Re: [squid-users] Unable log log mac address in Server

2017-06-09 Thread Flashdown
Hi Xavier, it is a normal network behavior. The reason is we might believe that we use IP's in the local network. That of course is true, but in the local network the real end to end communication is done from & to MAC address (OSI Layer 2) when a IP-packet (layer 3) leaves the local network th

Re: [squid-users] Squid Version 3.5.20

2017-06-27 Thread Flashdown
nnect method and allowing the url www.google.com/recaptcha Written on my mobile.. Br, Flashdown Am 27. Juni 2017 17:07:19 MESZ schrieb "Cherukuri, Naresh" : >Hi Eliezer, > >We successfully blocked gmail, google images, google drive and rest all >google related. Now we allo

Re: [squid-users] When will Squid 3.5.26 be available on Debian?

2017-06-28 Thread Flashdown
o:squid-users-boun...@lists.squid-cache.org] >> On Behalf Of Enrico Heine >> Sent: Wednesday, June 28, 2017 14:02 >> To: squid-us...@squid-cache.org >> Subject: [squid-users] When will Squid 3.5.26 be available on Debian? >> >> Hello together, >> >>

Re: [squid-users] Squid 3.5 ICAP Problems

2017-11-03 Thread Flashdown
and up messages any more. I believe when I enforce a service restart once in the night, I will never see this issue of slow performance caused by the C-ICAP Module within squid anymore. Best regards, Enrico/Flashdown Am 2017-11-03 12:54, schrieb Eliezer Croitoru: I'm not sure b

Re: [squid-users] 4.0.23 release in Debian

2018-02-05 Thread Flashdown
Well, I've forwarded my old mail just now after subcribing to this list which I did sent directly to luigi and manty because I was unaware of these mailing lists. Thank you Amos! Am 2018-02-05 04:00, schrieb Eliezer Croitoru: It seems they are not even trying to block spam... Eliezer El

Re: [squid-users] Problem with Kerberos ticket keytab

2018-02-05 Thread Flashdown
Delete the Computer Object in Active Directory to clear these spn's up. Am 5. Februar 2018 15:54:26 MEZ schrieb erdosain9 : >Hi to all. > >The squid was working fine, but i made a mistake and... delete the >proxy.keytab. I try to do it again, but make a mistake in the syntax > >wrong syntax (the r

Re: [squid-users] Problem with Kerberos ticket keytab

2018-02-05 Thread Flashdown
setup. Am 5. Februar 2018 16:12:29 MEZ schrieb Flashdown : >Delete the Computer Object in Active Directory to clear these spn's up. > >Am 5. Februar 2018 15:54:26 MEZ schrieb erdosain9 >: >>Hi to all. >> >>The squid was working fine, but i made a mistake and... de

Re: [squid-users] Problem with Kerberos ticket keytab

2018-02-05 Thread Flashdown
object, as your are updating all the SPN's that the Computer Object holds. If you use the Attribut-Editor you may can modify the Attribut servicePrincipalName and delete the wrong one and recreate the keytab afterwards, without deleting the Computer Object at all. Am 2018-02-05 16:39, sc

Re: [squid-users] Problem with Kerberos ticket keytab

2018-02-05 Thread Flashdown
You could also give this parameter of msktutil a try: flush Flushes all principals for the current host or service account from the keytab, and deletes servicePrincipalName from AD. Am 2018-02-05 16:55, schrieb Flashdown: I am answering to fast

Re: [squid-users] Problem with Kerberos ticket keytab

2018-02-05 Thread Flashdown
Also on a specific interval windows will automatically refresh kerberos tickets in the background but when depends on your domain settings and I am unsure about the default interval. Am 5. Februar 2018 17:46:29 MEZ schrieb Enrico Heine : >Only users that can't use the proxy need to do it. > >Am

Re: [squid-users] 4.0.23 release in Debian

2018-02-07 Thread Flashdown
FYI: There is already progress on Squid 4.0.23 over here: https://packages.debian.org/source/experimental/squid BTW: Hope I may get a response this time from anybody over there, then I would package 3.5.27.. Am 2018-02-05 10:21, schrieb Flashdown: Well, I've forwarded my old mail jus

Re: [squid-users] Using CA signed certificate for SSL bump

2018-09-05 Thread Flashdown
Hey, How should that work? That would require an ca to sign your selfsigney ca to be able to issue valid public certs for all websites. If that would be possible, then the whole concept of ssl security would be worth nothing. You cant create valid certificates for such websites. You can only is

Re: [squid-users] Help: squid restarts and squidGuard die

2018-09-17 Thread Flashdown
Just want to add, I use SquidGuard in two High load setups and never ran into issues. I didnt integrate it as url rewrite helper but as external acl helper and it works great with 800 Users.. Am 17. September 2018 20:38:06 MESZ schrieb Amos Jeffries : >On 18/09/18 3:37 AM, Service MV wrote: >>

Re: [squid-users] Help: squid restarts and squidGuard die

2018-09-20 Thread Flashdown
irect the client to the "correct" URL. The Squid http_access and similar *access controls* are the place for access control - hint is in the naming. With external ACL type for anything Squid does not support natively or well. As Flashdown mentioned even calls to SquidGuard etc. can

[squid-users] Squid 3.5.22 Bug when using Mimetype Detection? rep_mime_type

2017-01-02 Thread Flashdown
Hello together, with Squid 3.5.22 I have switched from using a url-regex to Mime Type Detection, which seemed to work nicely until now... :/ OS: Debian Stretch 4.8.0-1-amd64 #1 SMP Debian 4.8.7-1 (2016-11-13) x86_64 GNU/Linux I faced the following Situation: When I globally deny specific m

Re: [squid-users] Squid 3.5.22 Bug when using Mimetype Detection? rep_mime_type

2017-01-09 Thread Flashdown
st regards, Enrico Am 2017-01-03 09:07, schrieb Amos Jeffries: On 2017-01-03 07:33, Flashdown wrote: Hello together, with Squid 3.5.22 I have switched from using a url-regex to Mime Type Detection, which seemed to work nicely until now... :/ The thing to be very wary of with this change is

Re: [squid-users] ssl bump and chrome 58

2017-04-27 Thread Flashdown
Hello together, Suddenly I am facing the same issue when users Chrome has been updated to V58. I am running Squid 3.5.23. This is the reason: https://www.thesslstore.com/blog/security-changes-in-chrome-58/ Short: Common Name Support Removed in Chrome 58 and Squid does not create certs with D

Re: [squid-users] ssl bump and chrome 58

2017-04-27 Thread Flashdown
;<<<<< END Am 2017-04-27 18:16, schrieb Flashdown: Hello together, Suddenly I am facing the same issue when users Chrome has been updated to V58. I am running Squid 3.5.23. This is the reason: https://www.thesslstore.com/blog/security-changes-in-chrome-58/ Short: Common Name Su

Re: [squid-users] ssl bump and chrome 58

2017-04-27 Thread Flashdown
I've tested the registry setting and it worked out. You can copy the below lines in a .reg file and execute it. Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome] "EnableCommonNameFallbackForLocalAnchors"=dword:0001 Best regards, Fla

Re: [squid-users] Chrome 58+: only the subjectAlternativeName extension, not commonName, is used to match the domain name and site certificate

2017-05-18 Thread Flashdown
Dear Eliezer, Please have look into http://bugs.squid-cache.org/show_bug.cgi?id=4711 the patches for this issue are already done. Many thx to Christos Tsantilas! @Amos: I hope you consider adding the patch to Squid 3.5 as well, since for now it just has been added to Squid 4, maybe the reaso

Re: [squid-users] How is Proxy chaining done ?

2020-09-14 Thread Flashdown
Dear Piyush, Here you can find answers: https://wiki.squid-cache.org/ConfigExamples/Reverse/MultipleWebservers BR, Flashdown Am 14. September 2020 09:06:56 MESZ schrieb piyush.g...@orange.com: >Hi All, > >I am looking forward to understand the concept of proxy chaining. > >

Re: [squid-users] [SPAM] Re: [SPAM] [ext] Squid 5.1 memory usage

2021-10-18 Thread Flashdown
Hi, you can use the rebased patch for Squid4 that I have attached to the bug 4526. It works also against 5.1 and 5.2 and I am currently running 5.2 with it and I have not seen any issues yet. Best Regards Enrico Heine Am 18. Oktober 2021 08:01:58 MESZ schrieb Ralf Hildebrandt : >* Steve Hill :

Re: [squid-users] Squid 5.2 unstable in production mode

2021-11-11 Thread Flashdown
Hi David, well I am curious, where did you set the max filedescriptors? Only in the OS configuration? If so, you also need to define it in the squid.conf as well -> http://www.squid-cache.org/Versions/v5/cfgman/max_filedescriptors.html Regarding the memory leak, do you use an adaption servic

[squid-users] Squid 5.6 and 5.9 keep crashing due to signal 6 with status 0

2023-09-14 Thread Flashdown
che.log is attached to this mail. Any idea/help is highly appreciated. Thank you! -- Best regards, Flashdown This email and any files transmitted with it are confidential and intended solely for the use of the individual or entity to whom they are addressed. If you have received this email in er

Re: [squid-users] Squid 5.6 and 5.9 keep crashing due to signal 6 with status 0

2023-09-19 Thread Flashdown
! --- Best regards, Flashdown Am 2023-09-14 16:11, schrieb Alex Rousskov: On 2023-09-14 07:02, Flashdown wrote: Sep 14 08:55:06 vm-myproxy squid[79100]: Squid Parent: squid-2 process 80675 exited due to signal 6 with status 0 1694674498.411  9 **CENSORED_internal_client_IP** TCP_DENIED/407