Just a reminder people, but you've gone off-topic. The postbank.de
website issue has NOTHING to do with pining
Someone mentioned earlier it's due to the HTTPS cert not having a
complete cert-chain, and that web browsers auto-correct that situation,
but squid does not. So I would say either squid s
On 2/10/2015 7:24 p.m., Mariusvh wrote:
> Hi all. Can you help?
>
> When I use the following lines in my squid.conf it works, but it connects to
> a local proxy server:
>
> cache_peer 10.185.131.46 parent3128 3130 proxy-only default
> cache_peer 10.185.131.13 sibling 3128 3130 proxy-o
Hi all. Can you help?
When I use the following lines in my squid.conf it works, but it connects to
a local proxy server:
cache_peer 10.185.131.46 parent3128 3130 proxy-only default
cache_peer 10.185.131.13 sibling 3128 3130 proxy-only
When I use the following destination proxy server
Hi all. Can you help?
When I use the following lines in my squid.conf it works, but it connects to
a local proxy server:
cache_peer 10.185.131.46 parent3128 3130 proxy-only default
cache_peer 10.185.131.13 sibling 3128 3130 proxy-only
When I use the following destination proxy server
On 2/10/2015 11:18 a.m., David Touzeau wrote:
>
> Dear
>
> I'm using Squid Cache: Version 3.5.9-20150922-r13918 in transparent mode
> with SSL hooked
> In my config, i did not bump any site ( just to pass SSL protocol to
> squid in transparent mode)
>
> I'm trying to connect to https://raj2796.w
On 2/10/2015 8:15 a.m., Jake wrote:
> I have a Squid/Dansguardian proxy server that successfully works when
> the client web browser is manually configured to use the proxy address:port.
>
> What I want to do is configure a transparent proxy server, presuming I
> wouldn't have to manually configur
we wish that somebody can build a good fingerprinting algorithm for pinning
clients
Thank you Alex
--
View this message in context:
http://squid-web-proxy-cache.1019090.n4.nabble.com/after-changed-from-3-4-13-to-3-5-8-sslbump-doesn-t-work-for-the-site-https-banking-postbank-de-tp4673245p4673516
Dear
I'm using Squid Cache: Version 3.5.9-20150922-r13918 in transparent mode
with SSL hooked
In my config, i did not bump any site ( just to pass SSL protocol to
squid in transparent mode)
I'm trying to connect to https://raj2796.wordpress.com
In cache.log
2015/10/02 00:07:05 kid1| Accept
I have a Squid/Dansguardian proxy server that successfully works when
the client web browser is manually configured to use the proxy address:port.
What I want to do is configure a transparent proxy server, presuming I
wouldn't have to manually configure browsers.
My LAN environment diagram:
http:
Em 30/09/15 04:13, Matus UHLAR - fantomas escreveu:
the problem was iirc in caching partial objects
http://wiki.squid-cache.org/Features/PartialResponsesCaching
that problem could be avoided with properly setting range_offset_limit
http://www.squid-cache.org/Doc/config/range_offset_limit/
but t
On 10/01/2015 07:43 AM, Steve Hill wrote:
> The latest adaption response headers are available through the
> %adapt:: headers through an ACL?
>
> The documentation says that adaptation headers are available in the
> notes, but this only appears to be headers set with adaptation_meta,
and with e
On 2/10/2015 12:25 a.m., S.Kirschner wrote:
> I think the easiest way for you is to install squid3 via apt-get install
> squid3.
>
> It isnt the version 3.5.9 but is 3.5.8.
>
On Ubuntu it is 3.3.8 still. One needs to upgrade to Debian Testing
repositories for more up to date software.
sawa;
1)
On 1/10/2015 11:54 p.m., Sebastian Kirschner wrote:
> Hi
>
> I´m using squid (3.5.9) as transparent https proxy with build options (see
> below) and config (see below , I removed some uninteresting things from the
> config like caching).
>
> To get the system more secure I would like to add cr
Hi again,
Thank you for all the information regarding this matter. Anyhow, I must say
that I changed in my message the origin server to 127.0.0.1 just to not make
public the real address of the origin server but the address that was made
public was the real IP of that origin server which was acces
The latest adaption response headers are available through the
%adapt::headers through an ACL?
The documentation says that adaptation headers are available in the
notes, but this only appears to be headers set with adaptation_meta, not
the ICAP response headers. I had also considered using
I already had a plan to write something like that in the past and I had
some time so I wrote this store.log tool:
http://paste.ngtech.co.il/pr3kbbf4q
The tool is written in ruby and what it does is "estimating" what is in
the cache_dir now based on reading the store.log.
Since I have not spen
On 1/10/2015 10:41 p.m., birbird wrote:
> Hi All,
>
>
> I have setup basic authentication for Squid, but I can not get passed from
> browser, just asked to inpu user/password time and time again.
>
>
> I was stuck at, the command
> /usr/lib64/squid/ncsa_auth /etc/squid/squid_passwd
> dose not
On Thu, 2015-10-01 at 13:26 +0200, Job wrote:
> Hello,
>
> by reading the 3.5 Squid verson "Peek and splice" features:
> http://wiki.squid-cache.org/Features/SslPeekAndSplice
>
> i would like to ask you two questions, please:
>
> 1. in this implementations, i have to install the selfmade Certif
01.10.15 17:31, Job пишет:
Thank Yuri!
By opening your png image the accessed domain is visible.
So it is possible to block it in https peek and splice mode?
Because of this occurs in SSL bump mode, inside HTTPS session.
Thank you again!
Francesco
D
I think the easiest way for you is to install squid3 via apt-get install
squid3.
It isnt the version 3.5.9 but is 3.5.8.
Best Regards
Sebastian
--
View this message in context:
http://squid-web-proxy-cache.1019090.n4.nabble.com/Install-squid-problems-tp4673495p4673502.html
Sent from the Squi
Thank Yuri!
By opening your png image the accessed domain is visible.
So it is possible to block it in https peek and splice mode?
Thank you again!
Francesco
Da: squid-users [squid-users-boun...@lists.squid-cache.org] per conto di Yuri
Voinov [yvoi...@gm
01.10.15 17:26, Job пишет:
Hello,
by reading the 3.5 Squid verson "Peek and splice" features:
http://wiki.squid-cache.org/Features/SslPeekAndSplice
i would like to ask you two questions, please:
1. in this implementations, i have to install the selfmade Certification
Authority as for SSL Bu
Hello,
by reading the 3.5 Squid verson "Peek and splice" features:
http://wiki.squid-cache.org/Features/SslPeekAndSplice
i would like to ask you two questions, please:
1. in this implementations, i have to install the selfmade Certification
Authority as for SSL Bump?
2. how can i block domain (
Hi
I´m using squid (3.5.9) as transparent https proxy with build options (see
below) and config (see below , I removed some uninteresting things from the
config like caching).
To get the system more secure I would like to add crl checking (at the moment
static , later maybe dynamic if it's po
Hi All,
I have setup basic authentication for Squid, but I can not get passed from
browser, just asked to inpu user/password time and time again.
I was stuck at, the command
/usr/lib64/squid/ncsa_auth /etc/squid/squid_passwd
dose not give any output. I think it means squid can not get the auth
25 matches
Mail list logo