[squid-users] Trusted CA Certificate with ssl_bump

2016-11-15 Thread Sergio Belkin
in advance! -- -- Sergio Belkin LPIC-2 Certified - http://www.lpi.org ___ squid-users mailing list squid-users@lists.squid-cache.org http://lists.squid-cache.org/listinfo/squid-users

Re: [squid-users] Problems with acltype "dst"

2016-10-26 Thread Sergio Belkin
Nevermind, shame of me :) I had a typo 2016-10-26 11:57 GMT-03:00 Sergio Belkin <seb...@gmail.com>: > Hi, > > I've found that sometimes acl dst is ignored. > > I've found a workaround, that is adding the domain name corresponding to a > given Ip address to a sep

[squid-users] Problems with acltype "dst"

2016-10-26 Thread Sergio Belkin
l) Thanks in advance! -- -- Sergio Belkin LPIC-2 Certified - http://www.lpi.org ___ squid-users mailing list squid-users@lists.squid-cache.org http://lists.squid-cache.org/listinfo/squid-users

[squid-users] How does squid know the url of https?

2016-09-25 Thread Sergio Belkin
I've read http://wiki.squid-cache.org/Features/SslBump But I don't understand exactly how does squid to know the url. Does squid a decryption is the client request? Thanks in advance! -- -- Sergio Belkin LPIC-2 Certified - http://www.lpi.org

Re: [squid-users] DENIED and ALLOWED at once?

2016-08-23 Thread Sergio Belkin
2016-08-19 17:22 GMT-03:00 Antony Stone <antony.st...@squid.open.source.it>: > On Friday 19 August 2016 at 20:41:11, Jok Thuau wrote: > > > On Fri, Aug 19, 2016 at 9:33 AM, Sergio Belkin <seb...@gmail.com> wrote: > > > /var/log/squid/access.log > > > 192

[squid-users] DENIED and ALLOWED at once?

2016-08-19 Thread Sergio Belkin
i (/cgi-bin/|\?) 0 0% 0 refresh_pattern . 0 20% 4320 url_rewrite_program /usr/sbin/ufdbgclient –l /var/ufdbguard/logs url_rewrite_children 64 access_log daemon:/var/log/squid/access.log combined logformat combined %>a %ui %un [%tl] "%rm %ru HTTP/%rv"

Re: [squid-users] Authenticacion with Active Directory fails

2016-07-19 Thread Sergio Belkin
2016-07-15 12:11 GMT-03:00 Sergio Belkin <seb...@gmail.com>: > > 2016-07-15 6:31 GMT-03:00 Amos Jeffries <squ...@treenet.co.nz>: > >> On 15/07/2016 4:07 a.m., Sergio Belkin wrote: >> > Hi, >> > >> > Using squid squid-3.5.19-1.el7.centos.

Re: [squid-users] Authenticacion with Active Directory fails

2016-07-15 Thread Sergio Belkin
2016-07-15 6:31 GMT-03:00 Amos Jeffries <squ...@treenet.co.nz>: > On 15/07/2016 4:07 a.m., Sergio Belkin wrote: > > Hi, > > > > Using squid squid-3.5.19-1.el7.centos.x86_64, > > > > I obtain a kerberos ticket but I get the following when trying to use

[squid-users] Authenticacion with Active Directory fails

2016-07-14 Thread Sergio Belkin
/proxy@EXAMPLE.LOCAL 2 HTTP/proxy@EXAMPLE.LOCAL 2 HTTP/proxy@EXAMPLE.LOCAL End of output, Please could you help me? Am I doing something wrong? Thanks in advance! -- -- Sergio Belkin LPIC-2 Certified - http://www.lpi.org ___ squid-users mailin

[squid-users] Somewhat-OT: e2guardian

2016-06-22 Thread Sergio Belkin
Hi, I wonder if anyone is using e2guardian. If so, I'd like to hear experiences. I used dans guardian some years ago Thanks in advance! -- -- Sergio Belkin LPIC-2 Certified - http://www.lpi.org ___ squid-users mailing list squid-users@lists.squid

Re: [squid-users] Somewhat OT: Content Filter with https

2016-06-08 Thread Sergio Belkin
2016-06-08 19:07 GMT-03:00 Marcus Kool <marcus.k...@urlfilterdb.com>: > > > On 06/08/2016 05:54 PM, Sergio Belkin wrote: > >> >> - Not need of interception. is that possible? >> >> It depends. If you support smartphones, you most likely n

Re: [squid-users] Somewhat OT: Content Filter with https

2016-06-08 Thread Sergio Belkin
2016-06-08 17:37 GMT-03:00 Marcus Kool <marcus.k...@urlfilterdb.com>: > > > On 06/08/2016 05:05 PM, Sergio Belkin wrote: > >> Hi, >> >> I've been using a few years ago squid+dansguardian. But nowadays, DG is >> not maintained anymore. I know that exist

[squid-users] Somewhat OT: Content Filter with https

2016-06-08 Thread Sergio Belkin
What do you recommend me? Thanks in advance! -- -- Sergio Belkin LPIC-2 Certified - http://www.lpi.org ___ squid-users mailing list squid-users@lists.squid-cache.org http://lists.squid-cache.org/listinfo/squid-users

[squid-users] Browser circunvents acl's blocking https (intercept mode)

2016-04-16 Thread Sergio Belkin
miento http_access allow localnet http_access allow localhost http_access deny all http_port 3128 http_port 3127 intercept https_port 8080 intercept ssl-bump generate-host-certificates=on dynamic_cert_mem_cache_size=4MB cert=/home/proxy/ssl_cert/example.com.cert key=/home/proxy/ssl_cert/example.com.priva