Re: [squid-users] Large memory leak with ssl_peek (now partly understood)

2016-08-16 Thread Dan Charlesworth
Hey Steve, Deployed a 3.5.20 build with both of those patches and have noticed a big improvement in memory consumption of squid processes at a couple of splice-heavy sites. Thank you, sir! Dan > On 12 Aug 2016, at 7:05 PM, Steve Hill wrote: > > >>This sounds very similar to Squid b

Re: [squid-users] Squid cpu usage 100% from few days ago !!

2016-08-16 Thread Omid Kosari
Even one ip address with less than 5 requests per second can grow squid cpu usage up to 30% . And 10 requests per second made 100% cpu usage . While there is nothing other than that client goes through squid . The client bandwidth is less than 10Kbps . Isn't it crazy also ? -- View this message

Re: [squid-users] Squid cpu usage 100% from few days ago !!

2016-08-16 Thread Amos Jeffries
On 17/08/2016 5:06 a.m., Alex Rousskov wrote: > On 08/15/2016 02:58 AM, Omid Kosari wrote: > >> Maybe our clients are infected and they are zombies . >> >> Anyone knows some good ways to defend squid . I mean when squid forwards >> these requests it becomes crazy . > > If Squid becomes crazy, it

Re: [squid-users] Checking SSL bump status in http_access

2016-08-16 Thread Amos Jeffries
On 17/08/2016 2:22 a.m., Steve Hill wrote: > > Is there a way of figuring out if the current request is a bumped > request when the http_access ACL is being checked? i.e. can we tell the > difference between a GET request that is inside a bumped tunnel, and an > unencrypted GET request? > In Sq

Re: [squid-users] kid1| WARNING: HTTP: Invalid Response: No object data received for

2016-08-16 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 16.08.2016 22:57, Alex Rousskov пишет: > On 08/15/2016 06:46 AM, Amos Jeffries wrote: >> On 16/08/2016 12:31 a.m., Yuri Voinov wrote: >>> >>> Maybe I'm not very well put. As I understand it, the AKA is the original >>> name, which does not work o

Re: [squid-users] Squid cpu usage 100% from few days ago !!

2016-08-16 Thread Alex Rousskov
On 08/15/2016 02:58 AM, Omid Kosari wrote: > Maybe our clients are infected and they are zombies . > > Anyone knows some good ways to defend squid . I mean when squid forwards > these requests it becomes crazy . If Squid becomes crazy, it is a Squid bug that you should report and help fix. Even

Re: [squid-users] kid1| WARNING: HTTP: Invalid Response: No object data received for

2016-08-16 Thread Alex Rousskov
On 08/15/2016 06:46 AM, Amos Jeffries wrote: > On 16/08/2016 12:31 a.m., Yuri Voinov wrote: >> >> Maybe I'm not very well put. As I understand it, the AKA is the original >> name, which does not work out quite correctly Store ID. >> >> Anyway, what caused this warning? > > That particular mesage m

[squid-users] Checking SSL bump status in http_access

2016-08-16 Thread Steve Hill
Is there a way of figuring out if the current request is a bumped request when the http_access ACL is being checked? i.e. can we tell the difference between a GET request that is inside a bumped tunnel, and an unencrypted GET request? -- - Steve Hill Technical Director Opendium Limit

Re: [squid-users] Squid in Air Planes WiFi system, how should it be used?

2016-08-16 Thread Eliezer Croitoru
Hey Bruno, Sorry it took me so long to respond. How high am I? Depends when on the day you catch me. If I installed couple CentOS and Ubuntu servers I am probably on 1000%++ High. All The Bests, Eliezer Eliezer Croitoru Linux System Administrator Mobile: +972-5-28704261 Email: elie...@ngtec

[squid-users] Linux Youtube video Rate limiting script

2016-08-16 Thread Eliezer Croitoru
I don't remember who have asked me and where is the email so I am posting it, if it's you who asked me about the subject send a private message. The next are a set of scripts to help and "slow down" youtube ie .googlevideo.com domains\servers. https://github.com/elico/squid-yt-log-analyzer Only u

Re: [squid-users] Malformed HTTP on tproxy squid

2016-08-16 Thread Omid Kosari
Squid access.log and wireshark PCAP attached access_(1).log dump2.pcap -- View this message in context: http://squid-web-proxy

[squid-users] Malformed HTTP on tproxy squid

2016-08-16 Thread Omid Kosari
According to my other post http://squid-web-proxy-cache.1019090.n4.nabble.com/Squid-cpu-usage-100-from-few-days-ago-td4678894.html Squid cpu usage becomes 100% when it forwatds some kind of malformed http traffic . Even one ip address with less than 5 requests per second can grow squid cpu usage