost in loss record 606 of 1,292 ==9877==at 0x4026864: malloc (vg_replace_malloc.c:236) ==9877==by 0x407BFD5: cap_init (in

[squid-users] Squid isn't using persistent server-side connections upon POST/PUT/DELETE

2011-10-11 Thread Franz Kafka
Good evening Squid experts, We have a serious issue with persistent connections. We are testing a large REST-Application which heavily depends on caching and correct cache behaviour in particular concering the rather scarcely used HTTP-Methods like PUT.The scenario is the following: Client ---

Re: [squid-users] Add top information to all webpages (like godaddy AD)

2011-10-11 Thread Jorge Bastos
Hi all, Thanks for your answers. Well, I'm no c/c++ skill'able guy :( The apache footer module was a good solution but, in this case I can't use it in combination with squid. I thought it may exist some easy way of doing this.. Well, I'll keep searching to see if I can find anything. If

[squid-users] tcp connection to ORIGINSERVER failed

2011-10-11 Thread Daniel Alfonso
Where should I start for troubleshooting this error? occurs often in cache.log.. Network performance is par. Thanks

Re: [squid-users] Block specific HTTPS site

2011-10-11 Thread Alex Crow
On 11/10/11 16:53, Luis Daniel Lucio Quiroz wrote: 2011/10/11 Alex Crowa...@nanogherkin.com: On 11/10/11 14:29, Eduardo Porte wrote: Hi! I'm trying withou success to block the site: https://www.hidemyass.com. My question is, how can I block some specifics HTTPS sites and allow others? In

Re: [squid-users] Add top information to all webpages (like godaddy AD)

2011-10-11 Thread Amos Jeffries
On Tue, 11 Oct 2011 19:50:24 +0100, Jorge Bastos wrote: Hi all, Thanks for your answers. Well, I'm no c/c++ skill'able guy :( The apache footer module was a good solution but, in this case I can't use it in combination with squid. I thought it may exist some easy way of doing this.. Well,

Re: [squid-users] squid 2.7 ... memory leak?

2011-10-11 Thread Amos Jeffries
On Wed, 12 Oct 2011 01:32:00 +0800, jiluspo wrote: (valgrind --tool=memcheck --leak-check=yes squid -Nd1) 2011/10/12 01:25:38| Asking valgrind for memleaks ==9877== 36 bytes in 1 blocks are definitely lost in loss record 606 of 1,292 ==9877==at 0x4026864: malloc (vg_replace_malloc.c:236)

Re: [squid-users] tcp connection to ORIGINSERVER failed

2011-10-11 Thread Amos Jeffries
On Tue, 11 Oct 2011 16:07:51 -0400, Daniel Alfonso wrote: Where should I start for troubleshooting this error? occurs often in cache.log.. Network performance is par. Thanks Find out why TCP is not working to the machine perhapse? This is Squid attempting to connect to one of its

Re: [squid-users] Block specific HTTPS site

2011-10-11 Thread Amos Jeffries
On Tue, 11 Oct 2011 21:21:23 +0100, Alex Crow wrote: On 11/10/11 16:53, Luis Daniel Lucio Quiroz wrote: 2011/10/11 Alex Crowa...@nanogherkin.com: On 11/10/11 14:29, Eduardo Porte wrote: Hi! I'm trying withou success to block the site: https://www.hidemyass.com. My question is, how can I

Re: [squid-users] Squid isn't using persistent server-side connections upon POST/PUT/DELETE

2011-10-11 Thread Amos Jeffries
NP: inserted a few empty lines to make the text paragraphs identifiable. On Tue, 11 Oct 2011 20:25:06 +0200, Franz Kafka wrote: Good evening Squid experts, We have a serious issue with persistent connections. We are testing a large REST-Application which heavily depends on caching and

Re: [squid-users] Recurrent crashes and warnings: Your cache is running out of filedescriptors

2011-10-11 Thread Amos Jeffries
On Tue, 11 Oct 2011 15:07:16 +0200, Leonardo wrote: Hi all, I'm running a transparent Squid proxy on a Linux Debian 5.0.5, configured as a bridge. The proxy serves a few thousands of users daily. It uses Squirm for URL rewriting, and (since 6 weeks) sarg for generating reports. I compiled

RE: [squid-users] squid 2.7 ... memory leak?

2011-10-11 Thread jiluspo
Care to explain how do you able to figure out in that instant? Anyway after remove ubuntu's libcap2-dev ... leaks gone. -Original Message- From: Amos Jeffries [mailto:squ...@treenet.co.nz] Sent: Wednesday, October 12, 2011 5:59 AM To: squid-users@squid-cache.org Subject: Re:

Re: [squid-users] WCCP transparent proxy

2011-10-11 Thread nipun_mlist Assam
This may be relevant to this question. While trying to use squid for transparent proxy (tproxy ) on linux (kerne 2.6.39 with centos 6.0), I noticed the following 1. Client IP spoofing doesn't work (but for our work, this requirement was a must). 2. Squid with tproxy doesn't work with HTTPS

Re: [squid-users] squid 3.2.0.12 delay_pool

2011-10-11 Thread Amos Jeffries
On 12/10/11 04:49, Jean-Philippe Menil wrote: Hi, i recently compiled squid 3.2.0.12, and it seems that i'm unable to make delay_pool working correctly. My delay_pools configuration was working well with squid 3.1.15, and now i'm erracic comportment. I'm a missing something with this new

Re: [squid-users] squid 2.7 ... memory leak?

2011-10-11 Thread Amos Jeffries
On 12/10/11 16:07, jiluspo wrote: Care to explain how do you able to figure out in that instant? Sure. Anyway after remove ubuntu's libcap2-dev ... leaks gone. Did you replace it with a working libcap? That library is what controls Squids effective-user security access to the operating

Re: [squid-users] WCCP transparent proxy

2011-10-11 Thread Amos Jeffries
On 12/10/11 17:33, nipun_mlist Assam wrote: This may be relevant to this question. While trying to use squid for transparent proxy (tproxy ) on linux (kerne 2.6.39 with centos 6.0), I noticed the following 1. Client IP spoofing doesn't work (but for our work, this requirement was a must). In

Re: [squid-users] squid 3.2.0.12 delay_pool

2011-10-11 Thread Jean-Philippe Menil
Le 12/10/2011 06:50, Amos Jeffries a écrit : On 12/10/11 04:49, Jean-Philippe Menil wrote: Hi, i recently compiled squid 3.2.0.12, and it seems that i'm unable to make delay_pool working correctly. My delay_pools configuration was working well with squid 3.1.15, and now i'm erracic

Re: [squid-users] Please help setup my new squid servers

2011-10-11 Thread Amos Jeffries
On 11/10/11 23:38, mc8647tv wrote: Good morning, I just received my new 3 servers for the squid infrastructure. Each server has: 2 CPU X5690 (each has 6 cores/12 threads, 3.46 Ghz) 12 GB ram (I have kits to upgrade to 24 if needed) 8 hd 146GB 15k rpm (I also have 300/600/900 GB 10k available)