5.7 5.3 6.5
0.5
2. Origin-IP 0.0% 40.5 0.4 0.3 0.6
0.1
--
Regards,
Faisal.
-- Original Message --
From: "Luca Rea" <luca@contactlab.com>
To: "users@trafficserver.apache.org" <users@trafficserver.a
Hi,
what about the statistics given by the command “mtr ” in your ATS box?
From: Muhammad Faisal [mailto:faisalu...@yahoo.com]
Sent: martedì 22 marzo 2016 17:52
To: users@trafficserver.apache.org; users@trafficserver.apache.org
Subject: Re: Question on ATS Performance
Its strange! since
Hi,
I've not yet used it but I can make an usage example:
If you use ATS as HTTP2 proxy for a service that sends apple push notifications
your customers will give you a .p12 file containing the pair key/certificate of
their authorized mobile app, so you need to customize the outbound TLS
Hi,
when the Comcast "Traffic Portal" CDN interface (Traffic Control project) will
be released to Open Source?
Thank you
Hi,
yes, the link of traffic portal seems to be
http://traffic-control-cdn.net/docs/latest/overview/traffic_portal.html (some
other links are broken...)
What let you think the opposite ?
-Original Message-
From: Reindl Harald [mailto:h.rei...@thelounge.net]
Sent: martedì 2 febbraio 2016 13:14
To: users@trafficserver.apache.org
Subject: Re: Info - traffic control
Am 02.02.2016 um 09:26 schrieb Luca Rea:
> yes, the link of traf
Hi,
some time ago I’ve fired a jira ticket asking for new Lua APIs which should
make possible easily support new protocols… (TS-2910)
Hi,
about... "To answer Bcall’s email, yes, Github comments ends up on the Jira,
but not the other way around. So people reading and commenting there see the
entire thread, whereas people only reading the Github PR only sees “half” the
thread." ... perhaps you can try to enable email
strom
<zw...@apache.org<mailto:zw...@apache.org>> wrote:
>
> On Sep 30, 2015, at 2:05 AM, Luca Rea
> <luca@contactlab.com<mailto:luca@contactlab.com>> wrote:
>
> Hi,
> Does is possible to compress “on-the-fly” and store in cache gzipped
> ve
Hi,
Does is possible to compress "on-the-fly" and store in cache gzipped version
(and only that) of pushed uncompressed html pages?
Hi,
take a look to the conf_remap plugin, perhaps it can be useful for your case
use:
... @plugin=conf_remap.so
@pparam=proxy.config.http.parent_proxy.file=custom_parent.config
Hi,
where can I find the Scheduled Update feature (update.config file) in the
last trafficserver release?
Does it has been moved into a dedicated plugin?
Thank you
Hi,
what if you use the configuration below (note row n.3)?
redirect http://service.domain.com/ https://service.domain.com/
map https://service.domain.com https://servera.domain.com
map http://service.domain.com/ http://service.domain.com/
map / http://default.domain.com/
Hi,
in your previous email I read Proxy-Connection: keep-alive, what are your
keep-alive timeouts ?
Hi,
I’ve compiled ATS to run as “ats” user (uid: 501) and configured iptables to
filter origin IPs:
-A OUTPUT -m tcp -p tcp ! --sport 8080 -m owner --uid-owner 501 -d
172.16.0.0/12 -j REJECT
Hi,
that's not a bug but a feature of the domain option of some resolvers
(depending on release).
Do you want fire a jira to change the behavior of your OS resolver?? Try
updating it.
Hi,
did you try CONFIG proxy.config.dns.search_default_domains INT 0 ?
Hi,
what if you use the search option instead of domain?
what about a post-optimization of the cache? I mean...
1. when ATS receives a huge data it stores the URLs with a rounded timestamp
and the flag checked:true/false into a RDBMS (eg. postgresql) with a unique
constraint on URLs and timestamp fields
2. a batch process periodically get URLs (
Mmmm... can help something like the following below?
Client(Request=Normal URL) - ATS(Lua) - NoSQL (PUT: key=hash,value=url
object) - Origin
Client - ATS(Cache) - Origin
Client(Request=HASH Cache) - ATS(Lua) - NoSQL (GET: url object) - ATS(Cache)
Client - ATS(Cache)
You can use an in-memory
What are your remap rules?
It seems that your ATS instance is using the method CONNECT (https) to
establish a connection to your http backend, perhaps you should configure SSL
termination on the proxy side...
...but it grants us the flexibility to move the Docs site at a future time
should we choose to, without changing any URLs
I thought ATS could solve that :)
I think that's the best choice.
From: Phil Sorber [mailto:sor...@apache.org]
Ok, so because of Bryan's -1 we are going to call this vote as a failure and
re-roll an RC1 when we get a patch for that bug. Look for another vote in the
coming days.
Thanks.
+1
What is your proxy.config.cache.force_sector_size value?
Fedora release 19 (Schrödinger’s Cat)
Linux localhost.localdomain 3.11.10-200.fc19.x86_64 #1 SMP Mon Dec 2 20:28:03
UTC 2013 x86_64 x86_64 x86_64 GNU/Linux
git clean -d -x -f autoreconf -fi ./configure
--enable-experimental-plugins --enable-reclaimable-freelist --enable-hwloc
make
+1
[luca@localhost ~]$ cat /etc/redhat-release
Fedora release 19 (Schrödinger’s Cat)
[luca@localhost ~]$ uname -a
Linux localhost.localdomain 3.11.10-200.fc19.x86_64 #1 SMP Mon Dec 2 20:28:03
UTC 2013 x86_64 x86_64 x86_64 GNU/Linux
[luca@localhost ~]$ cat .rpmmacros
%_topdir %(echo $HOME)/rpmbuild
Hi Miles,
my username is luca.rea.
Thank you
Hi Scott,
Some days ago I have tested the authentication plugin of ATS in forward mode
with Apache and postgreSQL so I suppose it can work with ldap or anything else
too, on my experience it works but soon takes off available connections on db,
adding a middle layer with lua and memcache to
ATS - Plugin.config:
authproxy.so --auth-transform=redirect --auth-host=127.0.0.1 --auth-port=80
Apache with postgreSQL:
DBDriver pgsql
DBDParams dbname=apacheauth host=127.0.0.1 port=5432 user=user
password=password
DBDMin 4
DBDKeep 8
DBDMax 20
DBDExptime 300
LocationMatch ^/+$
You're welcome
I had missed it, nice to know about new modules and features, thank you!
I suppose DNS configured in ATS can't resolve localhost.
Try dig or nslookup, eg:
nslookup localhost your_DNS_server
(Default configuration use the DNS specified in /etc/resolv.conf)
I don't think so, how many public DNS that resolve localhost do you know?
I know there are some security issues related with that configuration.
Server: ns1.google.com
Address:216.239.32.10#53
** server can't find localhost: REFUSED
OpenDNS:
Server: 208.67.222.220
Address:208.67.222.220#53
** server can't find localhost: NXDOMAIN
Server: 208.67.222.222
Address:208.67.222.222#53
** server can't find localhost: NXDOMAIN
I confirm your note about MTA
RedHat is working on RHEL7, +1
That works if you have not regex_redirect...
+1
-Original Message-
From: Igor Galić [mailto:iga...@apache.org]
Sent: martedì 4 dicembre 2012 10:19
To: users@trafficserver.apache.org; dev
Subject: [POLL] UTF-8
Hey folks,
I was wondering how many of you use UTF-8 as your default Character encoding
and would like to see Traffic
Hi,
I suppose there is a forced redirect from http to https of login page, if you
have ATS SSL termination you should disable the https redirect of web server or
apps.
3, use a unix socket as parent.
4, add possibility to choose parent upon removable custom header
One more to test:
.defflt service_range1 @action=deny @src_ip=0.0.0.1-192.168.11.10
.defflt service_range2 @action=deny @src_ip=192.168.11.12-254.254.254.254
.useflt service_range1
.useflt service_range2
map https://www.example.com/service/ http://backend.example.com/service/
Try this:
map https://www.example.com/service/
http://backend.example.com/service/ @src_ip=0.0.0.0-8.8.8.7 @action=deny
@src_ip=8.8.8.8 @action=allow
@src_ip=8.8.8.9-254.254.254.254 @action=deny
Luca Rea
Reparto IT
System engineer
__
ContactLab s.r.l.
Via
What about the other rules in remap.config?
Just to know... did you try moving @action before the @src_ip directive?
map https://www.example.com/service/
http://backend.example.com/service/ @src_ip=0.0.0.0-192.168.11.10
@action=deny @src_ip=192.168.11.11 @action=allow
@src_ip=192.168.11.12-254.254.254.254 @action=deny
Luca Rea
Reparto IT
System engineer
Hi all,
is possible to use a unix socket instead of IP as value of parent?
Did you try adding in remap.config something like the following line?
regex_map https://encrypted-tbn[0-3].google.com/images\?.*;
http://IP:PORT/PATH/THUMBNAIL_NAME.jpeg
I suggest...
Stable (no risks) for production environments
Dev (mods with low-medium impact) for testing under development
Unstable (mods with medium-high impact) for experimental testing
Adding (not replacing) the name can be more useful to do segmentation and
clarify.
Luca Rea
Reparto
I have the same issue.
51 matches
Mail list logo