Re: [squid-users] Intercepting BITS_POST

2016-01-09 Thread Saravanan Coimbatore
Hi Amos, MSFT uses a handshake mechanism to sync files between enterprise and Cloud. We use squid with icap plugins to analyze data. The handshake is BITS_POST which is based on HTTP 1.1. When we enabled the icap plugin, the request was not going through. We were getting OTHER_METHOD response.

Re: [squid-users] Intercepting BITS_POST

2016-01-09 Thread Amos Jeffries
On 6/01/2016 2:33 p.m., Saravanan Coimbatore wrote: > All, > > I would like to use Squid Proxy combined with C-ICAP or any other > mechanism to intercept and analyze files uploaded using BITS_POST in > OneDrive for MSFT. Is it possible? What is this "BITS_POST" thing you speak of? Amos

[squid-users] [squid-announce] Squid 3.5.13 is available

2016-01-09 Thread Amos Jeffries
The Squid HTTP Proxy team is very pleased to announce the availability of the Squid-3.5.13 release! This release is a bug fix release resolving issues found in the prior Squid releases and hardening security. Please note the TLS feature backport is an exceptional situation. The Squid Projec

[squid-users] [squid-announce] Squid-4.0.4 beta is available

2016-01-09 Thread Amos Jeffries
The Squid HTTP Proxy team is very pleased to announce the availability of the Squid-4.0.4 release! This release is a beta release resolving some issues found in the prior Squid releases. The major changes to be aware of: * Several regression bugs fixed - Bug 4393: compile fails on OS X - Bu

Re: [squid-users] Running configuration

2016-01-09 Thread Amos Jeffries
On 10/01/2016 2:29 p.m., Roman Gelfand wrote: > I accidentally deleted the squid.conf while squid has been running. The > squid is still running. Is there a way to retrieve a running configuration? > If you can remember the cachemgr passwrd: squidclient mgr:config NP: there may be some out

Re: [squid-users] squid 4.0.3 - sslflags not working?

2016-01-09 Thread Amos Jeffries
On 9/01/2016 10:06 a.m., Florian Stamer wrote: > Hi, > > testet the latest Snapshot and the 4.0.4 > > Still the same. Thanks for the quick feedback. Not sure what to look at this point, the context creation logic in Squid all seems to be checking the right flags. Hopefully Christos might have a

Re: [squid-users] ssl_ctrd aborts in 3.5.13

2016-01-09 Thread Amos Jeffries
On 10/01/2016 8:42 a.m., Eliezer Croitoru wrote: > On 09/01/2016 04:03, xxiao8 wrote: >> Hi, >> >> I'm seeing the below errors, 25 bytes are the string of "'Initialization >> SSL db..." itself, anyone else experienced this? >> >> This is a typical https-transparent case. > > > Was 3.5.13 release

Re: [squid-users] Questions about tcp_outgoing_address

2016-01-09 Thread Amos Jeffries
On 9/01/2016 4:54 p.m., Verónica Ovando wrote: > Hi! > > I have a some specific questions about the directive > /tcp_outgoing_address/. I need to know if it could works for my deployment: > > My Squid 34.8 runs over Debian Jessie. I have a multiwan environment > with dual internet connection. >

Re: [squid-users] ssl-bump and accel

2016-01-09 Thread Amos Jeffries
On 9/01/2016 7:48 a.m., Nir Krakowski wrote: > This is what needs to be done to get it to work in squid >3.5 in function > ClientRequestContext::hostHeaderIpVerify(const ipcache_addrs* ia, const > Dns::LookupDetails &dns): > Hell NO clientConn is the state data about the TCP connection the m

Re: [squid-users] Digest LDAP authentication

2016-01-09 Thread Amos Jeffries
On 9/01/2016 3:50 a.m., Olivier Desport wrote: > Hello, > > I'm trying to implement digest LDAP authentication with digest_ldap_auth > on Squid 3.4. > > When I try to connect with command line, It succeeds : > > echo '"":""' | /usr/lib/squid3/digest_ldap_auth -b > ou= -u uid -A l -W /etc/digestr

[squid-users] Running configuration

2016-01-09 Thread Roman Gelfand
I accidentally deleted the squid.conf while squid has been running. The squid is still running. Is there a way to retrieve a running configuration? ___ squid-users mailing list squid-users@lists.squid-cache.org http://lists.squid-cache.org/listinfo/squi

Re: [squid-users] ssl_ctrd aborts in 3.5.13

2016-01-09 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 10.01.16 1:42, Eliezer Croitoru пишет: > On 09/01/2016 04:03, xxiao8 wrote: >> Hi, >> >> I'm seeing the below errors, 25 bytes are the string of "'Initialization >> SSL db..." itself, anyone else experienced this? >> >> This is a typical https-tr

Re: [squid-users] ssl_ctrd aborts in 3.5.13

2016-01-09 Thread Eliezer Croitoru
On 09/01/2016 04:03, xxiao8 wrote: Hi, I'm seeing the below errors, 25 bytes are the string of "'Initialization SSL db..." itself, anyone else experienced this? This is a typical https-transparent case. Was 3.5.13 release announced somewhere?? I do not see any mailing list mail about it.

Re: [squid-users] URL Rewrite for https via Squidguard

2016-01-09 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 10.01.16 1:36, Marcus Kool пишет: > > > On 01/09/2016 09:49 AM, Darren wrote: >> Hi >> >> Thanks Marcus >> >> I have been hacking my own branch of Squidguard so I can add support for the SNI (I hope) >> >> How would I get the peek SNI output to t

Re: [squid-users] URL Rewrite for https via Squidguard

2016-01-09 Thread Marcus Kool
On 01/09/2016 09:49 AM, Darren wrote: Hi Thanks Marcus I have been hacking my own branch of Squidguard so I can add support for the SNI (I hope) How would I get the peek SNI output to the url_rewriter? using url_rewrite_extras I am a bit of a peek new comer. Sounds like there is some

Re: [squid-users] URL Rewrite for https via Squidguard

2016-01-09 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 09.01.16 15:45, Marcus Kool пишет: > > > On 01/09/2016 05:07 AM, Darren wrote: >> Hi >> >> I am trying to hack squidguard to allow me to redirect users attempts to connect to blocked https enabled sites. >> >> Some sites are allowed and the bulk

Re: [squid-users] URL Rewrite for https via Squidguard

2016-01-09 Thread Darren
Hi Thanks Marcus I have been hacking my own branch of Squidguard so I can add support for the SNI (I hope) How would I get the peek SNI output to the url_rewriter? I am a bit of a peek new comer. Sounds like there is some hope and a possible way forward. regards Darren B. Sent from Ma

Re: [squid-users] URL Rewrite for https via Squidguard

2016-01-09 Thread Marcus Kool
On 01/09/2016 05:07 AM, Darren wrote: Hi I am trying to hack squidguard to allow me to redirect users attempts to connect to blocked https enabled sites. Some sites are allowed and the bulk are not. Currently I can see the Connect details being handed to SG for processing and if I change th