[squid-users] proxy bypass for one client

2004-07-09 Thread Varun
Hello,
I have a squid proxy server with DSL on Mandrake10 with
eth0 as gateway and eth1 for LAN.
I want one client to get direct connection bypassing the
proxy.
Is it possible ?
Thanks
Varun


RE: [squid-users] proxy bypass for one client

2004-07-09 Thread Elsen Marc

 
 
 Hello,
  I have a squid proxy server with DSL on Mandrake10 with
 eth0 as gateway and eth1 for LAN.
 I want one client to get direct connection bypassing the
 proxy.
 Is it possible ?
 
 That's for the client to decide, by not using
proxy parameters in the browser for example.

M.


Re: [squid-users] Re: gzip

2004-07-09 Thread Jon Kay
   Also Swell Technology claims to have such a patch up for ransom. Does
  anyone know if their patch is for real and if it works as I described
  above?
 
  No idea - never heard of the company. I don't know how much they're
  charging, but rather than purchasing that, you (and others who are
  interested) could instead invest the money in sponsoring a Squid developer
  to implement it in Squid proper.

 They claim the patch works great and they haven't released it yet b/c
 squid 3.0 is in feature freeze.  One of the engineers there told me they
 are going to release it under the GPL once Squid 3.1 begins.

 But they are asking for $400 to gain access to the pre-release patch.

 http://swelltech.com/squidgzip/

 So in theory it already exist and will be apart of Squid 3.1 very soon
 but who knows if these guys are for real.  I was really hoping people on
 this list would know who they were...

I don't think Joe Cooper will mind my saying some of what I know on the
list.

Swell Technologies, in concert with a partner, do, in fact, have a
gzip/deflate content-encoding implementation at an advanced stage.
I'm using it right now for my browsing.  I recommend contacting Joe
for more information.

Note that Swell did, in fact, sponsor a Squid developer to implement
it in Squid and eventually get it into the trunk.  They were kind
enough to hire me to do it.  Although I certainly have a conflict of
interest on commenting on it, I think their ransom system is rather
good for the Squid community, because it creates a market for
expensive Squid developments while spreading out the investment and
risk over several interested parties.  And this was a fairly
complicated change, a little expensive for a single pocket, given the
as-yet weak recovery of the caching market.  It will have many
benefactors, way beyond the community that actually pays for it.  This
kind of ransom system can get widely desired Squid developments in the
field alot faster if well-supported by the community.
--
Jon Kay  pushcache.com - push done right
 Squid consulting / installation





[squid-users] Refesh Caché

2004-07-09 Thread MANUEL CANSECO GARCIA
Hello,

squid not refresh dinamic content. Client Version Internet Explorer 6.02.
Any ideas?
Squid Version SQUID STABLE3
Suse 9.0 



RE: [squid-users] Refesh Caché

2004-07-09 Thread Elsen Marc
 
 
 Hello,
 
 squid not refresh dinamic content. Client Version Internet 

 Wouldn't dynamic content by definiton not be  refreshable ?

 M.

 Explorer 6.02.
 Any ideas?
 Squid Version SQUID STABLE3
 Suse 9.0 
 
 


RE: [squid-users] Re: gzip

2004-07-09 Thread Chris Perreault
In researching for our squid implimentation their name/site came up quite a
few times. They have an extensive website offering a variety of appliance
type solutions plus they've done (are doing) open source projects as well. I
haven't dealt with them first hand, but I'd say they are real.

http://www.squid-cache.org/SPONSORS.txt lists them as a sponser of various
squid projects, and seeing that they are listed right on this
squid-cache.org page, that also lends credibility to them. Another place to
give you peace of mind is the
http://www.squid-cache.org/Support/services.html page, that lists
consultant/developers that you can contact if you are stuck. We took that
route, contacted a few on the list, and ended very happy with the outfit we
chose. What was good to hear was a few minor things had to be fixed or added
(I'm not sure if there's a difference) and the person I was dealing with
said he'd be submitting it to wherever it goes to be added into the official
version. While we had to pay to get a solution, hopefully the next person
does not have to struggle as much as we did.

Chris Perreault

-Original Message-
From: ohenry [mailto:[EMAIL PROTECTED] 
Sent: Thursday, July 08, 2004 10:17 PM
To: Adam Aube
Cc: [EMAIL PROTECTED]
Subject: Re: [squid-users] Re: gzip


  Also Swell Technology claims to have such a patch up for ransom. 
  Does anyone know if their patch is for real and if it works as I 
  described above?
 
 No idea - never heard of the company. I don't know how much they're 
 charging, but rather than purchasing that, you (and others who are
 interested) could instead invest the money in sponsoring a Squid 
 developer to implement it in Squid proper.

They claim the patch works great and they haven't released it yet b/c squid
3.0 is in feature freeze.  One of the engineers there told me they are going
to release it under the GPL once Squid 3.1 begins.

But they are asking for $400 to gain access to the pre-release patch.

http://swelltech.com/squidgzip/

So in theory it already exist and will be apart of Squid 3.1 very soon but
who knows if these guys are for real.  I was really hoping people on this
list would know who they were...




Re: [squid-users] proxy bypass for one client

2004-07-09 Thread Muthukumar

  I have a squid proxy server with DSL on Mandrake10 with
 eth0 as gateway and eth1 for LAN.
 I want one client to get direct connection bypassing the
 proxy.

If squid is running in proxy mode, make your client ( browser ) not use the proxy 
settings with the proxy server on http port.

 How can the client recieve internet access then?

Squid is used for caching the internet contents not for giving the internet access. If 
you try the net with out squid it will not be
cached for further use again.  If you don't have net access, there is no work for 
Squid.

Regards,
Muthukumar.







---
===  It is a Virus Free Mail ===
Checked by AVG anti-virus system (http://www.grisoft.com).
Version: 6.0.716 / Virus Database: 472 - Release Date: 7/5/2004



AW: [squid-users] searching for free squid antivirus solution

2004-07-09 Thread Sebastian Kösters
Good idea, but does not work too :( 

I get this error:

g++  -O2 -Wall `perl -MExtUtils::Embed -e ccopts` -c VirusScanner.cpp
VirusScanner.cpp:30:20: clamav.h: Datei oder Verzeichnis nicht gefunden
VirusScanner.cpp: In member function `void VirusScanner::scan(Socket*,
String, 
   std::basic_stringchar, std::char_traitschar, std::allocatorchar , 
   std::basic_stringchar, std::char_traitschar, std::allocatorchar ,
int, 
   std::basic_stringchar, std::char_traitschar, std::allocatorchar , 
   int)':
VirusScanner.cpp:286: `CL_ARCHIVE' undeclared (first use this function)
VirusScanner.cpp:286: (Each undeclared identifier is reported only once for 
   each function it appears in.)
VirusScanner.cpp:286: `cl_scandesc' undeclared (first use this function)
VirusScanner.cpp:294: `CL_CLEAN' undeclared (first use this function)
VirusScanner.cpp:361: `CL_VIRUS' undeclared (first use this function)
VirusScanner.cpp:402: warning: unused variable `PerlInterpreter*my_perl'
VirusScanner.cpp:418: warning: unused variable `PerlInterpreter*my_perl'
VirusScanner.cpp: In member function `void VirusScanner::scanFile(Socket*, 
   String, std::basic_stringchar, std::char_traitschar,
std::allocatorchar 
   , std::basic_stringchar, std::char_traitschar, std::allocatorchar
, 
   int, std::basic_stringchar, std::char_traitschar, std::allocatorchar
, 
   int)':
VirusScanner.cpp:467: `cl_scanfile' undeclared (first use this function)
VirusScanner.cpp:585: warning: unused variable `PerlInterpreter*my_perl'
VirusScanner.cpp:601: warning: unused variable `PerlInterpreter*my_perl'
make: *** [VirusScanner.o] Fehler 1

Info: DansGuardian-2.7.7-8  with DansGuardian-2.7.7-8-AntiVirus-5.3.patch


regards,
Sebastian 




-Ursprüngliche Nachricht-
Von: Kenneth Oncinian [mailto:[EMAIL PROTECTED] 
Gesendet: Freitag, 9. Juli 2004 02:28
An: Sebastian Kösters
Betreff: Re: [squid-users] searching for free squid antivirus solution

Hi Sebastian,

 i am searching for a free antivirus solution for squid (V 2.0)

   Any other ideas?

DansGuardian with AV patch. you can use clamav since you want a free 
solution.

http://www.harvest.com.br/asp/afn/dg.nsf
http://www.pcxperience.org/dgvirus/

regards,
Kenneth



[squid-users] Problems blocking files for certain sites

2004-07-09 Thread Luis Miguel
Hi, I am using squid + squidguard to block binary downloads 
(exec,cab, etc), work fine, but for certain sites i can download .exe files:

Example:
http://www.0texkax7c6hzuidk.com/?login=brokerid=extlogin=url=mediaid=00300214product=1iso_country=ESaol=0;

I know that this king of download cant be stopped with squidguard, 
because the server reply the file name in the mime header, I have 
looked at all squid acls, and *I think* the only acl valid to block 
this is: rep_mime_type, (acl my_acl rep_mime_type ^application/octet-stream$),
but I cant block all octet-stream dowloads.

Are there any way to do regex based on all replied mime headers or look for filename 
on the replied mime header?

Regards.



Re: [squid-users] searching for free squid antivirus solution

2004-07-09 Thread Tomás Rodriguez Orta
Hi.
I had been to Download the viralator but I don't know if this script work
wth the antivirus ClamAV.
but I see that the DansGuardan.

wath is the better?, I need protected my server for the virus, of internet.

regards TOMAS
 Sebastian:

i am searching for a free antivirus solution for squid (V 2.0)

 I haven't tried it but have heard good reports about clamav [1].
 Perhaps it will suit your purpose.


 Ray



 [1]  http://www.clamav.net/



-- 
Caminante!!!, No hay Camino?
se hace camino al andar.



Re: [squid-users] SO_FAIL

2004-07-09 Thread squid-users
 actuall i had stable1 and it use to work fine.
 i upgrated to stable5, and got this problem

It seems that I have the same or a very similar problem:

No problems using squid-2.5.STABLE4-20040120 and before. Object are written
on disk and logged with SWAPOUT in store.log.

Using squid-2.5.STABLE5-20040609 or squid-2.5.STABLE6-20040709 there is
always an SO_FAIL entry in store.log and no cache objects are written to
disk. Permissions are not the problem. Debugging shows that Squid
calculated the dirno to -1 (see storeSwapOutStart):

2004/07/09 15:36:46| storeSwapOut: http://ta-nea.dolnet.gr/data/D2004/D0709/2el10c.gif
2004/07/09 15:36:46| storeSwapOut: store_status = STORE_PENDING
2004/07/09 15:36:46| storeSwapOut: mem-inmem_lo = 0
2004/07/09 15:36:46| storeSwapOut: mem-inmem_hi = 115992
2004/07/09 15:36:46| storeSwapOut: swapout.queue_offset = 0
2004/07/09 15:36:46| storeSwapOut: lowest_offset = 105568
2004/07/09 15:36:46| storeSwapOut: swapout_size = 115992
2004/07/09 15:36:46| storeSwapOutStart: Begin SwapOut 
'http://ta-nea.dolnet.gr/data/D2004/D0709/2el10c.gif' to dirno -1, fileno 
2004/07/09 15:36:46| storeSwapMetaBuild: 
http://ta-nea.dolnet.gr/data/D2004/D0709/2el10c.gif
2004/07/09 15:36:46| storeCreate: no valid swapdirs for this object

There is only one cache_dir entry in the config file:
cache_dir ufs /home/squid/cache 25000 100 256

The configuration file, configure parameters, compiler and operating system
are exactly the same. As I can't found a solution, I made a rollback to
STABLE4.

Operating System: IRIX 6.5.22
System: SGI Origin 200
Compiler: MIPSpro Compilers: Version 7.41

Heiko

Heiko Schlichting| Freie Universität Berlin
[EMAIL PROTECTED]   | Zentraleinrichtung für Datenverarbeitung (ZEDAT)
Telefon +49 30 838-54327 | Fabeckstraße 32
Telefax +49 30 838454327 | 14195 Berlin


[squid-users] cache peer choice based on acl

2004-07-09 Thread Nuno Miguel Pais Fernandes
Hello,

I'm configuring a proxy with 2 parents like:

cache_peer 127.0.0.1 parent 8080 0 no-query default
cache_peer 127.0.0.2 parent 8080 0 no-query default

I'm trying to send requests to diferent parents based on acl
(checknofilter). If it matches checknofilter it should be sent to
127.0.0.2 and if it doesn't should be sent to 127.0.0.1

My conf has:
acl checknofilter src 192.168.1.0/255.255.255.0
cache_peer_access 127.0.0.2 allow checknofilter
cache_peer_access 127.0.0.2 deny all
cache_peer_access 127.0.0.1 allow all
never_direct allow all

Thanks
Nuno Fernandes

-- 
Nuno Miguel Pais Fernandes [EMAIL PROTECTED]


signature.asc
Description: This is a digitally signed message part


Re: [squid-users] cache peer choice based on acl

2004-07-09 Thread Nuno Miguel Pais Fernandes
I'm sorry for wrong paste of conf...

I'm using ntlm as checknofilter acl.
I've search ML and someone saysthat ntlm with cache_peer_access doens't
work. Is it true?

Thanks
Nuno Fernandes


On Fri, 2004-07-09 at 16:54, Nuno Miguel Pais Fernandes wrote:
 Hello,
 
 I'm configuring a proxy with 2 parents like:
 
 cache_peer 127.0.0.1 parent 8080 0 no-query default
 cache_peer 127.0.0.2 parent 8080 0 no-query default
 
 I'm trying to send requests to diferent parents based on acl
 (checknofilter). If it matches checknofilter it should be sent to
 127.0.0.2 and if it doesn't should be sent to 127.0.0.1
 
 My conf has:
 acl checknofilter src 192.168.1.0/255.255.255.0
 cache_peer_access 127.0.0.2 allow checknofilter
 cache_peer_access 127.0.0.2 deny all
 cache_peer_access 127.0.0.1 allow all
 never_direct allow all
 
 Thanks
 Nuno Fernandes
-- 
Nuno Miguel Pais Fernandes [EMAIL PROTECTED]


signature.asc
Description: This is a digitally signed message part


Re: [squid-users] Problems blocking files for certain sites

2004-07-09 Thread Kashif Ali
try this
acl my_acl rep_mime_type ^application/octet-stream$
^application/x-msdownload$
it will work Insha Allah


 Hi, I am using squid + squidguard to block binary downloads
 (exec,cab, etc), work fine, but for certain sites i can download .exe
 files:

 Example:
 http://www.0texkax7c6hzuidk.com/?login=brokerid=extlogin=url=mediaid=00300214product=1iso_country=ESaol=0;

 I know that this king of download cant be stopped with squidguard,
 because the server reply the file name in the mime header, I have
 looked at all squid acls, and *I think* the only acl valid to block
 this is: rep_mime_type, (acl my_acl rep_mime_type
 ^application/octet-stream$),
 but I cant block all octet-stream dowloads.

 Are there any way to do regex based on all replied mime headers or look
 for filename on the replied mime header?

 Regards.




Re: [squid-users] searching for free squid antivirus solution

2004-07-09 Thread Tomás Rodriguez Orta
I things that don´t you have install the compiler , you should install the
packet gcc-c++, it is in you cd installation.
Today I install the packet tar.gz 2.6.1-13, because the 2.7 it isn´t stable
yet.

Regards TOMAS
- Original Message -
From: Sebastian Kösters [EMAIL PROTECTED]
To: 'Kenneth Oncinian' [EMAIL PROTECTED]
Cc: [EMAIL PROTECTED]
Sent: Friday, July 09, 2004 7:04 AM
Subject: AW: [squid-users] searching for free squid antivirus solution


 Good idea, but does not work too :(

 I get this error:

 g++  -O2 -Wall `perl -MExtUtils::Embed -e ccopts` -c VirusScanner.cpp
 VirusScanner.cpp:30:20: clamav.h: Datei oder Verzeichnis nicht gefunden
 VirusScanner.cpp: In member function `void VirusScanner::scan(Socket*,
 String,
std::basic_stringchar, std::char_traitschar, std::allocatorchar ,
std::basic_stringchar, std::char_traitschar, std::allocatorchar ,
 int,
std::basic_stringchar, std::char_traitschar, std::allocatorchar ,
int)':
 VirusScanner.cpp:286: `CL_ARCHIVE' undeclared (first use this function)
 VirusScanner.cpp:286: (Each undeclared identifier is reported only once
for
each function it appears in.)
 VirusScanner.cpp:286: `cl_scandesc' undeclared (first use this function)
 VirusScanner.cpp:294: `CL_CLEAN' undeclared (first use this function)
 VirusScanner.cpp:361: `CL_VIRUS' undeclared (first use this function)
 VirusScanner.cpp:402: warning: unused variable `PerlInterpreter*my_perl'
 VirusScanner.cpp:418: warning: unused variable `PerlInterpreter*my_perl'
 VirusScanner.cpp: In member function `void VirusScanner::scanFile(Socket*,
String, std::basic_stringchar, std::char_traitschar,
 std::allocatorchar
, std::basic_stringchar, std::char_traitschar, std::allocatorchar
 ,
int, std::basic_stringchar, std::char_traitschar,
std::allocatorchar
 ,
int)':
 VirusScanner.cpp:467: `cl_scanfile' undeclared (first use this function)
 VirusScanner.cpp:585: warning: unused variable `PerlInterpreter*my_perl'
 VirusScanner.cpp:601: warning: unused variable `PerlInterpreter*my_perl'
 make: *** [VirusScanner.o] Fehler 1

 Info: DansGuardian-2.7.7-8  with DansGuardian-2.7.7-8-AntiVirus-5.3.patch


 regards,
 Sebastian




 -Ursprüngliche Nachricht-
 Von: Kenneth Oncinian [mailto:[EMAIL PROTECTED]
 Gesendet: Freitag, 9. Juli 2004 02:28
 An: Sebastian Kösters
 Betreff: Re: [squid-users] searching for free squid antivirus solution

 Hi Sebastian,

  i am searching for a free antivirus solution for squid (V 2.0)

Any other ideas?

 DansGuardian with AV patch. you can use clamav since you want a free
 solution.

 http://www.harvest.com.br/asp/afn/dg.nsf
 http://www.pcxperience.org/dgvirus/

 regards,
 Kenneth





[squid-users] squid + dansguardian

2004-07-09 Thread Tomás Rodriguez Orta
Hello People.

I Have the Dansguardian install and it is run, but the file =
/var/log/Dansguardian/acces.log it is  0, don=B4t have jet anything =
filter.
what change shold I do at the squid.conf, for work toghter to dansguard.

somebody Can help me?.


regards TOMAS