Re: [squid-users] cache clusters
I checked it already. But didn't find there is a document on my questions.:) On Feb 2, 2008 10:48 PM, Adrian Chadd [EMAIL PROTECTED] wrote: On Sat, Feb 02, 2008, J. Peng wrote: Hello, How to config cache clusters in squid 2.6? ie, the parent/sisters caches for web reverse proxy. Is there any document or howto? thanks. Have you checked out the Squid FAQ and other documentation in the wiki? http://wiki.squid-cache.org/SquidFaq/ Adrian -- - Xenion - http://www.xenion.com.au/ - VPS Hosting - Commercial Squid Support - - $25/pm entry-level VPSes w/ capped bandwidth charges available in WA -
[squid-users] sslReadServer: FD 95: read failure: (104) Connection reset by peer
Dear friends, I have these error frequently in my squid log, that everytime i encounter this error my squid server starts to serve requests super slow. On google search i can find advise that by changing http_port to http_port my_lan_ip:3128 that could solve the problem but i have tried it it doesn't solve the problem. Anyone has any idea what is the problem? Below is the error in log: 2008/02/02 09:06:58| sslReadServer: FD 95: read failure: (104) Connection reset by peer 2008/02/02 09:56:55| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 09:56:55| clientReadRequest: FD 140 Invalid Request 2008/02/02 09:56:55| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 09:56:55| clientReadRequest: FD 140 Invalid Request 2008/02/02 10:00:28| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 10:00:28| clientReadRequest: FD 101 Invalid Request 2008/02/02 10:00:28| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 10:00:28| clientReadRequest: FD 101 Invalid Request 2008/02/02 10:05:46| sslReadServer: FD 95: read failure: (104) Connection reset by peer 2008/02/02 10:22:56| sslReadServer: FD 72: read failure: (104) Connection reset by peer 2008/02/02 10:23:27| sslReadServer: FD 117: read failure: (104) Connection reset by peer 2008/02/02 10:23:33| sslReadServer: FD 71: read failure: (104) Connection reset by peer 2008/02/02 10:26:42| sslReadServer: FD 77: read failure: (104) Connection reset by peer 2008/02/02 10:31:59| sslReadServer: FD 31: read failure: (104) Connection reset by peer 2008/02/02 10:37:05| sslReadServer: FD 44: read failure: (104) Connection reset by peer 2008/02/02 10:38:33| sslReadServer: FD 46: read failure: (104) Connection reset by peer 2008/02/02 10:57:01| sslReadServer: FD 27: read failure: (104) Connection reset by peer 2008/02/02 10:57:01| sslReadServer: FD 81: read failure: (104) Connection reset by peer 2008/02/02 10:57:01| sslReadServer: FD 49: read failure: (104) Connection reset by peer 2008/02/02 11:03:57| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 11:03:57| clientReadRequest: FD 69 Invalid Request 2008/02/02 11:03:57| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 11:03:57| clientReadRequest: FD 69 Invalid Request thanks
[squid-users] problem with virtualy simple HTML page proxying
Hi! I have Squid Cache: Version 2.6.STABLE13 installed on Fedora Core 6 Linux 2.6.18-1.2798.fc6. Squid is configured in very usual manner, internal hosts are only allowed to reach Internet using proxy server, and the rest of squid configuration is left by default. Everything works perfectly, but only one thing DOESN'T work! Users cannot reach one specific HTML page: http://www.nbs.yu/internet/cirilica/scripts/bankeMenjaci/index.html In the squid access.log nothing seems to be wrong: 1201958794.061300 192.168.0.24 TCP_MISS/200 314 GET http://www.nbs.yu/internet/cirilica/scripts/bankeMenjaci/index.html - DIRECT/194.79.41.40 text/html ...but instead of page, users get an empty page from proxy server! Without proxy, the page is getting displayed correctly. I would like to add that's the case only with that particular page on this site (www.nbs.yu) Everything else goes fine. Also, I was able to reproduce this error with other squid servers. At the other side, I would like my users to reach web contents through squid without any exeptions, if possible. So I would like to ask is this problem with squid, this particular webpage, or something else? And how could I solve this problem? -- TIA Zoran Milenkovic, dipl.ing.el. systems network engineer Datatek d.o.o. http://www.datatek.co.yu/
Re: [squid-users] problem with virtualy simple HTML page proxying
Zoran Milenkovic wrote: Hi! I have Squid Cache: Version 2.6.STABLE13 installed on Fedora Core 6 Linux 2.6.18-1.2798.fc6. Squid is configured in very usual manner, internal hosts are only allowed to reach Internet using proxy server, and the rest of squid configuration is left by default. Everything works perfectly, but only one thing DOESN'T work! Users cannot reach one specific HTML page: http://www.nbs.yu/internet/cirilica/scripts/bankeMenjaci/index.html In the squid access.log nothing seems to be wrong: 1201958794.061300 192.168.0.24 TCP_MISS/200 314 GET http://www.nbs.yu/internet/cirilica/scripts/bankeMenjaci/index.html - DIRECT/194.79.41.40 text/html ...but instead of page, users get an empty page from proxy server! Without proxy, the page is getting displayed correctly. I would like to add that's the case only with that particular page on this site (www.nbs.yu) Everything else goes fine. Also, I was able to reproduce this error with other squid servers. At the other side, I would like my users to reach web contents through squid without any exeptions, if possible. So I would like to ask is this problem with squid, this particular webpage, or something else? And how could I solve this problem? I have tested this here (through a squid-3) and seen this behaviour on that page. From the headers it looks like there are at least two servers providing that site. When that page is retrieved directly from Apache it returns a custom 404 page etc, etc. There is also something identifying itself as an OpenCMS/5.0.0 server which returns a set of 404 headers without a page body. It is likely that second result got into your cache somehow. You can temporarily clear the results with a squidclient -m PURGE http://www.nbs.yu/internet/cirilica/scripts/bankeMenjaci/index.html But there is nothing you can do long-term as a visitor until the admin of nbs.yu fixes their CMS. Amos -- Please use Squid 2.6STABLE17+ or 3.0STABLE1+ There are serious security advisories out on all earlier releases.
Re: [squid-users] sslReadServer: FD 95: read failure: (104) Connection reset by peer
yong bong fong wrote: Dear friends, I have these error frequently in my squid log, that everytime i encounter this error my squid server starts to serve requests super slow. On google search i can find advise that by changing http_port to http_port my_lan_ip:3128 that could solve the problem but i have tried it it doesn't solve the problem. Anyone has any idea what is the problem? That would work if its was httpS_port accepting SSL traffic...maybe. Below is the error in log: 2008/02/02 09:06:58| sslReadServer: FD 95: read failure: (104) Connection reset by peer 2008/02/02 09:56:55| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 09:56:55| clientReadRequest: FD 140 Invalid Request 2008/02/02 09:56:55| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 09:56:55| clientReadRequest: FD 140 Invalid Request 2008/02/02 10:00:28| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 10:00:28| clientReadRequest: FD 101 Invalid Request 2008/02/02 10:00:28| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 10:00:28| clientReadRequest: FD 101 Invalid Request 2008/02/02 10:05:46| sslReadServer: FD 95: read failure: (104) Connection reset by peer 2008/02/02 10:22:56| sslReadServer: FD 72: read failure: (104) Connection reset by peer 2008/02/02 10:23:27| sslReadServer: FD 117: read failure: (104) Connection reset by peer 2008/02/02 10:23:33| sslReadServer: FD 71: read failure: (104) Connection reset by peer 2008/02/02 10:26:42| sslReadServer: FD 77: read failure: (104) Connection reset by peer 2008/02/02 10:31:59| sslReadServer: FD 31: read failure: (104) Connection reset by peer 2008/02/02 10:37:05| sslReadServer: FD 44: read failure: (104) Connection reset by peer 2008/02/02 10:38:33| sslReadServer: FD 46: read failure: (104) Connection reset by peer 2008/02/02 10:57:01| sslReadServer: FD 27: read failure: (104) Connection reset by peer 2008/02/02 10:57:01| sslReadServer: FD 81: read failure: (104) Connection reset by peer 2008/02/02 10:57:01| sslReadServer: FD 49: read failure: (104) Connection reset by peer 2008/02/02 11:03:57| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 11:03:57| clientReadRequest: FD 69 Invalid Request 2008/02/02 11:03:57| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 11:03:57| clientReadRequest: FD 69 Invalid Request thanks You neglect to say which squid version and release you are running. Have you tried a recent one? Amos -- Please use Squid 2.6STABLE17+ or 3.0STABLE1+ There are serious security advisories out on all earlier releases.
Re: [squid-users] problem with virtualy simple HTML page proxying
Zoran Milenkovic wrote: Hi! I have Squid Cache: Version 2.6.STABLE13 installed on Fedora Core 6 Linux 2.6.18-1.2798.fc6. Squid is configured in very usual manner, internal hosts are only allowed to reach Internet using proxy server, and the rest of squid configuration is left by default. Everything works perfectly, but only one thing DOESN'T work! Users cannot reach one specific HTML page: http://www.nbs.yu/internet/cirilica/scripts/bankeMenjaci/index.html In the squid access.log nothing seems to be wrong: 1201958794.061300 192.168.0.24 TCP_MISS/200 314 GET http://www.nbs.yu/internet/cirilica/scripts/bankeMenjaci/index.html - DIRECT/194.79.41.40 text/html ...but instead of page, users get an empty page from proxy server! Without proxy, the page is getting displayed correctly. I would like to add that's the case only with that particular page on this site (www.nbs.yu) Everything else goes fine. Also, I was able to reproduce this error with other squid servers. At the other side, I would like my users to reach web contents through squid without any exeptions, if possible. So I would like to ask is this problem with squid, this particular webpage, or something else? And how could I solve this problem? I have tested this here (through a squid-3) and seen this behaviour on that page. From the headers it looks like there are at least two servers providing that site. When that page is retrieved directly from Apache it returns a custom 404 page etc, etc. There is also something identifying itself as an OpenCMS/5.0.0 server which returns a set of 404 headers without a page body. It is likely that second result got into your cache somehow. You can temporarily clear the results with a squidclient -m PURGE http://www.nbs.yu/internet/cirilica/scripts/bankeMenjaci/index.html But there is nothing you can do long-term as a visitor until the admin of nbs.yu fixes their CMS. Amos -- Please use Squid 2.6STABLE17+ or 3.0STABLE1+ There are serious security advisories out on all earlier releases. Dear Amos, Thanks for the quick reply! I will try to contact web admin of the nbs.yu website and describe the problem. OT: Could you please point me out the literature about tools and/or methods you have used to find out what is going on with this website/problem? Of course, if there is something like that and if it's possible. Thanks again! -- TIA Zoran Milenkovic, dipl.ing.el. systems network engineer Datatek d.o.o. http://www.datatek.co.yu/
[squid-users] please help squid 2.6 STABLE18
403 Forbidden The following error occurred: Access denied by access control list. Could not open error file getting this error and if refresh from browser it work please help if any one have any information squid 2.6STABLE18 Never miss a thing. Make Yahoo your home page. http://www.yahoo.com/r/hs
RE: [squid-users] linux bandwidth shaper required
I have limited users to 16KB per user via linux TC or other bandwidth shaping scripts, working fine, But the shaping just shapes the whole bandiwdth including all protocols, thats not the only task I want, If user is downloading at 16KB, even the content in the cache comes very slow, response to Servers ping s get very high like 2000-3000 ms on lan, My requirement is to exclude SQUID cache from bandwidth limit. like if user requests which is in squid's cache, it should not be restricted by bandwidth policy. Regards, SYED JAHANZAIB AA CABLE.NETWORK SERVICES, PAKNOR B.P.O Web : http://www.aacablenet.org / http://www.paknor.com Email : [EMAIL PROTECTED] [MSN Messenger] [EMAIL PROTECTED] Phone : 4638965 Mobile : 0333-3021909 Date: Sat, 2 Feb 2008 08:02:11 -0700 From: [EMAIL PROTECTED] To: squid-users@squid-cache.org Subject: Re: [squid-users] linux bandwidth shaper required This is what you said ankush grover Hi Syed, Try this software called HTB. http://luxik.cdi.cz/~devik/qos/htb/ Regards Ankush Hi Syed, Software is available at this page http://htb-tools.arny.ro/download.php Read the documentation it is easy to configure this document. One more to throw into the Mix: Mastershaper http://www.mastershaper.org/ _ Shed those extra pounds with MSN and The Biggest Loser! http://biggestloser.msn.com/
Re: [squid-users] please help squid 2.6 STABLE18
Have you looked at your squid.conf to see which file it references, where the file is and it's ownership (permissions)? Look at cache_effective_user and see if that user has sufficient access to the said file. On 2/3/08, squid learner [EMAIL PROTECTED] wrote: 403 Forbidden The following error occurred: Access denied by access control list. Could not open error file getting this error and if refresh from browser it work please help if any one have any information squid 2.6STABLE18 Never miss a thing. Make Yahoo your home page. http://www.yahoo.com/r/hs -- Sent from Gmail for mobile | mobile.google.com Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ Oh My God! They killed init! You Bastards! --from a /. post
Re: [squid-users] please help squid 2.6 STABLE18
cache_effective_user squid cache_effective_group squid --- Odhiambo Washington [EMAIL PROTECTED] wrote: Have you looked at your squid.conf to see which file it references, where the file is and it's ownership (permissions)? Look at cache_effective_user and see if that user has sufficient access to the said file. On 2/3/08, squid learner [EMAIL PROTECTED] wrote: 403 Forbidden The following error occurred: Access denied by access control list. Could not open error file getting this error and if refresh from browser it work please help if any one have any information squid 2.6STABLE18 Never miss a thing. Make Yahoo your home page. http://www.yahoo.com/r/hs -- Sent from Gmail for mobile | mobile.google.com Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ Oh My God! They killed init! You Bastards! --from a /. post Never miss a thing. Make Yahoo your home page. http://www.yahoo.com/r/hs
[squid-users] please help squid 2.6 STABLE18
HERE the log 1202071824.630 1108 192.168.2.220 TCP_MISS/200 504 GET http://ts.richmedia.yahoo.com/tr/A=150,AN=Star_Wars_Vader%2fmov_star_wars_vader_1_728x90,AC=,AV=,PB=1/SIG=14cn1pb11,X=1202071915,B=5066939,C=629282.11794001.12261686.462559,D=N,Z=,R=mail,P=vEDzDNG_faxiCc0jR6YbjwAR1EcljEemKWsAAEKt,E=15054,Y=YAHOO,V=1.0/0.7190312430412084/486/ai.0/b.gif - ROUNDROBIN_PARENT/proxy-dsl.nesma.net.sa image/gif 1202071830.517 1069 192.168.2.220 TCP_MISS/200 504 GET http://ts.richmedia.yahoo.com/tr/A=150,AN=Star_Wars_Vader%2fmov_star_wars_vader_1_728x90,AC=,AV=,PB=1/SIG=14cn1pb11,X=1202071915,B=5066939,C=629282.11794001.12261686.462559,D=N,Z=,R=mail,P=vEDzDNG_faxiCc0jR6YbjwAR1EcljEemKWsAAEKt,E=15054,Y=YAHOO,V=1.0/0.7190312430412084/0/ei/501/l0s.0,i:.0/6361/tt/b.gif - ROUNDROBIN_PARENT/proxy-dsl.nesma.net.sa image/gif 1202071830.727475 192.168.2.220 TCP_MISS/000 0 GET http://fe.shortcuts.search.yahoo.com/modules/validate? - ROUNDROBIN_PARENT/proxy-dsl.nesma.net.sa - 1202071832.044 2582 192.168.2.220 TCP_MISS/200 46058 POST http://us.f381.mail.yahoo.com/ym/Compose? - ROUNDROBIN_PARENT/proxy-dsl.nesma.net.sa text/html 1202071832.178117 192.168.2.220 TCP_MISS/403 512 GET http://address.mail.yahoo.com/acjs3/us/Kf1a8^kI_dJICsoo_^DvAw-- - ROUNDROBIN_PARENT/212.62.97.20 text/html 1202071833.349 1076 192.168.2.220 TCP_MISS/200 501 GET http://us.bc.yahoo.com/b? - ROUNDROBIN_PARENT/proxy-dsl.nesma.net.sa image/gif 1202071847.616899 192.168.2.220 TCP_MISS/200 359 GET http://top.cn3721.org/c.asp? - ROUNDROBIN_PARENT/proxy-dsl.nesma.net.sa text/html 1202071848.151529 192.168.2.220 TCP_MISS/302 506 GET http://top.cn3721.org/c.asp? - ROUNDROBIN_PARENT/proxy-dsl.nesma.net.sa text/html 1202071848.155 0 192.168.2.220 TCP_DENIED/403 1403 GET http://dns.rm510.com:53/file.dll - NONE/- text/html 1202071848.228 68 192.168.2.220 TCP_REFRESH_MISS/403 512 GET http://top.cn3721.org/top.dat - ROUNDROBIN_PARENT/212.62.97.20 text/html --- squid learner [EMAIL PROTECTED] wrote: cache_effective_user squid cache_effective_group squid --- Odhiambo Washington [EMAIL PROTECTED] wrote: Have you looked at your squid.conf to see which file it references, where the file is and it's ownership (permissions)? Look at cache_effective_user and see if that user has sufficient access to the said file. On 2/3/08, squid learner [EMAIL PROTECTED] wrote: 403 Forbidden The following error occurred: Access denied by access control list. Could not open error file getting this error and if refresh from browser it work please help if any one have any information squid 2.6STABLE18 Never miss a thing. Make Yahoo your home page. http://www.yahoo.com/r/hs -- Sent from Gmail for mobile | mobile.google.com Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ Oh My God! They killed init! You Bastards! --from a /. post Never miss a thing. Make Yahoo your home page. http://www.yahoo.com/r/hs Never miss a thing. Make Yahoo your home page. http://www.yahoo.com/r/hs
Re: [squid-users] problem with virtualy simple HTML page proxying
Zoran Milenkovic wrote: Hi! I have Squid Cache: Version 2.6.STABLE13 installed on Fedora Core 6 Linux 2.6.18-1.2798.fc6. Squid is configured in very usual manner, internal hosts are only allowed to reach Internet using proxy server, and the rest of squid configuration is left by default. Everything works perfectly, but only one thing DOESN'T work! Users cannot reach one specific HTML page: http://www.nbs.yu/internet/cirilica/scripts/bankeMenjaci/index.html In the squid access.log nothing seems to be wrong: 1201958794.061300 192.168.0.24 TCP_MISS/200 314 GET http://www.nbs.yu/internet/cirilica/scripts/bankeMenjaci/index.html - DIRECT/194.79.41.40 text/html ...but instead of page, users get an empty page from proxy server! Without proxy, the page is getting displayed correctly. I would like to add that's the case only with that particular page on this site (www.nbs.yu) Everything else goes fine. Also, I was able to reproduce this error with other squid servers. At the other side, I would like my users to reach web contents through squid without any exeptions, if possible. So I would like to ask is this problem with squid, this particular webpage, or something else? And how could I solve this problem? I have tested this here (through a squid-3) and seen this behaviour on that page. From the headers it looks like there are at least two servers providing that site. When that page is retrieved directly from Apache it returns a custom 404 page etc, etc. There is also something identifying itself as an OpenCMS/5.0.0 server which returns a set of 404 headers without a page body. It is likely that second result got into your cache somehow. You can temporarily clear the results with a squidclient -m PURGE http://www.nbs.yu/internet/cirilica/scripts/bankeMenjaci/index.html But there is nothing you can do long-term as a visitor until the admin of nbs.yu fixes their CMS. Amos -- Please use Squid 2.6STABLE17+ or 3.0STABLE1+ There are serious security advisories out on all earlier releases. Dear Amos, Thanks for the quick reply! I will try to contact web admin of the nbs.yu website and describe the problem. OT: Could you please point me out the literature about tools and/or methods you have used to find out what is going on with this website/problem? Of course, if there is something like that and if it's possible. Thanks again! I loaded the page in Firefox to see if it was showing. I got the empty page! Then I used squidclient, to view the full HTML transactions in progress. # To see what squid was giving out: squidclient http://www.nbs.yu/.. -- gave out the empty page from my cache so purging the locally cached data i tried again squidclient -m PURGE http://www.nbs.yu/.. squidclient http://www.nbs.yu/.. -- and got a proper page from Apache. # To see what the site was giving squidclient -h www.nbs.yu -p 80 http://www.nbs.yu/.. When it worked first time (saying Apache page) I tried it again to be sure and saw the empty page (saying OpenCms page). Repeating another 4 times always brought up the empty page from OpenCms. The output of squidclient is: Request headers clients sends to server/squid empty line Reponse headers from the server/squid to client empty line page data (if any) Amos
RE: [squid-users] linux bandwidth shaper required
I have limited users to 16KB per user via linux TC or other bandwidth shaping scripts, working fine, But the shaping just shapes the whole bandiwdth including all protocols, thats not the only task I want, If user is downloading at 16KB, even the content in the cache comes very slow, response to Servers ping s get very high like 2000-3000 ms on lan, My requirement is to exclude SQUID cache from bandwidth limit. like if user requests which is in squid's cache, it should not be restricted by bandwidth policy. Omitting client-squid bandwidth from shaping is a setting (if any) on your bandwidth shaper. Not a squid issue. To set bandwidth shaping of requests within squid use delay_pool settings. Amos Date: Sat, 2 Feb 2008 08:02:11 -0700 From: [EMAIL PROTECTED] To: squid-users@squid-cache.org Subject: Re: [squid-users] linux bandwidth shaper required This is what you said ankush grover Hi Syed, Try this software called HTB. http://luxik.cdi.cz/~devik/qos/htb/ Regards Ankush Hi Syed, Software is available at this page http://htb-tools.arny.ro/download.php Read the documentation it is easy to configure this document. One more to throw into the Mix: Mastershaper http://www.mastershaper.org/ _ Shed those extra pounds with MSN and The Biggest Loser! http://biggestloser.msn.com/
Re: [squid-users] please help squid 2.6 STABLE18
cache_effective_user squid cache_effective_group squid Best to leave those to the kernel to handle. Particularly the group one. If they were there by default in the install bundle/package, then the user one should be okay. But if you added them yourself try without, locate all the squid installed files and make sure they are readable/owned by user 'squid' group 'squid'. And that the kernel/OS has system user 'squid' as a member of group 'squid'. Amos --- Odhiambo Washington [EMAIL PROTECTED] wrote: Have you looked at your squid.conf to see which file it references, where the file is and it's ownership (permissions)? Look at cache_effective_user and see if that user has sufficient access to the said file. On 2/3/08, squid learner [EMAIL PROTECTED] wrote: 403 Forbidden The following error occurred: Access denied by access control list. Could not open error file getting this error and if refresh from browser it work please help if any one have any information squid 2.6STABLE18 Never miss a thing. Make Yahoo your home page. http://www.yahoo.com/r/hs -- Sent from Gmail for mobile | mobile.google.com Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ Oh My God! They killed init! You Bastards! --from a /. post Never miss a thing. Make Yahoo your home page. http://www.yahoo.com/r/hs
[squid-users] sslReadServer: FD 95: read failure: (104) Connection reset by peer]
Hi Amos, That https_port doesn't work. As for the squid version i am using squid-2.5.STABLE14-1.RHEL4. Thats seems the only version compatible with Red Hat enterprise 4. I tried the squid 3.0 tarball it gave me too many errors during make install. Anyway, i would prefer to pinpoint the error sslReadServer: FD 95: read failure: (104) Connection reset by peer. I have read from previous post someone suggested could be the internet connection or firewall problem, but i have tested direct connection to internet without proxy, it works so the internet line is good. As for firewall, i have switched it off also, the problem still persist, so i can narrow down it is something within squid. thanks Amos yong bong fong wrote: Dear friends, I have these error frequently in my squid log, that everytime i encounter this error my squid server starts to serve requests super slow. On google search i can find advise that by changing http_port to http_port my_lan_ip:3128 that could solve the problem but i have tried it it doesn't solve the problem. Anyone has any idea what is the problem? That would work if its was httpS_port accepting SSL traffic...maybe. Below is the error in log: 2008/02/02 09:06:58| sslReadServer: FD 95: read failure: (104) Connection reset by peer 2008/02/02 09:56:55| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 09:56:55| clientReadRequest: FD 140 Invalid Request 2008/02/02 09:56:55| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 09:56:55| clientReadRequest: FD 140 Invalid Request 2008/02/02 10:00:28| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 10:00:28| clientReadRequest: FD 101 Invalid Request 2008/02/02 10:00:28| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 10:00:28| clientReadRequest: FD 101 Invalid Request 2008/02/02 10:05:46| sslReadServer: FD 95: read failure: (104) Connection reset by peer 2008/02/02 10:22:56| sslReadServer: FD 72: read failure: (104) Connection reset by peer 2008/02/02 10:23:27| sslReadServer: FD 117: read failure: (104) Connection reset by peer 2008/02/02 10:23:33| sslReadServer: FD 71: read failure: (104) Connection reset by peer 2008/02/02 10:26:42| sslReadServer: FD 77: read failure: (104) Connection reset by peer 2008/02/02 10:31:59| sslReadServer: FD 31: read failure: (104) Connection reset by peer 2008/02/02 10:37:05| sslReadServer: FD 44: read failure: (104) Connection reset by peer 2008/02/02 10:38:33| sslReadServer: FD 46: read failure: (104) Connection reset by peer 2008/02/02 10:57:01| sslReadServer: FD 27: read failure: (104) Connection reset by peer 2008/02/02 10:57:01| sslReadServer: FD 81: read failure: (104) Connection reset by peer 2008/02/02 10:57:01| sslReadServer: FD 49: read failure: (104) Connection reset by peer 2008/02/02 11:03:57| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 11:03:57| clientReadRequest: FD 69 Invalid Request 2008/02/02 11:03:57| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 11:03:57| clientReadRequest: FD 69 Invalid Request thanks You neglect to say which squid version and release you are running. Have you tried a recent one? Amos -- Please use Squid 2.6STABLE17+ or 3.0STABLE1+ There are serious security advisories out on all earlier releases.
Re: [squid-users] sslReadServer: FD 95: read failure: (104) Connection reset by peer
Hi Amos, That https_port doesn't work. As for the squid version i am using squid-2.5.STABLE14-1.RHEL4. Thats seems the only version compatible with Red Hat enterprise 4. I tried the squid 3.0 tarball it gave me too many errors during make install. I believe the FedoraCore package is compatible with certain RedHat releases, and its more up to date. If you can post me a list of those compile errors I would be interested in fixing them. Anyway, i would prefer to pinpoint the error sslReadServer: FD 95: read failure: (104) Connection reset by peer. I have read from previous post someone suggested could be the internet connection or firewall problem, but i have tested direct connection to internet without proxy, it works so the internet line is good. As for firewall, i have switched it off also, the problem still persist, so i can narrow down it is something within squid. thanks Amos It's a little hard to trace problems through the 2.5 codebase. It having been obsolete for so long. I hope you can find a solution somehere. Amos Subject: Re: [squid-users] sslReadServer: FD 95: read failure: (104) Connection reset by peer From: Amos Jeffries [EMAIL PROTECTED] Date: Sun, 03 Feb 2008 23:25:20 +1300 To: yong bong fong [EMAIL PROTECTED] CC: squid-users@squid-cache.org yong bong fong wrote: Dear friends, I have these error frequently in my squid log, that everytime i encounter this error my squid server starts to serve requests super slow. On google search i can find advise that by changing http_port to http_port my_lan_ip:3128 that could solve the problem but i have tried it it doesn't solve the problem. Anyone has any idea what is the problem? That would work if its was httpS_port accepting SSL traffic...maybe. Below is the error in log: 2008/02/02 09:06:58| sslReadServer: FD 95: read failure: (104) Connection reset by peer 2008/02/02 09:56:55| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 09:56:55| clientReadRequest: FD 140 Invalid Request 2008/02/02 09:56:55| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 09:56:55| clientReadRequest: FD 140 Invalid Request 2008/02/02 10:00:28| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 10:00:28| clientReadRequest: FD 101 Invalid Request 2008/02/02 10:00:28| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 10:00:28| clientReadRequest: FD 101 Invalid Request 2008/02/02 10:05:46| sslReadServer: FD 95: read failure: (104) Connection reset by peer 2008/02/02 10:22:56| sslReadServer: FD 72: read failure: (104) Connection reset by peer 2008/02/02 10:23:27| sslReadServer: FD 117: read failure: (104) Connection reset by peer 2008/02/02 10:23:33| sslReadServer: FD 71: read failure: (104) Connection reset by peer 2008/02/02 10:26:42| sslReadServer: FD 77: read failure: (104) Connection reset by peer 2008/02/02 10:31:59| sslReadServer: FD 31: read failure: (104) Connection reset by peer 2008/02/02 10:37:05| sslReadServer: FD 44: read failure: (104) Connection reset by peer 2008/02/02 10:38:33| sslReadServer: FD 46: read failure: (104) Connection reset by peer 2008/02/02 10:57:01| sslReadServer: FD 27: read failure: (104) Connection reset by peer 2008/02/02 10:57:01| sslReadServer: FD 81: read failure: (104) Connection reset by peer 2008/02/02 10:57:01| sslReadServer: FD 49: read failure: (104) Connection reset by peer 2008/02/02 11:03:57| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 11:03:57| clientReadRequest: FD 69 Invalid Request 2008/02/02 11:03:57| parseHttpRequest: Requestheader contains NULL characters 2008/02/02 11:03:57| clientReadRequest: FD 69 Invalid Request thanks You neglect to say which squid version and release you are running. Have you tried a recent one? Amos -- Please use Squid 2.6STABLE17+ or 3.0STABLE1+ There are serious security advisories out on all earlier releases.
Re: [squid-users] Squid3 Win32 binary?
On Tue, Jan 29, 2008 at 4:37 PM, Guido Serassio [EMAIL PROTECTED] wrote: At 08:35 28/01/2008, howard chen wrote: Hi, I have been following from squid homepage to: http://squid-mirror.acmeconsulting.it/download/dl-squid.html Seems that currently there is no squid3 for win32 yet, is it ture? Correct, look here into the 4.2 section: http://www.squid-cache.org/Versions/v3/3.0/squid-3.0.STABLE1-RELEASENOTES.html Maybe that will be available with STABLE2. That's good, thanks! Howard