[squid-users] proxy bypass for one client
Hello, I have a squid proxy server with DSL on Mandrake10 with eth0 as gateway and eth1 for LAN. I want one client to get direct connection bypassing the proxy. Is it possible ? Thanks Varun
RE: [squid-users] proxy bypass for one client
Hello, I have a squid proxy server with DSL on Mandrake10 with eth0 as gateway and eth1 for LAN. I want one client to get direct connection bypassing the proxy. Is it possible ? That's for the client to decide, by not using proxy parameters in the browser for example. M.
Re: [squid-users] Re: gzip
Also Swell Technology claims to have such a patch up for ransom. Does anyone know if their patch is for real and if it works as I described above? No idea - never heard of the company. I don't know how much they're charging, but rather than purchasing that, you (and others who are interested) could instead invest the money in sponsoring a Squid developer to implement it in Squid proper. They claim the patch works great and they haven't released it yet b/c squid 3.0 is in feature freeze. One of the engineers there told me they are going to release it under the GPL once Squid 3.1 begins. But they are asking for $400 to gain access to the pre-release patch. http://swelltech.com/squidgzip/ So in theory it already exist and will be apart of Squid 3.1 very soon but who knows if these guys are for real. I was really hoping people on this list would know who they were... I don't think Joe Cooper will mind my saying some of what I know on the list. Swell Technologies, in concert with a partner, do, in fact, have a gzip/deflate content-encoding implementation at an advanced stage. I'm using it right now for my browsing. I recommend contacting Joe for more information. Note that Swell did, in fact, sponsor a Squid developer to implement it in Squid and eventually get it into the trunk. They were kind enough to hire me to do it. Although I certainly have a conflict of interest on commenting on it, I think their ransom system is rather good for the Squid community, because it creates a market for expensive Squid developments while spreading out the investment and risk over several interested parties. And this was a fairly complicated change, a little expensive for a single pocket, given the as-yet weak recovery of the caching market. It will have many benefactors, way beyond the community that actually pays for it. This kind of ransom system can get widely desired Squid developments in the field alot faster if well-supported by the community. -- Jon Kay pushcache.com - push done right Squid consulting / installation
[squid-users] Refesh Caché
Hello, squid not refresh dinamic content. Client Version Internet Explorer 6.02. Any ideas? Squid Version SQUID STABLE3 Suse 9.0
RE: [squid-users] Refesh Caché
Hello, squid not refresh dinamic content. Client Version Internet Wouldn't dynamic content by definiton not be refreshable ? M. Explorer 6.02. Any ideas? Squid Version SQUID STABLE3 Suse 9.0
RE: [squid-users] Re: gzip
In researching for our squid implimentation their name/site came up quite a few times. They have an extensive website offering a variety of appliance type solutions plus they've done (are doing) open source projects as well. I haven't dealt with them first hand, but I'd say they are real. http://www.squid-cache.org/SPONSORS.txt lists them as a sponser of various squid projects, and seeing that they are listed right on this squid-cache.org page, that also lends credibility to them. Another place to give you peace of mind is the http://www.squid-cache.org/Support/services.html page, that lists consultant/developers that you can contact if you are stuck. We took that route, contacted a few on the list, and ended very happy with the outfit we chose. What was good to hear was a few minor things had to be fixed or added (I'm not sure if there's a difference) and the person I was dealing with said he'd be submitting it to wherever it goes to be added into the official version. While we had to pay to get a solution, hopefully the next person does not have to struggle as much as we did. Chris Perreault -Original Message- From: ohenry [mailto:[EMAIL PROTECTED] Sent: Thursday, July 08, 2004 10:17 PM To: Adam Aube Cc: [EMAIL PROTECTED] Subject: Re: [squid-users] Re: gzip Also Swell Technology claims to have such a patch up for ransom. Does anyone know if their patch is for real and if it works as I described above? No idea - never heard of the company. I don't know how much they're charging, but rather than purchasing that, you (and others who are interested) could instead invest the money in sponsoring a Squid developer to implement it in Squid proper. They claim the patch works great and they haven't released it yet b/c squid 3.0 is in feature freeze. One of the engineers there told me they are going to release it under the GPL once Squid 3.1 begins. But they are asking for $400 to gain access to the pre-release patch. http://swelltech.com/squidgzip/ So in theory it already exist and will be apart of Squid 3.1 very soon but who knows if these guys are for real. I was really hoping people on this list would know who they were...
Re: [squid-users] proxy bypass for one client
I have a squid proxy server with DSL on Mandrake10 with eth0 as gateway and eth1 for LAN. I want one client to get direct connection bypassing the proxy. If squid is running in proxy mode, make your client ( browser ) not use the proxy settings with the proxy server on http port. How can the client recieve internet access then? Squid is used for caching the internet contents not for giving the internet access. If you try the net with out squid it will not be cached for further use again. If you don't have net access, there is no work for Squid. Regards, Muthukumar. --- === It is a Virus Free Mail === Checked by AVG anti-virus system (http://www.grisoft.com). Version: 6.0.716 / Virus Database: 472 - Release Date: 7/5/2004
AW: [squid-users] searching for free squid antivirus solution
Good idea, but does not work too :( I get this error: g++ -O2 -Wall `perl -MExtUtils::Embed -e ccopts` -c VirusScanner.cpp VirusScanner.cpp:30:20: clamav.h: Datei oder Verzeichnis nicht gefunden VirusScanner.cpp: In member function `void VirusScanner::scan(Socket*, String, std::basic_stringchar, std::char_traitschar, std::allocatorchar , std::basic_stringchar, std::char_traitschar, std::allocatorchar , int, std::basic_stringchar, std::char_traitschar, std::allocatorchar , int)': VirusScanner.cpp:286: `CL_ARCHIVE' undeclared (first use this function) VirusScanner.cpp:286: (Each undeclared identifier is reported only once for each function it appears in.) VirusScanner.cpp:286: `cl_scandesc' undeclared (first use this function) VirusScanner.cpp:294: `CL_CLEAN' undeclared (first use this function) VirusScanner.cpp:361: `CL_VIRUS' undeclared (first use this function) VirusScanner.cpp:402: warning: unused variable `PerlInterpreter*my_perl' VirusScanner.cpp:418: warning: unused variable `PerlInterpreter*my_perl' VirusScanner.cpp: In member function `void VirusScanner::scanFile(Socket*, String, std::basic_stringchar, std::char_traitschar, std::allocatorchar , std::basic_stringchar, std::char_traitschar, std::allocatorchar , int, std::basic_stringchar, std::char_traitschar, std::allocatorchar , int)': VirusScanner.cpp:467: `cl_scanfile' undeclared (first use this function) VirusScanner.cpp:585: warning: unused variable `PerlInterpreter*my_perl' VirusScanner.cpp:601: warning: unused variable `PerlInterpreter*my_perl' make: *** [VirusScanner.o] Fehler 1 Info: DansGuardian-2.7.7-8 with DansGuardian-2.7.7-8-AntiVirus-5.3.patch regards, Sebastian -Ursprüngliche Nachricht- Von: Kenneth Oncinian [mailto:[EMAIL PROTECTED] Gesendet: Freitag, 9. Juli 2004 02:28 An: Sebastian Kösters Betreff: Re: [squid-users] searching for free squid antivirus solution Hi Sebastian, i am searching for a free antivirus solution for squid (V 2.0) Any other ideas? DansGuardian with AV patch. you can use clamav since you want a free solution. http://www.harvest.com.br/asp/afn/dg.nsf http://www.pcxperience.org/dgvirus/ regards, Kenneth
[squid-users] Problems blocking files for certain sites
Hi, I am using squid + squidguard to block binary downloads (exec,cab, etc), work fine, but for certain sites i can download .exe files: Example: http://www.0texkax7c6hzuidk.com/?login=brokerid=extlogin=url=mediaid=00300214product=1iso_country=ESaol=0; I know that this king of download cant be stopped with squidguard, because the server reply the file name in the mime header, I have looked at all squid acls, and *I think* the only acl valid to block this is: rep_mime_type, (acl my_acl rep_mime_type ^application/octet-stream$), but I cant block all octet-stream dowloads. Are there any way to do regex based on all replied mime headers or look for filename on the replied mime header? Regards.
Re: [squid-users] searching for free squid antivirus solution
Hi. I had been to Download the viralator but I don't know if this script work wth the antivirus ClamAV. but I see that the DansGuardan. wath is the better?, I need protected my server for the virus, of internet. regards TOMAS Sebastian: i am searching for a free antivirus solution for squid (V 2.0) I haven't tried it but have heard good reports about clamav [1]. Perhaps it will suit your purpose. Ray [1] http://www.clamav.net/ -- Caminante!!!, No hay Camino? se hace camino al andar.
Re: [squid-users] SO_FAIL
actuall i had stable1 and it use to work fine. i upgrated to stable5, and got this problem It seems that I have the same or a very similar problem: No problems using squid-2.5.STABLE4-20040120 and before. Object are written on disk and logged with SWAPOUT in store.log. Using squid-2.5.STABLE5-20040609 or squid-2.5.STABLE6-20040709 there is always an SO_FAIL entry in store.log and no cache objects are written to disk. Permissions are not the problem. Debugging shows that Squid calculated the dirno to -1 (see storeSwapOutStart): 2004/07/09 15:36:46| storeSwapOut: http://ta-nea.dolnet.gr/data/D2004/D0709/2el10c.gif 2004/07/09 15:36:46| storeSwapOut: store_status = STORE_PENDING 2004/07/09 15:36:46| storeSwapOut: mem-inmem_lo = 0 2004/07/09 15:36:46| storeSwapOut: mem-inmem_hi = 115992 2004/07/09 15:36:46| storeSwapOut: swapout.queue_offset = 0 2004/07/09 15:36:46| storeSwapOut: lowest_offset = 105568 2004/07/09 15:36:46| storeSwapOut: swapout_size = 115992 2004/07/09 15:36:46| storeSwapOutStart: Begin SwapOut 'http://ta-nea.dolnet.gr/data/D2004/D0709/2el10c.gif' to dirno -1, fileno 2004/07/09 15:36:46| storeSwapMetaBuild: http://ta-nea.dolnet.gr/data/D2004/D0709/2el10c.gif 2004/07/09 15:36:46| storeCreate: no valid swapdirs for this object There is only one cache_dir entry in the config file: cache_dir ufs /home/squid/cache 25000 100 256 The configuration file, configure parameters, compiler and operating system are exactly the same. As I can't found a solution, I made a rollback to STABLE4. Operating System: IRIX 6.5.22 System: SGI Origin 200 Compiler: MIPSpro Compilers: Version 7.41 Heiko Heiko Schlichting| Freie Universität Berlin [EMAIL PROTECTED] | Zentraleinrichtung für Datenverarbeitung (ZEDAT) Telefon +49 30 838-54327 | Fabeckstraße 32 Telefax +49 30 838454327 | 14195 Berlin
[squid-users] cache peer choice based on acl
Hello, I'm configuring a proxy with 2 parents like: cache_peer 127.0.0.1 parent 8080 0 no-query default cache_peer 127.0.0.2 parent 8080 0 no-query default I'm trying to send requests to diferent parents based on acl (checknofilter). If it matches checknofilter it should be sent to 127.0.0.2 and if it doesn't should be sent to 127.0.0.1 My conf has: acl checknofilter src 192.168.1.0/255.255.255.0 cache_peer_access 127.0.0.2 allow checknofilter cache_peer_access 127.0.0.2 deny all cache_peer_access 127.0.0.1 allow all never_direct allow all Thanks Nuno Fernandes -- Nuno Miguel Pais Fernandes [EMAIL PROTECTED] signature.asc Description: This is a digitally signed message part
Re: [squid-users] cache peer choice based on acl
I'm sorry for wrong paste of conf... I'm using ntlm as checknofilter acl. I've search ML and someone saysthat ntlm with cache_peer_access doens't work. Is it true? Thanks Nuno Fernandes On Fri, 2004-07-09 at 16:54, Nuno Miguel Pais Fernandes wrote: Hello, I'm configuring a proxy with 2 parents like: cache_peer 127.0.0.1 parent 8080 0 no-query default cache_peer 127.0.0.2 parent 8080 0 no-query default I'm trying to send requests to diferent parents based on acl (checknofilter). If it matches checknofilter it should be sent to 127.0.0.2 and if it doesn't should be sent to 127.0.0.1 My conf has: acl checknofilter src 192.168.1.0/255.255.255.0 cache_peer_access 127.0.0.2 allow checknofilter cache_peer_access 127.0.0.2 deny all cache_peer_access 127.0.0.1 allow all never_direct allow all Thanks Nuno Fernandes -- Nuno Miguel Pais Fernandes [EMAIL PROTECTED] signature.asc Description: This is a digitally signed message part
Re: [squid-users] Problems blocking files for certain sites
try this acl my_acl rep_mime_type ^application/octet-stream$ ^application/x-msdownload$ it will work Insha Allah Hi, I am using squid + squidguard to block binary downloads (exec,cab, etc), work fine, but for certain sites i can download .exe files: Example: http://www.0texkax7c6hzuidk.com/?login=brokerid=extlogin=url=mediaid=00300214product=1iso_country=ESaol=0; I know that this king of download cant be stopped with squidguard, because the server reply the file name in the mime header, I have looked at all squid acls, and *I think* the only acl valid to block this is: rep_mime_type, (acl my_acl rep_mime_type ^application/octet-stream$), but I cant block all octet-stream dowloads. Are there any way to do regex based on all replied mime headers or look for filename on the replied mime header? Regards.
Re: [squid-users] searching for free squid antivirus solution
I things that don´t you have install the compiler , you should install the packet gcc-c++, it is in you cd installation. Today I install the packet tar.gz 2.6.1-13, because the 2.7 it isn´t stable yet. Regards TOMAS - Original Message - From: Sebastian Kösters [EMAIL PROTECTED] To: 'Kenneth Oncinian' [EMAIL PROTECTED] Cc: [EMAIL PROTECTED] Sent: Friday, July 09, 2004 7:04 AM Subject: AW: [squid-users] searching for free squid antivirus solution Good idea, but does not work too :( I get this error: g++ -O2 -Wall `perl -MExtUtils::Embed -e ccopts` -c VirusScanner.cpp VirusScanner.cpp:30:20: clamav.h: Datei oder Verzeichnis nicht gefunden VirusScanner.cpp: In member function `void VirusScanner::scan(Socket*, String, std::basic_stringchar, std::char_traitschar, std::allocatorchar , std::basic_stringchar, std::char_traitschar, std::allocatorchar , int, std::basic_stringchar, std::char_traitschar, std::allocatorchar , int)': VirusScanner.cpp:286: `CL_ARCHIVE' undeclared (first use this function) VirusScanner.cpp:286: (Each undeclared identifier is reported only once for each function it appears in.) VirusScanner.cpp:286: `cl_scandesc' undeclared (first use this function) VirusScanner.cpp:294: `CL_CLEAN' undeclared (first use this function) VirusScanner.cpp:361: `CL_VIRUS' undeclared (first use this function) VirusScanner.cpp:402: warning: unused variable `PerlInterpreter*my_perl' VirusScanner.cpp:418: warning: unused variable `PerlInterpreter*my_perl' VirusScanner.cpp: In member function `void VirusScanner::scanFile(Socket*, String, std::basic_stringchar, std::char_traitschar, std::allocatorchar , std::basic_stringchar, std::char_traitschar, std::allocatorchar , int, std::basic_stringchar, std::char_traitschar, std::allocatorchar , int)': VirusScanner.cpp:467: `cl_scanfile' undeclared (first use this function) VirusScanner.cpp:585: warning: unused variable `PerlInterpreter*my_perl' VirusScanner.cpp:601: warning: unused variable `PerlInterpreter*my_perl' make: *** [VirusScanner.o] Fehler 1 Info: DansGuardian-2.7.7-8 with DansGuardian-2.7.7-8-AntiVirus-5.3.patch regards, Sebastian -Ursprüngliche Nachricht- Von: Kenneth Oncinian [mailto:[EMAIL PROTECTED] Gesendet: Freitag, 9. Juli 2004 02:28 An: Sebastian Kösters Betreff: Re: [squid-users] searching for free squid antivirus solution Hi Sebastian, i am searching for a free antivirus solution for squid (V 2.0) Any other ideas? DansGuardian with AV patch. you can use clamav since you want a free solution. http://www.harvest.com.br/asp/afn/dg.nsf http://www.pcxperience.org/dgvirus/ regards, Kenneth
[squid-users] squid + dansguardian
Hello People. I Have the Dansguardian install and it is run, but the file = /var/log/Dansguardian/acces.log it is 0, don=B4t have jet anything = filter. what change shold I do at the squid.conf, for work toghter to dansguard. somebody Can help me?. regards TOMAS