> 
> Salut,
> 
> Incerc sa configurez doua squid-uri (3.0.STABLE8, pe debian 5.0.3) sa se 
> vada ca sibling-uri (192.168.1.1 si 192.168.3.1). cache-digest-ul se 
> transfera de la unul la celalalt, vad in loguri linii de genul
> UDP_MISS/000 107 ICP_QUERY http://www.blablabla.tld - NONE/- -
> dat in cachemgr si in cache.log amandoua insista sa il declare dead pe 
> celalalt.
> 
> Am sapat pe gogu dar nu prea imi dau seama cum sa-i dau de cap.
> 
> Merci de orice idee.
> 
> Configuratia este mai jos si este identica pe cele doua servere (mai 
> putin cache_peer-ul, desigur):
> 
> acl SSL_ports port 443          # https
> acl SSL_ports port 563          # snews
> acl SSL_ports port 873          # rsync
> acl Safe_ports port 80          # http
> acl Safe_ports port 21          # ftp
> acl Safe_ports port 443         # https
> acl Safe_ports port 70          # gopher
> acl Safe_ports port 210         # wais
> acl Safe_ports port 1025-65535  # unregistered ports
> acl Safe_ports port 280         # http-mgmt
> acl Safe_ports port 488         # gss-http
> acl Safe_ports port 591         # filemaker
> acl Safe_ports port 777         # multiling http
> acl Safe_ports port 631         # cups
> acl Safe_ports port 873         # rsync
> acl Safe_ports port 901         # SWAT
> acl manager proto cache_object
> acl localhost src 127.0.0.0/8
> acl to_localhost dst 127.0.0.0/8
> acl localnet src 10.0.0.0/8
> acl localnet src 172.16.0.0/12
> acl localnet src 192.168.0.0/16
> acl purge method PURGE
> acl CONNECT method CONNECT
> acl QUERY urlpath_regex cgi-bin \?
> 
> http_access allow manager localhost
> http_access deny manager
> http_access deny !Safe_ports
> http_access deny CONNECT !SSL_ports
> http_access allow localnet to_localhost
> http_access allow localhost to_localhost
> http_access deny to_localhost
> http_access allow localnet
> http_access allow localhost
> http_access deny all
> icp_access allow localnet
> htcp_access allow localnet
> icp_access deny all
> htcp_access deny all
> 
> http_port 3128 transparent
> hierarchy_stoplist cgi-bin ?
> cache deny QUERY
> 
> cache_mem 256 MB
> maximum_object_size_in_memory 32 KB
> cache_dir ufs /var/spool/squid3 10240 16 256
> maximum_object_size 64 MB
> 
> access_log /var/log/squid3/access.log squid
> cache_log /var/log/squid3/cache.log
> cache_store_log none
> logfile_rotate 0
> mime_table /usr/share/squid3/mime.conf
> pid_filename /var/run/squid3.pid
> 
> refresh_pattern ^ftp:                           1440    20%     10080
> refresh_pattern ^gopher:                        1440    0%      1440
> refresh_pattern (cgi-bin|\?)                    0       0%      0
> refresh_pattern (Release|Package(.gz)*)$        0       20%     2880
> refresh_pattern .                               0       20%     4320
> negative_ttl 60 seconds
> shutdown_lifetime 15 seconds
> 
> icp_port 3130
> htcp_port 4827
> 
> error_directory /usr/share/squid3/errors/Romanian
> email_err_data on
> forwarded_for on
> coredump_dir none
> 
> redirect_program /usr/bin/squidGuard -c /etc/squid/squidGuard.conf
> url_rewrite_children 5
> url_rewrite_concurrency 0
> 
> cache_peer 192.168.1.1 sibling 3128 3130
> 
> 


Incearca sa scoti linia de htcp_access deny all.  


O zi buna,
Camelia
-- 
*Camelia Nastase*
Network Administrator
www.mediasat.ro <www.mediasat.ro>
Office: +4 031 82 52 635

PGP Key: 0xFBF8530B, http://pgpkeys.mit.edu/
Key fingerprint = BABF 3B12 3D11 911C 85BB  925E 09C1 6B4A FBF8 530B



_______________________________________________
RLUG mailing list
RLUG@lists.lug.ro
http://lists.lug.ro/mailman/listinfo/rlug

Raspunde prin e-mail lui