RE: [squid-users] reference_age parameter

2003-03-17 Thread Raja R
but what is the equivalent parameter in 2.5 which has the same effect ?
Regards,Raja.


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of
Henrik Nordstrom
Sent: Monday, March 17, 2003 12:58 PM
To: [EMAIL PROTECTED]
Cc: 'squid'
Subject: Re: [squid-users] reference_age parameter


Squid no longer uses this directive.

Regards
Henrik


Raja R wrote:

 hi ,
 Can u tell me the equivalent of reference_age paramater in squid 2.5
stable
 1 version. I was using this paramater in my earlier squid version 2.3
 but does not seem to be there in squid 2.5
 raja.



[squid-users] SQUID Trasparent Proxy + HTTP Proxy on the same machine ?

2003-03-17 Thread O-Zone
Hi all,
can i have, on the same machine, a Trasparent Proxy and a Normal Proxy that do 
the same work ? Ok...i want to avoit MASQUERADING for port 80 and want to 
control all WEB traffic.

So...can i ?

Oz

-- 
  ()
(###)
  (#)
 (#)
(#)
   (#)
     (#)
  / \(#)   |\/\/\/| /\ /\  /\   /\
 |   |  (#)|  | | V  \/  \---../  \.
 |  (o)(o)   (o)(o)(##)|  |  \_/   \  /
 C   .---_),_C (##)| (o)(o)   (o)(o)  __.   .--\ (o)(o) /__.
  | |.___|/,   (##)C  _) _C / \ () /
  |  \__/   \ (#)   | ,___| /,   )  \ (C_)   
  /_\|| |   / \ /'/___\/___\
 /_/ \   OO/\  o /||\
/ \ /  \  /  \/ \   /\

   Homer Marge  BartLisa   Baby Maggie

 I SIMPSON


Questa email e' stata controllata dal RAV AntiVirus by TDSiena Srl [siena.tdsiena.it].



[squid-users] Squid Proxy sizes

2003-03-17 Thread Neil Thompson
Hi all,

I may be asked shortly to provide web proxy/caching solutions for some 
(for me) rather large Internet connections. 12-15000 people per site and 
the Internet lines are 10-20Mbit in size.  

I have run squid successfully on lines up to 2.5Mbit with about 2000 
people using the servers running Linux (RedHat 6.2  7.3) and squid 
2.4STABLE6.

Will I be able to ramp up to the larger lines, and what sort of 
hardware/software combinations will I need?

I have checked the FAQ and the sizing link and that doesn't go near the 
numbers I need to support.

TIA.



-- 

Cheers! (Relax...have a homebrew)

Neil



Re: [squid-users] Squid Proxy sizes

2003-03-17 Thread Marc Elsen


Neil Thompson wrote:
 
 Hi all,
 
 I may be asked shortly to provide web proxy/caching solutions for some
 (for me) rather large Internet connections. 12-15000 people per site and
 the Internet lines are 10-20Mbit in size.
 
 I have run squid successfully on lines up to 2.5Mbit with about 2000
 people using the servers running Linux (RedHat 6.2  7.3) and squid
 2.4STABLE6.
 
 Will I be able to ramp up to the larger lines, and what sort of
 hardware/software combinations will I need?
 
 I have checked the FAQ and the sizing link and that doesn't go near the
 numbers I need to support.

 Not sure, I had some nearbye network admins from Leuven University
 abandoning squid for 2 users because they said it was too slow.
 They went for cisco hw caching solutions.

 Opinions my vary.
 
 M.

 
 TIA.
 
 --
 
 Cheers! (Relax...have a homebrew)
 
 Neil

-- 

 'Time is a consequence of Matter thus
 General Relativity is a direct consequence of QM
 (M.E. Mar 2002)


RE: [squid-users] reference_age parameter

2003-03-17 Thread Henrik Nordstrom
Not sure if there is a equivalent parameter, but you can get close to
the same effect by tuning your cache size.

Regards
Henrik


mån 2003-03-17 klockan 08.53 skrev Raja R:
 but what is the equivalent parameter in 2.5 which has the same effect ?
 Regards,Raja.
 
 
 -Original Message-
 From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of
 Henrik Nordstrom
 Sent: Monday, March 17, 2003 12:58 PM
 To: [EMAIL PROTECTED]
 Cc: 'squid'
 Subject: Re: [squid-users] reference_age parameter
 
 
 Squid no longer uses this directive.
 
 Regards
 Henrik
 
 
 Raja R wrote:
 
  hi ,
  Can u tell me the equivalent of reference_age paramater in squid 2.5
 stable
  1 version. I was using this paramater in my earlier squid version 2.3
  but does not seem to be there in squid 2.5
  raja.
-- 
Henrik Nordstrom [EMAIL PROTECTED]
MARA Systems AB, Sweden



Re: [squid-users] Squid Proxy sizes

2003-03-17 Thread Henrik Nordstrom
mån 2003-03-17 klockan 10.03 skrev Neil Thompson:
 Hi all,
 
 I may be asked shortly to provide web proxy/caching solutions for some 
 (for me) rather large Internet connections. 12-15000 people per site and 
 the Internet lines are 10-20Mbit in size.

For the range of 20Mbit I would use a cluster of 3 fairly normal boxes
with 4 harddrives each (ATA or SCSI). Memory scaled according to cache
size.

2 boxes actaually would handle the load fine, and it may even be
possible to build a single high end box which can handle the load, but
having 3 smaller boxes gives better performance and increased
flexibility (you can take one box offline for upgrade/maintenance while
still maintaining the full service level).

-- 
Henrik Nordstrom [EMAIL PROTECTED]
MARA Systems AB, Sweden



[squid-users] Caching!!

2003-03-17 Thread TMurugavelu
Dear Members,


I have linux box which is having 2 ethernet card running in bridge mode

In one card i have connected the Least line cable another one is connectd
in the clinet machine(Nt).
Squid server is Running in Linux Box

I have enabled the Iptables like below

iptables -A PREROUTING -t NAT -p tcp --dport 80 -j REDIRECT --to-ports
3128

I am accessing the internet thro NT box.

When we checked the IP Address of the remote server it is showing the
Linux box ip.
Is there any other way to directly display the Client machine ip to the
remote server.
for checking purpose i have used www.maria.com

it is showing the Linux box ip rather then NT box.

Is there any possiblties available in squid.

Kindly help me in this regard. Awaiting your reply

with regards
velu





Re: [squid-users] SQUID Trasparent Proxy + HTTP Proxy on the same machine ?

2003-03-17 Thread reymc
Sorry, I am very interested in what you say, I am using squid2.5 and I would 
like to chech all traffic passing through the squid.

Could you just give me a few explanations on what you do with two proxies (by 
which mechanism can you avoid masquerading ?

Thanks a lot and sorry if it is not a proper squid question... some other 
people might have an interest in this as well.

Marie-Carmen



Quoting O-Zone [EMAIL PROTECTED]:

 Hi all,
 can i have, on the same machine, a Trasparent Proxy and a Normal Proxy that
 do 
 the same work ? Ok...i want to avoit MASQUERADING for port 80 and want to 
 control all WEB traffic.
 
 So...can i ?
 
 Oz
 
 -- 
 ()
   (###)
 (#)
(#)
   (#)
  (#)
  (#)
   / \(#)   |\/\/\/| /\ /\  /\   /\
  |   |  (#)|  | | V  \/  \---../ 
 \.
  |  (o)(o)   (o)(o)(##)|  |  \_/   \  /
  C   .---_),_C (##)| (o)(o)   (o)(o)  __.   .--\ (o)(o)
 /__.
   | |.___|/,   (##)C  _) _C / \ ()
 /
   |  \__/   \ (#)   | ,___| /,   )  \ (C_)   
   /_\|| |   / \ /'   
 /___\/___\
  /_/ \   OO/\  o /||\
 / \ /  \  /  \/ \   /\
 
Homer Marge  BartLisa   Baby Maggie
 
I SIMPSON
 
 
 Questa email e' stata controllata dal RAV AntiVirus by TDSiena Srl
 [siena.tdsiena.it].
 
 
 




---
This mail sent through Institut Eurecom Webmail : http://webmail.eurecom.fr


Re: [squid-users] Squid Proxy sizes

2003-03-17 Thread Gokhan ERYOL
Here, I installed squid for 8000 people, with approximately 12000 
request per minute, 155 Mbps inside, 34 Mbps dedicated outside bandwidth 
and works like a charm. Some adjustment should be done for memory sizing.

Clustering with second one will bring redundancy.

Regards,
Gokhan ERYOL
Marc Elsen wrote:

Neil Thompson wrote:
 

Hi all,

I may be asked shortly to provide web proxy/caching solutions for some
(for me) rather large Internet connections. 12-15000 people per site and
the Internet lines are 10-20Mbit in size.
I have run squid successfully on lines up to 2.5Mbit with about 2000
people using the servers running Linux (RedHat 6.2  7.3) and squid
2.4STABLE6.
Will I be able to ramp up to the larger lines, and what sort of
hardware/software combinations will I need?
I have checked the FAQ and the sizing link and that doesn't go near the
numbers I need to support.
   

Not sure, I had some nearbye network admins from Leuven University
abandoning squid for 2 users because they said it was too slow.
They went for cisco hw caching solutions.
Opinions my vary.

M.

 

TIA.

--

Cheers! (Relax...have a homebrew)

Neil
   

 






Re: [squid-users] Squid Proxy sizes

2003-03-17 Thread Neil Thompson
Hi Gokhan,

On Mon, 17 Mar 2003, Gokhan ERYOL wrote:

 Here, I installed squid for 8000 people, with approximately 12000 
 request per minute, 155 Mbps inside, 34 Mbps dedicated outside bandwidth 
 and works like a charm. Some adjustment should be done for memory sizing.

Thanks for the info.

What hardware/OS/squid version combination are you using?  


Cheers! (Relax...have a homwbrew)

Neil



[squid-users] Waiting for your reply!!

2003-03-17 Thread TMurugavelu
Dear Members,


I have linux box which is having 2 ethernet card running in bridge mode

In one card i have connected the Least line cable another one is connectd
in the clinet machine(Nt).
Squid server is Running in Linux Box

I have enabled the Iptables like below

iptables -A PREROUTING -t NAT -p tcp --dport 80 -j REDIRECT --to-ports
3128

I am accessing the internet thro NT box.

When we checked the IP Address of the remote server it is showing the
Linux box ip.
Is there any other way to directly display the Client machine ip to the
remote server.
for checking purpose i have used www.maria.com

it is showing the Linux box ip rather then NT box.

Is there any possiblties available in squid.

Kindly help me in this regard. Awaiting your reply

with regards
velu






RE: [squid-users] Caching!!

2003-03-17 Thread Mark A Lewis
Um, that's kinda the whole idea of a proxy, that it makes the request
for the client. You could use forwarded for if the server at the other
end logs it.

-Original Message-
From: TMurugavelu [mailto:[EMAIL PROTECTED] 
Sent: Monday, March 17, 2003 4:44 AM
To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
Subject: [squid-users] Caching!!

Dear Members,


I have linux box which is having 2 ethernet card running in bridge mode

In one card i have connected the Least line cable another one is
connectd
in the clinet machine(Nt).
Squid server is Running in Linux Box

I have enabled the Iptables like below

iptables -A PREROUTING -t NAT -p tcp --dport 80 -j REDIRECT --to-ports
3128

I am accessing the internet thro NT box.

When we checked the IP Address of the remote server it is showing the
Linux box ip.
Is there any other way to directly display the Client machine ip to the
remote server.
for checking purpose i have used www.maria.com

it is showing the Linux box ip rather then NT box.

Is there any possiblties available in squid.

Kindly help me in this regard. Awaiting your reply

with regards
velu

**
This message was virus scanned at siliconjunkie.net and
any known viruses were removed. For a current virus list
see http://www.siliconjunkie.net/antivirus/list.html



[squid-users] redirect authenticate and surf

2003-03-17 Thread James Ambursley
Please help, I would like to have users authenticate, via radius and redirect to a 
page.  Only authenticated users can surf freely.  
All users are redirected to the page, then authenticate, then surf freely.
I have tried many combinations, and none work.
My redirector is squidguard.  I have been able to redirect, but users at the page are 
only able to surf to pages which I preset in my list file.


_
My squid.conf is below:

http_port 80
icp_port 80
httpd_accel_host 10.190.1.86
acl acceleratedHost dst 127.0.0.1/255.255.255.255
httpd_accel_port 80
httpd_accel_host 127.0.0.1
udp_incoming_address 0.0.0.0
udp_outgoing_address 255.255.255.255
hierarchy_stoplist cgi-bin ?
#acl QUERY urlpath_regex cgi-bin \?
acl QUERY url_regex cgi-bin \?
no_cache deny QUERY
no_cache deny acceleratedHost
#requests for localhost not going to peer
always_direct allow acceleratedHost
cache_dir ufs /usr/local/squidtest/var/cache 100 16 256
cache_access_log /usr/local/squidtest/var/logs/access.log
cache_log /usr/local/squidtest/var/logs/cache.log
log_ip_on_direct on
pid_filename /usr/local/squidtest/var/logs/squid.pid
hosts_file /etc/hosts
cache_effective_user squid
cachemgr_passwd secret password
refresh_pattern ^ftp:   144020% 10080
refresh_pattern ^gopher:14400%  1440
refresh_pattern .   0   20% 4320
negative_ttl 2 minutes
emulate_httpd_log on
#
#USER ACCESS PART
auth_param basic program /opt/squid/auth/bin/squid_rad_auth -c 
/opt/squid/auth/etc/squid_rad_auth.conf
auth_param basic children 10
#auth_param basic realm MY Squid proxy-caching server
auth_param basic credentialsttl 1 minutes
redirect_program /usr/local/squidguard/bin/squidGuard -c 
/usr/local/squidguard/squidguard.conf
redirect_children 20
#acl foo proxy_auth REQUIRED 
#acl foo proxy_auth username
#http_access allow foo
#acl daytime time 08:00-17:00
#authenticate_ttl 30 seconds
#
acl allowed_hosts src 10.190.1.0/255.255.255.0
acl all src 0.0.0.0/0.0.0.0
http_access allow allowed_hosts
acl manager proto cache_object
acl localhost src 127.0.0.1/255.255.255.255
acl to_localhost dst 127.0.0.0/8
acl SSL_ports port 443 563
acl Safe_ports port 80  # http
acl Safe_ports port 110 # pop3
acl Safe_ports port 21  # ftp
acl Safe_ports port 443 563 # https, snews
acl Safe_ports port 25  # smtp
#acl Safe_ports port 70 # gopher
#acl Safe_ports port 210# wais
acl Safe_ports port 1025-65535  # unregistered ports
acl Safe_ports port 280 # http-mgmt
acl Safe_ports port 488 # gss-http
#acl Safe_ports port 591# filemaker
acl Safe_ports port 777 # multiling http
acl CONNECT method CONNECT
#http_access allow redirect_access 
#http_access allow foo
http_reply_access allow  Safe_ports
icp_access allow  Safe_ports
visible_hostname MYSQUID
httpd_accel_single_host on
httpd_accel_with_proxy on
forwarded_for on
log_icp_queries on
error_directory /usr/local/squidtest/share/errors/English
ie_refresh off
#http_access allow bar
http_access allow all
http_access allow localhost
http_access allow acceleratedHost
#http_access allow acceleratedPort
http_access allow Safe_ports
http_access allow localhost
http_access deny manager
http_access deny !Safe_ports
http_access deny CONNECT !SSL_ports
___

my squidguard.conf is below

logdir /usr/local/squidguard/logs
#dbhome /usr/local/squidguard/db
dest test {
domainlist /usr/local/squidguard/list
 }

acl {
 default {
pass test none
  redirect http://10.190.1.86/?
 }
 }

My allowed list:

more /usr/local/squidguard/list

excite.com
winproxy.com
buy.com
imgfarm.com



Re: AW: [squid-users] , in the URL

2003-03-17 Thread Mihalis Tsoukalos
Do I need to compile squid with the -g option?
Any other options that might help?

cheers,
Mihalis.

- Original Message -
From: Henrik Nordstrom [EMAIL PROTECTED]
To: Mihalis Tsoukalos [EMAIL PROTECTED]
Cc: [EMAIL PROTECTED]
Sent: Monday, March 17, 2003 9:13 AM
Subject: Re: AW: [squid-users] , in the URL


 You use GDB as usual.. a process is a process.

 Either use the -N command line option when starting Squid from within
 gdb, or attach to the running process.

 Regards
 Henrik

 Mihalis Tsoukalos wrote:
 
  I have checked it back and I have seen that the problem is not with
Squid.
 
  So the question is now:
  Any hints on how to debug the (modified) squid C code?
 
  The reason I am asking is because squid is a server process. I know how
to
  debug a no-server executable.
  I am going to use gdb.
 
  have a nice week,
  Mihalis.




Re: AW: [squid-users] , in the URL

2003-03-17 Thread Henrik Nordstrom
mån 2003-03-17 klockan 15.29 skrev Mihalis Tsoukalos:
 Do I need to compile squid with the -g option?

Yes, as always when debugging applications.

 Any other options that might help?

You might want to disable optimization (no -O2 option) as some of the
optimizations done by the compiler makes debugging a little confusing..

Regards
Henrik

-- 
Henrik Nordstrom [EMAIL PROTECTED]
MARA Systems AB, Sweden



[squid-users] Please check my acl

2003-03-17 Thread Gary Hostetler
My acl is not blocking gator and I need someone to look at my acl and tell
me where I am missing it. My parent cache does block it but I don't want to
try to block other sites until I get this right.



http_access allow all

  acl INSIDE dstdomain wwwproxy.k12.de.us
  always_direct allow INSIDE
  never_direct allow all

  acl gator dstdomain www.gator.com gatorcme.gator.com

  http_access deny gator

Thanks
Gary



[squid-users] reporting for transparent

2003-03-17 Thread Terry
Hello,

I am looking for a reporting tool that allows for
machine name reporting instead of username.  All the
tools I am finding use usernames.  The best one I have
seen is Squid Alyser.  Any ideas?

=
Terry

__
Do you Yahoo!?
Yahoo! Web Hosting - establish your business online
http://webhosting.yahoo.com


Re: [squid-users] Please check my acl

2003-03-17 Thread Ilker Gokhan
Gary Hostetler wrote:
http_access allow all

  acl INSIDE dstdomain wwwproxy.k12.de.us
  always_direct allow INSIDE
  never_direct allow all
  acl gator dstdomain www.gator.com gatorcme.gator.com

  http_access deny gator
first deny line then allow line..

Regards,
Ilker G.

Give peace a chance. Lenon



Re: [squid-users] Please check my acl

2003-03-17 Thread Henrik Nordstrom
The order of your http_access lines is important. You cannot later deny
what has already been allowed.

Regards
Henrik


mån 2003-03-17 klockan 16.44 skrev Gary Hostetler:
 My acl is not blocking gator and I need someone to look at my acl and tell
 me where I am missing it. My parent cache does block it but I don't want to
 try to block other sites until I get this right.
 
 
 
 http_access allow all
 
   acl INSIDE dstdomain wwwproxy.k12.de.us
   always_direct allow INSIDE
   never_direct allow all
 
   acl gator dstdomain www.gator.com gatorcme.gator.com
 
   http_access deny gator
 
 Thanks
 Gary
-- 
Henrik Nordstrom [EMAIL PROTECTED]
MARA Systems AB, Sweden



Re: [squid-users] reporting for transparent

2003-03-17 Thread Henrik Nordstrom
All I have seen allows reporting on the client IP address (or DNS name).

Regards
Henrik


mån 2003-03-17 klockan 17.14 skrev Terry:
 Hello,
 
 I am looking for a reporting tool that allows for
 machine name reporting instead of username.  All the
 tools I am finding use usernames.  The best one I have
 seen is Squid Alyser.  Any ideas?
 
 =
 Terry
 
 __
 Do you Yahoo!?
 Yahoo! Web Hosting - establish your business online
 http://webhosting.yahoo.com
-- 
Henrik Nordstrom [EMAIL PROTECTED]
MARA Systems AB, Sweden



[squid-users] Squid Log - I need to know TIME 4 Event !!!

2003-03-17 Thread O-Zone
Hi all,
there's an analyzer (i'm using SARG) that reports me the TIME (and DATE) where 
an event (i.e.visiting a page) occour ?

Tnx. Oz

-- 

O-Zone - TDSiena System Administrator 
Home @ www.zerozone.it


Questa email e' stata controllata dal RAV AntiVirus by TDSiena Srl [siena.tdsiena.it].



Re: [squid-users] reporting for transparent

2003-03-17 Thread Ilker Gokhan
Terry wrote:
Hello,

I am looking for a reporting tool that allows for
machine name reporting instead of username.  All the
tools I am finding use usernames.  The best one I have
seen is Squid Alyser.  Any ideas?
Try sarg..
http://web.onda.com.br/orso/sarg.html
Sample screenshot (may be not fresh :) ):
http://istanbul.linux.org.tr/~ilkerg/squid/logs/
Dont forget to enable dns to see computer name instead of their IP.

Regards,
Ilker G.
-
Peace at home,peace at the world. K.Ataturk


Re: [squid-users] X-forwarded-for

2003-03-17 Thread Marc Elsen


[EMAIL PROTECTED] wrote:
 
 hi, i have the clients, behind them i have squid_A, and behind squid_A i
 have squid_B.
 
 i want that clients IP appear in access.log of squid_B, how i do it?
 
 regards.

  Drop back question : is this possible ?

  Answer : no

  M.


-- 

 'Time is a consequence of Matter thus
 General Relativity is a direct consequence of QM
 (M.E. Mar 2002)


Re: [squid-users] Please check my acl

2003-03-17 Thread Gary Hostetler
I moved it before everything else. It works.
Thanks
Gary

On 3/17/03 11:23 AM, Henrik Nordstrom [EMAIL PROTECTED] wrote:

 The order of your http_access lines is important. You cannot later deny
 what has already been allowed.
 
 Regards
 Henrik
 
 
 mån 2003-03-17 klockan 16.44 skrev Gary Hostetler:
 My acl is not blocking gator and I need someone to look at my acl and tell
 me where I am missing it. My parent cache does block it but I don't want to
 try to block other sites until I get this right.
 
 
 
 http_access allow all
 
   acl INSIDE dstdomain wwwproxy.k12.de.us
   always_direct allow INSIDE
   never_direct allow all
 
   acl gator dstdomain www.gator.com gatorcme.gator.com
 
   http_access deny gator
 
 Thanks
 Gary



Re: [squid-users] Squid Log - I need to know TIME 4 Event !!!

2003-03-17 Thread Henrik Nordstrom
mån 2003-03-17 klockan 17.25 skrev O-Zone:
 Hi all,
 there's an analyzer (i'm using SARG) that reports me the TIME (and DATE) where 
 an event (i.e.visiting a page) occour ?

Squid access.log as it is..

Regards
Henrik

-- 
Henrik Nordstrom [EMAIL PROTECTED]
MARA Systems AB, Sweden



Re: [squid-users] X-forwarded-for

2003-03-17 Thread Henrik Nordstrom
mån 2003-03-17 klockan 18.04 skrev Marc Elsen:
 [EMAIL PROTECTED] wrote:
  
  hi, i have the clients, behind them i have squid_A, and behind squid_A i
  have squid_B.
  
  i want that clients IP appear in access.log of squid_B, how i do it?
  
  regards.
 
   Drop back question : is this possible ?
 
   Answer : no

Most things are possible in the world of Open Source, and this certainly
is as it has already been done by others:

http://devel.squid-cache.org/projects.html#follow_xff


Regards
Henrik

-- 
Henrik Nordstrom [EMAIL PROTECTED]
MARA Systems AB, Sweden



Re: [squid-users] Transparent - cisco router

2003-03-17 Thread Emmanuel Duros
Why do not you use WCCP ? It would do the job.


On Fri, 2003-03-14 at 18:09, Terry wrote:
 Hello,
 
 I have a rather simple question, hopefully.  I want to
 do transparent proxy using a cisco router and squid.
 
 My clients use the router as their default gateway.  I
 am going to redirect http traffic from the router to
 my squid box.  If the squid box sits on the same
 subnet and also uses the router as its default
 gateway, will I be creating a 'routing' loop?  Is
 there a way to prevent this...other than putting the
 squid box in a different subnet?
 
 Thank you!
 
 __
 Do you Yahoo!?
 Yahoo! Web Hosting - establish your business online
 http://webhosting.yahoo.com
-- 
Emmanuel Duros  http://www.udcast.com
2455 Route des Dolines BP355  | Tel : +33 (0)4 93 00 16 60
06906 Sophia Antipolis France | Fax : +33 (0)4 93 00 16 61
** Full IP over Broadcast Media **



Re: [squid-users] Transparent - cisco router

2003-03-17 Thread Terry
I dont think I need WCCP.  I got it to work by simply
applying 'ip policy route-map proxy-redirect' to the
other interface that has traffic originating on it.

--- Emmanuel Duros [EMAIL PROTECTED] wrote:
 Why do not you use WCCP ? It would do the job.
 
 
 On Fri, 2003-03-14 at 18:09, Terry wrote:
  Hello,
  
  I have a rather simple question, hopefully.  I
 want to
  do transparent proxy using a cisco router and
 squid.
  
  My clients use the router as their default
 gateway.  I
  am going to redirect http traffic from the router
 to
  my squid box.  If the squid box sits on the same
  subnet and also uses the router as its default
  gateway, will I be creating a 'routing' loop?  Is
  there a way to prevent this...other than putting
 the
  squid box in a different subnet?
  
  Thank you!
  
  __
  Do you Yahoo!?
  Yahoo! Web Hosting - establish your business
 online
  http://webhosting.yahoo.com
 -- 
 Emmanuel Duros 
 http://www.udcast.com
 2455 Route des Dolines BP355  | Tel : +33 (0)4 93 00
 16 60
 06906 Sophia Antipolis France | Fax : +33 (0)4 93 00
 16 61
 ** Full IP over Broadcast Media **
 


=
Terry

__
Do you Yahoo!?
Yahoo! Web Hosting - establish your business online
http://webhosting.yahoo.com


[squid-users] squid and kqueue?

2003-03-17 Thread James Wilkinson
Hi all,
does anyone know the status of Squid's ability to use kqueue on
FreeBSD as of squid2.5s1?

I've examined the commloops project on the squid dev site, but
was unable to cleanly patch squid2.5s1 with the downloadable patch
to enable kqueue support.  Searching for material on the topic
returns documents mostly from '00/'01 and seems inconclusive with
references to a problem with deferred reads.

Any tips or clues?

Thanks!
-- 
James Wilkinson [EMAIL PROTECTED]



[squid-users] Question on multiple caches and recommended ram size.

2003-03-17 Thread Gary Hostetler
I need a clear understanding of multiple caches. Is this desirable if I had 2 
different hard drives to configure squid to use both? Is this done with squid.conf and 
then with squid -Z?

I'm getting ready to order ram -I'm at 256MB- and I can go to either 1 gig or 2 gigs. 
My cache size is set at 25 gigs but in 3 days they have only consumed about a gig. I 
plan on adding more users. 

Finally, my hit rate is about 35%. Is that about normal?

thanks
Gary


Re: [squid-users] squid and kqueue?

2003-03-17 Thread Henrik Nordstrom
James Wilkinson wrote:

 does anyone know the status of Squid's ability to use kqueue on
 FreeBSD as of squid2.5s1?

kqueue is supported in the current development version of Squid only
(what will become Squid-3.0). There has never been any plans to have
kqueue supported in Squid-2.5, and there is no patches adding said
support to Squid-2.5.

 I've examined the commloops project on the squid dev site, but
 was unable to cleanly patch squid2.5s1 with the downloadable patch
 to enable kqueue support.

This is because the patch is for the development version of Squid at the
time, which is significantly different from Squid-2.5.

 Searching for material on the topic returns documents mostly
 from '00/'01 and seems inconclusive with references to a
 problem with deferred reads.

The deferred reads is rumored to be eleminated in the current
development version, which makes life easier for kqueue, epoll and other
kernel event mechanisms.

Regards
Henrik


Re: [squid-users] Question on multiple caches and recommended ram size.

2003-03-17 Thread Gary Hostetler
Thanks,

I think 1 gig of ram will probably suffice. My hit ratio is document hit rate. I was 
not sure where to find the byte rate in cache manager.

Gary



-- Original Message --
From: Henrik Nordstrom [EMAIL PROTECTED]
Date:  Mon, 17 Mar 2003 23:31:45 +0100

Gary Hostetler wrote:

 Is this desirable if I had 2 different hard drives
 to configure squid to use both?

Generally yes.

Two drives can sustain a significantly higher request rate than a single
drive.

 Is this done with squid.conf and then with squid -Z?

yes.

 I'm getting ready to order ram -I'm at 256MB- and I can
 go to either 1 gig or 2 gigs. My cache size is set at 25
 gigs but in 3 days they have only consumed about a gig.
 I plan on adding more users.

Building for more than about 7 days of cache is mostly a waste of
resources.

You should size the amount of drives in relation to the request rate you
need to sustain, and the total size of your cache to around 7 days or as
much as you can afford to spend on memory..

Note: there is a bunch of other issues when you start going above ca
1.5GB of memory if you are using a 32bit CPU.

 Finally, my hit rate is about 35%. Is that about normal?

Byte or document hit rate?

Regards
Henrik



Re: [squid-users] Squid Proxy sizes

2003-03-17 Thread Wei Keong
Hi all,

Personally, I find determining cache servers/size is more of an art...

Is there any mathematical formula to estimate the number of caching server
and cache size required, based on the In-Out traffic (Mbps) and Req/s?

Eg. In traffic:  140 Mbps
Out traffic: 100 Mbps
Req/s:   1500

Thanks,
Wei Keong


On 17 Mar 2003, Henrik Nordstrom wrote:

 mån 2003-03-17 klockan 10.03 skrev Neil Thompson:
  Hi all,
 
  I may be asked shortly to provide web proxy/caching solutions for some
  (for me) rather large Internet connections. 12-15000 people per site and
  the Internet lines are 10-20Mbit in size.

 For the range of 20Mbit I would use a cluster of 3 fairly normal boxes
 with 4 harddrives each (ATA or SCSI). Memory scaled according to cache
 size.

 2 boxes actaually would handle the load fine, and it may even be
 possible to build a single high end box which can handle the load, but
 having 3 smaller boxes gives better performance and increased
 flexibility (you can take one box offline for upgrade/maintenance while
 still maintaining the full service level).

 --
 Henrik Nordstrom [EMAIL PROTECTED]
 MARA Systems AB, Sweden




[squid-users] Need Source Code for squid-NT from 2.3.STABLE5

2003-03-17 Thread Gary Price \(ICT\)
Hi
on Guido Serassio's squid NT page (http://www.serassio.it/SquidNT.htm), he describes 
how to get the source code for his squid NT
2.3.STABLE5, as follows:

 Download the latest Squid 2.3 STABLE 5 tarball, the squid-2.3.STABLE5-NT patch from 
 devel.squid-cache.org
 Apply squid-2.3.STABLE5-NT patch

However, when I click on the patch link he supplies, I get a file that contains the 
following:

This patch is generated from the nt-2_3 branch of s2_3 in squid3
Tue Mar 18 03:10:52 2003 GMT
See http://devel.squid-cache.org/

Patch does not understand this.I assume I need to go to a CVS repository and issue a 
diff command in some way. I would appreciate
someone telling me how to do this.

thanks for your time
Gary Price
Intelligent Compression Technologies




[squid-users] netscape communicator 4.7 problem with squid 2.5

2003-03-17 Thread Raja R
Hi ,
I am getting a illegal operation when opening netscape communicator 4.7 when
set for proxy having squid 2.5 stable 1 .
any pointers ?

raja.



[squid-users] Is it possible?

2003-03-17 Thread Velu
Dear Members  Henrick ,

While accessing the internet from my client machine through a squid server
to any remote server. i want to display the client machine ip rather than
squid server ip.  Is it possible? if yes tell me some good idea. if no how
can i do it in other way. I will expect your reply.
I have linux box which is having 2 ethernet card running in bridge mode

In one card i have connected the Least line cable another one is connectd
in the clinet machine(Nt).
Squid server is Running in Linux Box

I have enabled the Iptables like below

iptables -A PREROUTING -t NAT -p tcp --dport 80 -j REDIRECT --to-ports
3128

I am accessing the internet thro NT box.

When we checked the IP Address of the remote server it is showing the
Linux box ip.
Is there any other way to directly display the Client machine ip to the
remote server.
for checking purpose i have used www.maria.com

it is showing the Linux box ip rather then NT box.

Is there any possiblties available in squid.

Kindly help me in this regard. Awaiting your reply

with regards
velu









Re: [squid-users] Need Source Code for squid-NT from 2.3.STABLE5

2003-03-17 Thread Guido Serassio
Hi,

Il 04.48 18/03/2003 Gary Price \(ICT\) ha scritto:

Hi
on Guido Serassio's squid NT page (http://www.serassio.it/SquidNT.htm), he 
describes how to get the source code for his squid NT
2.3.STABLE5, as follows:

 Download the latest Squid 2.3 STABLE 5 tarball, the 
squid-2.3.STABLE5-NT patch from devel.squid-cache.org
 Apply squid-2.3.STABLE5-NT patch

However, when I click on the patch link he supplies, I get a file that 
contains the following:

This patch is generated from the nt-2_3 branch of s2_3 in squid3
Tue Mar 18 03:10:52 2003 GMT
See http://devel.squid-cache.org/
Patch does not understand this.I assume I need to go to a CVS repository 
and issue a diff command in some way. I would appreciate
someone telling me how to do this.
If You have CVS, simply download with  it the nt-2_3 branch.
But, why You want download an old, no more supported and buggy source ?
Download the 2.5 version instead.
Regards

Guido

thanks for your time
Gary Price
Intelligent Compression Technologies


-
===
Serassio Guido
Via Albenga, 11/4   10134 - Torino - ITALY
E-mail: [EMAIL PROTECTED]
WWW: http://www.serassio.it