Re: [squid-users] Is Squid can shutdown unused idle redirector's children?

2015-02-13 Thread Yuri Voinov
I am ready to sponsor the development of such a patch - but only as a basic redirector's functional and subject to the inclusion in the upstream. 13.02.15 6:34, Amos Jeffries пишет: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 13/02/2015 8:54 a.m., Yuri Voinov wrote: So simple. I want

Re: [squid-users] benefits of usingext_kerberos_ldap_group_aclinstead of ext_ldap_group_acl

2015-02-13 Thread Simon Stäheli
On 12.02.2015, at 17:58, Amos Jeffries squ...@treenet.co.nz wrote: On 13/02/2015 5:41 a.m., Simon Stäheli wrote: hmh, HAVE_KRB5 seems not to be set in include/autoconf.h What is the correct way to provide squid the path to the kerberos header files? ./configure —help doesn’t show a

Re: [squid-users] Is Squid can shutdown unused idle redirector's children?

2015-02-13 Thread Yuri Voinov
Amos, I understand the idea of the current implementation. I read the manual no one time. I only want one thing - let the administrator to decide how to adjust his system to him. Not through patches. By means of parameters. Squid runs on different OS'es, and it is logical to have a flexible

Re: [squid-users] logfileHandleWrite: daemon:/var/logs/access.log: error writing ((32) Broken pipe)

2015-02-13 Thread Antony Stone
On Friday 13 Feb 2015 at 09:12, Antony Stone wrote: On Friday 13 Feb 2015 at 03:53, Priya Agarwal wrote: These are the output: root@t4240qds:~# /usr/sbin/squid ls -al /var/logs/access.log Thanks, but I asked for the output of ls -al /var/logs/access.log There is no squid

Re: [squid-users] logfileHandleWrite: daemon:/var/logs/access.log: error writing ((32) Broken pipe)

2015-02-13 Thread Priya Agarwal
So sorry. In squid.conf I had done cache_effective_user to nobody and set permissions of /var and /usr to nobody. So those are the permissions. root@t4240qds:/var/logs# ls -al /var/logs/access.log ls: cannot access /var/logs/access.log: No such file or directory root@t4240qds:/var/logs# ls -ld

Re: [squid-users] logfileHandleWrite: daemon:/var/logs/access.log: error writing ((32) Broken pipe)

2015-02-13 Thread Antony Stone
On Friday 13 Feb 2015 at 11:06, Priya Agarwal wrote: So sorry. In squid.conf I had done cache_effective_user to nobody and set permissions of /var and /usr to nobody. So those are the permissions. Are you saying that /var is owned by 'nobody'? That sounds like a problem for the system to me.

Re: [squid-users] logfileHandleWrite: daemon:/var/logs/access.log: error writing ((32) Broken pipe)

2015-02-13 Thread Priya Agarwal
Then It is unable to write cache.log: Here is the output: root@t4240qds:~# /usr/sbin/squid -k parse 2015/02/13 12:27:14| Startup: Initializing Authentication Schemes ... 2015/02/13 12:27:14| Startup: Initialized Authentication Scheme 'basic' 2015/02/13 12:27:14| Startup: Initialized

Re: [squid-users] Portal Splash Pages example on squid 3.3.13

2015-02-13 Thread amitinfo2k
Thanks a lot I can see the spalsh screen now but, session expiry is little confusing may be some rule i messed up with will play around it to understand it. thanks again -- View this message in context:

Re: [squid-users] intercept squid 3.5.1, http://mail.ru

2015-02-13 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Dmitry, you need to pass mail.ru attachments servers as dst no bump ACL's to work. In my configuration I use following workaround: squid.conf: # Only ip-based dst acl! acl dst_nobump dst /usr/local/squid/etc/dst.nobump # SSL bump rules

Re: [squid-users] requested url could not be retrieved/tweak the way it resolves dns

2015-02-13 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Claudio, what is your /etc/resolv.conf on squid cache host contents? 13.02.15 18:20, Claudio Mendes пишет: hi, i was wondering if there is a way to allow web browser use google search for url input which dns can't resolve just like if there was

[squid-users] intercept squid 3.5.1, http://mail.ru

2015-02-13 Thread Dima Ermakov
Good day! I have a problem with squid proxy in intercept ssl_bump mode. If I want to attach big file (25MB) to my e-mail message on https://mail.ru web site, I have error Can not upload file. Into access.log I have errors: TCP_MISS_ABORTED/000 My squid configuration, access.log, cache.log in

Re: [squid-users] Kerberos authentication problem - squid 3.4.11

2015-02-13 Thread Ludovit Koren
Markus Moeller hua...@moeller.plus.com writes: It could be the new AD server is setup to be backward compatible meaning it use RC4 despite being able to use AES. I suggest you crate an additional keytab entry for RC4. How did you create the keytab ? It was created with ktpass

Re: [squid-users] intercept squid 3.5.1, http://mail.ru

2015-02-13 Thread Dima Ermakov
Thank you for your help, but your solution doesn't work on my server. I have same error, but other ip addresses of uploadXXX.mail.ru servers. Now I use: acl mail_ru dstdomain .mail.ru ssl_bump none mail_ru Good day! On 13 February 2015 at 21:37, Yuri Voinov yvoi...@gmail.com wrote: -BEGIN

[squid-users] requested url could not be retrieved/tweak the way it resolves dns

2015-02-13 Thread Claudio Mendes
hi, i was wondering if there is a way to allow web browser use google search for url input which dns can't resolve just like if there was no proxy setup (  example get this https://www.google.com/search?q=example.com when inputing example.com ) instead of getting this: The requested URL could

Re: [squid-users] intercept squid 3.5.1, http://mail.ru

2015-02-13 Thread Dima Ermakov
I think, that it's not good solution too, but uploadXXX.files.mail.ru has about 100 servers. Now i write small script on python, that creates a file with ip addresses of uploadXXX.files.mail.ru. Script and list of ip addresses in attachment. On 13 February 2015 at 22:32, Yuri Voinov