com/websafety-va/9.0/websafety-hyperv.zip> or
even deploy directly on Microsoft
Azure<https://azuremarketplace.microsoft.com/en-us/marketplace/apps/diladele.websafety>
and Amazon AWS<https://aws.amazon.com/marketplace/pp/prodview-ixvbzugrltcqq>.
Hope you will find this useful
com/websafety-va/9.0/websafety-hyperv.zip> or
even deploy directly on Microsoft
Azure<https://azuremarketplace.microsoft.com/en-us/marketplace/apps/diladele.websafety>
and Amazon AWS<https://aws.amazon.com/marketplace/pp/prodview-ixvbzugrltcqq>.
Hope you will find this useful
(rebuilt
from sources in Debian)
11.04.2024 13:30, Rafael Akchurin пишет:
Hello everyone,
Online repository with latest Squid 6.9
why not 6.10?
___
squid-users mailing list
squid-users@lists.squid-cache.org
https://lists.squid-cache.org/listinfo/squid
-
https://docs.diladele.com/administrator_guide_stable/active_directory_extra/redundancy/haproxy_proxy_protocol.html
And yes we do *not* use computer account, we use *user* account instead.
See the reasoning in the tutorial.
Best regards,
Rafael Akchurin
Diladele B.V.
-Original Message
s you specifically desire to
use some haproxy's features for l7 loadbalancing.
Best regards,
Rafael Akchurin
Diladele B.V.
-Original Message-
From: squid-users On Behalf Of
Klaus Brandl
Sent: Friday, July 24, 2020 10:45 AM
To: squid-users@lists.squid-cache.org
Subject: Re: [s
te that older repo of squid412.diladele.com
will be taken down today (due to sslbump issues with Chrome fixed in Squid
4.13).
Best regards,
Rafael Akchurin
Diladele B.V.
--
The same Squid 4.13 will be part of upcoming Web Safety 7.5 planned for release
in November, this version has more improv
will find this useful.
Best regards,
Rafael Akchurin
Diladele B.V.
--
The same Squid 4.13 will be part of upcoming Web Safety 7.6 planned for release
in June, 2021. This version has the ability to use any header value set by
Squid for selecting of web filtering policies in ICAP server as well
Hello everyone,
After years of postponing we were finally able to build and pack the Squid 4
for Microsoft Windows.
Sorry it took a lot more time and efforts than anticipated. The already
existing version 4.15 is also being packed.
I will update once again when it is available.
The MSI can be d
uid51.diladele.com/ubuntu/ focal main" \
> /etc/apt/sources.list.d/squid51.diladele.com.list
# and install
apt-get update && apt-get install -y \
squid-common \
squid-openssl \
squidclient \
libecap3 libecap3-dev
Hope you will find this useful.
Best regards,
Rafael
uid52.diladele.com/ubuntu/ focal main" \
> /etc/apt/sources.list.d/squid52.diladele.com.list
# and install
apt-get update && apt-get install -y \
squid-common \
squid-openssl \
squidclient \
libecap3 libecap3-dev
Hope you will find this useful.
Best regards,
Rafael
Be sure to also check the actual squid.exe is running - not just the service
wrapper, you might be facing the
https://github.com/diladele/squid-windows/issues/101 bug (4.14 does not work on
older processors)
Best regards,
Rafael
-Original Message-
From: squid-users On Behalf Of Amos
Hello Hg,
One way we do it is at
https://docs.diladele.com/howtos/build_squid_on_ubuntu_20/repository.html
Best regards,
Rafael
From: squid-users On Behalf Of Hg Mi
Sent: Thursday, January 20, 2022 6:40 AM
To: squid-users@lists.squid-cache.org
Subject: Re: [squid-users] How to install squid 5
e.com/ubuntu/ focal main" \
> /etc/apt/sources.list.d/squid55.diladele.com.list
# and install
apt-get update && apt-get install -y \
squid-common \
squid-openssl \
squidclient \
libecap3 libecap3-dev
Hope you will find this useful.
Best regards,
Rafael Akchurin
Hello Eliezer,
We use it all the time -
https://docs.diladele.com/administrator_guide_stable/active_directory/index.html
Not sure if this satisfies your requirements though. But it seems to be very
stable.
Best regards,
Rafael
-Original Message-
From: squid-users On Behalf Of
ngte
Hello K,
We use https://docs.diladele.com/tutorials/mikrotik_transparent_squid/index.html
Best regards,
Rafael
Op 9 aug. 2022 om 21:29 heeft M K het volgende
geschreven:
Hello,
I have a setup like this one:
| Client | => | Router | => Internet
||
: ngtech1...@gmail.com<mailto:ngtech1...@gmail.com>
Web: https://ngtech.co.il/
My-Tube: https://tube.ngtech.co.il/
From: squid-users
mailto:squid-users-boun...@lists.squid-cache.org>>
On Behalf Of Rafael Akchurin
Sent: Tuesday, 9 August 2022 23:54
To: M K mailto:mohammed.khal...@gmail.com
e.com/ubuntu/ focal main" \
> /etc/apt/sources.list.d/squid57.diladele.com.list
# and install
apt-get update && apt-get install -y \
squid-common \
squid-openssl \
squidclient \
libecap3 libecap3-dev
Hope you will find this useful.
Best regards,
Rafael Akchurin
o at https://webproxy.diladele.com/docs/network/secure_proxy/browsers/
Best regards,
Rafael Akchurin
Diladele B.V.
-Original Message-
From: squid-users On Behalf Of
Grant Taylor
Sent: Thursday, October 20, 2022 2:39 AM
To: squid-users@lists.squid-cache.org
Subject: Re: [squid-users] FW: Encrypted bro
Hello Alex,
We have something like you seem to be in need of -
https://docs.diladele.com/administrator_guide_stable/traffic_monitoring/reports.html
But these reports are not Squid analyzer :( sorry.
Best regards,
Rafael
From: squid-users On Behalf Of Alex
Kimble
Sent: Thursday, November 17,
Also it might have been related to recent Microsoft Updates.
The following article summarizes our issues with Kerberos (note we use a
special user in AD with keytab, not joining of proxy into the domain).
https://docs.diladele.com/faq/squid/authentication/event_14_kerberos_key_distribution_cente
Hello Robert,
May be this will be of any help – this is how we compile the eCAP for Squid -
https://github.com/diladele/websafety/blob/master/core.ubuntu20/03_clamav.sh
If you need to compile the Squid too – also look at
https://github.com/diladele/squid-ubuntu
Best regards,
Rafael
From: squid
Hello Alex,
We use our own reporter like in
https://docs.diladele.com/administrator_guide_stable/traffic_monitoring/reports.html
Disclosure – it requires a license key ☹.
Best regards,
Rafael
From: squid-users On Behalf Of Alex
Kimble
Sent: Monday, November 28, 2022 2:37 PM
To: squid-users@li
Hello everyone,
May I ask for your experiences with the latest update of ClamAV with eCAP
adapter enabled. Running Squid 5.7 on Ubuntu 20.04.
Starting from today (01-March-2023) the following crash stops Squid process.
#0 0x7fab13a44ff0 in cli_bm_scanbuff () from
/lib/x86_64-linux-gnu/libc
Hello Eliezer,
Please be sure to clean up the mimicked cert storage of Squid after changing
the Root CA for sslbump (if you use one).
Best regards,
Rafael
Diladele B.V.
-Original Message-
From: squid-users On Behalf Of
ngtech1...@gmail.com
Sent: Wednesday, June 28, 2023 6:03 PM
To: sq
M authentication was indeed removed from the
codebase (see below).
May I ask if the NTLM scheme is not needed at all now and we should continue
using only Negotiate scheme (letting it handle the NTLM as usual)?
Best regards,
Rafael Akchurin
Diladele B.V.
In 5.0 the AuthReg.cc was
/**
* Initializ
quid executable.
Linkers are allowed to drop modules that they think are unused. We will need to
find a solution to that problem.
Alex.
> On Thu, Jul 13, 2023 at 1:38 PM Rafael Akchurin
> mailto:rafael.akchu...@diladele.com>> wrote:
>
> Good day everyone,
>
(policy based routing)
Hope you will find it useful.
Best regards,
Rafael Akchurin
Diladele B.V.
___
squid-users mailing list
squid-users@lists.squid-cache.org
http://lists.squid-cache.org/listinfo/squid-users
Helo Fendando,
One way to do that is to use policy-based-routing on your gateway.
This can be easily done with for example Microtik (see
https://docs.diladele.com/tutorials/mikrotik_transparent_squid/index.html)
But also with native say Debian (we only have somewhat outdated tutorial with
Debia
uid65.diladele.com/ubuntu/ jammy main" \
> /etc/apt/sources.list.d/squid65.diladele.com.list
# and install
apt-get update && apt-get install -y \
squid-common \
squid-openssl \
squidclient \
libecap3 libecap3-dev
Hope you will find this useful.
Best regards,
Rafael
please say so.
See https://docs.diladele.com/tutorials/policy_based_routing_squid/index.html
Best regards,
Rafael Akchurin
Diladele B.V.
___
squid-users mailing list
squid-users@lists.squid-cache.org
http://lists.squid-cache.org/listinfo/squid-users
the second one for separate
Squid that intercepts traffic re-routed from the router using
Policy-Based-Routing.
The tutorials are working, I test it with every release of our ICAP web filter.
Best regards,
Rafael Akchurin
Diladele B.V.
-Original Message-
From: squid-users
No unfortunately nothing like this is in our lab for FreeBSD - but default
Squid package in pfSense runs transparently without issues I have heard (or
with other issues than you have).
Best regards,
Rafael Akchurin
Diladele B.V.
-Original Message-
From: setuid [mailto:set...@gmail.com
Thats strange.
How is your network configured? Your rules indicate you have 2 nics but you
later say you have one..
Best regards,
Rafael Akchurin
> Op 7 feb. 2018 om 23:31 heeft setuid het volgende
> geschreven:
>
>> On 02/07/2018 04:38 PM, Rafael Akchurin wrote:
>&g
elcome at supp...@diladele.com. Next version
will include dynamic real-time page categorization using machine learning
algorithms. You can join our community to get early access to next development
builds at https://www.diladele.com/community.html .
Thanks to all of you for m
Hello Antonio,
Sorry no pfsense tutorials for now, but these two are *proved* to be working
just fine.
https://docs.diladele.com/tutorials/policy_based_routing_squid/index.html
https://docs.diladele.com/tutorials/mikrotik_transparent_squid/index.html
Hope it helps.
Best regards,
Rafael
Greetings all,
I am trying to find the best (easiest, least interfering) solution for the
following problem.
Our custom ICAP server writes various information about ICAP transaction (user
name, policy ip, detection module, timings, words triggered detection, etc)
into the record database. This
Hello Roberto,
When Squid is "slow" like users complain first thing to check is always the DNS
settings.
Also sometimes switching to "IPv4 DNS resolve first" helps.
Look for "squidclient mgr:idns" and "dns_v4_first on" on Squid wiki.
Hope others ha
early access to next development builds
at https://www.diladele.com/community.html .
Thanks to all of you for making this possible!
Best regards,
Rafael Akchurin
Diladele B.V.
___
squid-users mailing list
squid-users@lists.squid-cache.org
http://lists
Greetings to everyone,
I have the following deployment:
- Several Squid nodes configured with "http_port 3128
require-proxy-header"
- One haproxy what relays TCP connections to nodes
- squidclient that is run on each node manually
Browsers pointing to haproxy are corre
share your thoughts and ideas on YouTube filtering module at
supp...@diladele.com.
Do you think it is helpful or at all needed?
Best regards,
Rafael Akchurin
Diladele B.V.
https://www.diladele.com
<>___
squid-users mailing list
squid-users@
from this configuration.
Best regards,
Rafael Akchurin
Diladele B.V.
--
Please take a look at https://www.diladele.com - ICAP web filtering plugin for
Squid proxy.
From: Rafael Akchurin
Sent: Saturday, April 14, 2018 10:14 AM
To: squid-users (squid-users@lists.squid-cache.org)
Subject: squidclient
Hello Amos, Scott,
Will try building now. Shall be possible by the end of next week I hope.
Best regards,
Rafael Akchurin
> Op 28 jul. 2018 om 07:23 heeft Amos Jeffries het
> volgende geschreven:
>
>> On 28/07/18 08:48, Kumpf, Scott wrote:
>> Greetings,
>>
>&g
We are waiting on it. Sorry summer time :)
Best regards,
Rafael Akchurin
> Op 3 aug. 2018 om 21:06 heeft Kumpf, Scott het volgende
> geschreven:
>
> Greetings,
>
> Checking in to see how the new Squid for Windows build is coming along, is
> there an update? Is ther
specifying different allow/deny
videos/categories/channels per different group of proxy users. So be sure to
get version 6.3.
Best regards,
Rafael Akchurin
Diladele B.V.
https://www.diladele.com
-Original Message-
From: squid-users [mailto:squid-users-boun...@lists.squid-cache.org] On
Thanks to all of you for making this possible!
Best regards,
Rafael Akchurin
Diladele B.V.
___
squid-users mailing list
squid-users@lists.squid-cache.org
http://lists.squid-cache.org/listinfo/squid-users
t the *MSI installer only* can also be reported to
supp...@diladele.com<mailto:supp...@diladele.com> .
Best regards,
Rafael Akchurin
Diladele B.V.
https://www.diladele.com
___
squid-users mailing list
squid-users@lists.squid-cache.org
http://lists
will find this helpful. Note that older repo of squid42.diladele.com
will be taken down in two weeks.
Best regards,
Rafael Akchurin
Diladele B.V.
P.S. Here are simple instructions how to use the repo. For more information see
readme at https://github.com/diladele/squid-ubuntu .
# add diladele
Hello Uchenna,
May be this policy based routing with Mikrotik tutorial will be of any use
See https://docs.diladele.com/tutorials/mikrotik_transparent_squid/index.html
Best regards,
Rafael Akchurin
Diladele B.V.
From: squid-users On Behalf Of
Uchenna Nebedum
Sent: Friday, 19 October 2018 18
Yes you can use any ICAP/eCAP server you like, just adjust the docs as required
and that is it.
From: Uchenna Nebedum
Sent: Friday, 19 October 2018 20:17
To: Rafael Akchurin
Cc: squid-users@lists.squid-cache.org
Subject: Re: [squid-users] ERROR: NAT/TPROXY lookup failed to locate original
IPs
will find this helpful. Note that older repo of squid43.diladele.com
will be taken down in two weeks.
Best regards,
Rafael Akchurin
Diladele B.V.
P.S. Here are simple instructions how to use the repo. For more information see
readme at https://github.com/diladele/squid-ubuntu .
# add diladele
Hello Samuel,
Yes will make the Docker when 7.0 is in beta stage, now we need to polish it a
little.
Added issue at https://github.com/diladele/websafety-issues/issues/1030
Best regards,
Rafael Akchurin
Diladele B.V.
From: squid-users On Behalf Of S
Irlapati
Sent: Wednesday, 31 October 2018
Hello Jose,
Latest Squid is already available in Debian unstable, no need to use Ubuntu
recompilation.
Best regards,
Rafael Akchurin
> Op 1 nov. 2018 om 21:08 heeft José J. Rodriguez
> het volgende geschreven:
>
> Rafael Akchurin wrote:
>> Greeting all,
>> The onlin
/ubuntu16, hopefully
might be helpful for someone. Unfortunately no plans to publish online repo for
the DEBs for now (use squid44.diladele.com if you are ok with going to Ubuntu
18).
Best regards,
Rafael Akchurin
Diladele B.V.
--
Web Filter deployed in Microsoft Azure? Surely possible, see
have patches/improvements! At
https://github.com/diladele/squid-windows
Best regards,
Rafael Akchurin
Diladele B.V.
-Original Message-
From: squid-users On Behalf Of Amos
Jeffries
Sent: Monday, 17 December 2018 02:37
To: squid-users@lists.squid-cache.org
Subject: Re: [squid-users] Errors
s to all of you for making this possible!
Best regards,
Rafael Akchurin
Diladele B.V.
___
squid-users mailing list
squid-users@lists.squid-cache.org
http://lists.squid-cache.org/listinfo/squid-users
,
Rafael Akchurin
Diladele B.V.
-Original Message-
From: squid-users On Behalf Of Amos
Jeffries
Sent: Wednesday, 9 January 2019 13:25
To: squid-users@lists.squid-cache.org
Subject: Re: [squid-users] can't access https://www.finanzamt.bayern.de/ with
sslbump (other sites works well)
On 9/
Hello Amos, Reinhard,
Interestingly enough this error does not popup when building Squid on 64-bit
Cygwin.
Might be some 32-bit installation glitch?
Best regards,
Rafael Akchurin
Diladele B.V.
-Original Message-
From: squid-users On Behalf Of Amos
Jeffries
Sent: Sunday, 10 February
As far as I know the internal FD limit for Windows build is around 3K - might
be being existed and thus unexpected behavior raising its ugly head..
-Original Message-
From: squid-users On Behalf Of Van
Order, Drew (US - Hermitage)
Sent: Sunday, 24 February 2019 14:40
To: elie...@ngtech.
will find this helpful. Note that older repo of squid44.diladele.com
will be taken down in one year.
Best regards,
Rafael Akchurin
Diladele B.V.
P.S. Here are simple instructions how to use the repo. For more information see
readme at https://github.com/diladele/squid-ubuntu .
# add diladele
@ngtech.co.il
-Original Message-
From: Van Order, Drew (US - Hermitage)
Sent: Wednesday, February 27, 2019 05:51
To: Eliezer Croitoru ; Rafael Akchurin
Cc: 'Amos Jeffries' ; squid-users@lists.squid-cache.org
Subject: RE: [squid-users] Squid for Windows Repeatedly Crash
Hello Alex,
Please take a look at how we recompile Squid 4.6 for Ubuntu 18.
It compiles and runs nicely without errors.
See https://docs.diladele.com/howtos/build_squid_4_on_ubuntu/index.html
Best regards,
Rafael Akchurin
Diladele B.V.
-Original Message-
From: squid-users On Behalf
Hello Felipe,
We have something like this in our ICAP server.
See
https://docs.diladele.com/administrator_guide_7_0/web_filter/policies/blocking_file_downloads.html
Best regards,
Rafael Akchurin
Diladele B.V.
From: squid-users On Behalf Of
Felipe Arturo Polanco
Sent: Friday, 15 March 2019 16
from client browsers.
Best regards,
Rafael Akchurin
Diladele B.V.
--
Need easy to manage DNS filter? See our new project at https://dnssafety.io/
From: squid-users [mailto:squid-users-boun...@lists.squid-cache.org] On Behalf
Of James Zuelow
Sent: Monday, July 15, 2019 9:11 PM
To: 'squid-
feature-squid-4.8-1 branch).
Scripts for Ubuntu 16 will be updated in the near future.
Hope you will find this helpful. Note that older repo of squid46.diladele.com
will be taken down in two years.
Best regards,
Rafael Akchurin
Diladele B.V.
P.S. Here are simple instructions how to use the repo
Hello Gabriel,
We do exactly that in our lab, see docs at
https://docs.diladele.com/administrator_guide_7_0/active_directory_extra/redundancy/haproxy_proxy_protocol.html
It works perfectly.
Best regards,
Rafael Akchurin
Diladele B.V.
From: squid-users [mailto:squid-users-boun...@lists.squid
Hello Randi,
You seem to be wishing to setup Single-Sign-On. We have a small guide here that
might be of some help. It is proven and it definitely works. It involves
Microsoft AD and Kerberos
https://docs.diladele.com/administrator_guide_stable/active_directory/index.html
The guide involves ou
/administrator_guide_stable/active_directory/index.html
Downside - the password for that designated user needs to be non expiring or
you'd be regenerating keytabs everytime the password changes. Which is not
difficult anyway too.
Best regards,
Rafael Akchurin
Diladele B.V.
From: squid-users On Behalf Of
Hello Sebastian,
If you decide to go policy routing way as Amos suggested - please see the
tutorial at
https://docs.diladele.com/tutorials/policy_based_routing_squid/index.html
Or
https://docs.diladele.com/tutorials/web_filter_https_squid_cisco_wccp/index.html
for WCCP.
Best regards,
Rafael
Ubuntu 16 are also available in that repo.
Hope you will find this helpful. Note that older repo of squid48.diladele.com
will be taken down in 1 year.
Best regards,
Rafael Akchurin
Diladele B.V.
P.S. Here are simple instructions how to use the repo. For more information see
readme at https
Hello Robert,
Please see scripts at
https://github.com/diladele/websafety/tree/release-7.2.0/core.ubuntu18 on how
we do that (if you do not need web filtering – just ignore that part).
Best regards,
Rafael
From: squid-users On Behalf Of
robert k Wild
Sent: Thursday, 19 December 2019 16:03
To
results are ok.
Best regards,
Rafael Akchurin
Diladele B.V.
-Original Message-
From: squid-users On Behalf Of
Vacheslav
Sent: Friday, 20 December 2019 11:05
To: squid-users@lists.squid-cache.org
Subject: [squid-users] squid log analyzer
i searched for a ufdb guard log analyzer and it
Hello Robert,
See why it happens -
https://docs.diladele.com/faq/squid/fix_unable_to_get_issuer_cert_locally.html
Best regards,
Rafael Akchurin
On 15 Jan 2020, at 03:59, robert k Wild wrote:
hi all,
when im trying to go on a web page, squid cant connect and gives me an error
page -
The
You can try policy based routing if DD-WRT supports that – see
https://docs.diladele.com/tutorials/policy_based_routing_squid/index.html
From: squid-users On Behalf Of
Robert Marshall
Sent: Thursday, 16 January 2020 09:30
To: squid-users@lists.squid-cache.org
Subject: [squid-users] Need help se
po of squid49.diladele.com
will be taken down in 2 years.
Best regards,
Rafael Akchurin
Diladele B.V.
--
Please take a look at another our project - DNS Safety filtering server. Sort
of Web Safety implemented as DNS Server. Might be interesting in deployments
where HTTPS decryption is not po
Sorry Chris,
We still cannot find time to finish compilation of Squid 4 for Windows.
The Linux version running within Hyper-V works much better most probably. Why
not to try it?
Best regards,
Rafael Akchurin
Diladele B.V.
From: squid-users On Behalf Of
Latino, Chris
Sent: Thursday, 13
Hello Rafael,
There is an easier option *without* joining the Squid machine to the domain,
See tutorial at
https://docs.diladele.com/administrator_guide_stable/active_directory/index.html
(it also applies to vanilla Squid without our UI - just you would need to do
more manual steps).
Raf
and samba, read:
https://wiki.samba.org/index.php/Generating_Keytabs
https://wiki.samba.org/index.php/Keytab_Extraction
Greetz,
Louis
> -Oorspronkelijk bericht-
> Van: squid-users
> [mailto:squid-users-boun...@lists.squid-cache.org] Namens Rafael
> Akchurin
> Ver
s/diladele.websafety>
* Microsoft
Azure<https://azuremarketplace.microsoft.com/en-us/marketplace/apps/diladele.websafety>
appliance (both 7.3 PAYG and BYOL instances)
* Amazon AWS<https://aws.amazon.com/marketplace/pp/B07KJHLHKC> appliance
(7.3 BYOL instance is being publis
Hope you will find this useful. Note that older repo of squid410.diladele.com
will be taken down in 1 year.
Best regards,
Rafael Akchurin
Diladele B.V.
--
The same Squid 4.11 will be part of upcoming Web Safety 7.4 planned for release
in early June, this version has some improvements in the repo
ure to create an
issue<https://github.com/diladele/websafety/issues/new> at our GitHub
repository.
Thanks to all of you for making this possible.
Stay safe.
Best regards,
Rafael Akchurin
Diladele B.V.
___
squid-users mailing list
squid-users@lists
Kerberos/NTLM/Basic LDAP
authenticating Squids).
Best regards,
Rafael Akchurin
Diladele B.V.
-Original Message-
From: squid-users [mailto:squid-users-boun...@lists.squid-cache.org] On Behalf
Of Eduardo Carneiro
Sent: Monday, November 21, 2016 1:33 PM
To: squid-users@lists.squid-cache.org
to bypass connections from workstations to specific remote sites by
FQDN on Cisco ASA?
4. Or maybe it is better to exclude them (3) from SSL bump on Squid using
ssl::server_name by splicing?
Thanks in advance for everyone who responds.
Best regards,
Rafael Akchurin
Diladele B.V.
--
Please take
required dependencies at GitHub -
https://github.com/diladele/squid-windows. Please report all
issues/bugs/feature requests at GitHub project. Issues about the *MSI installer
only* can also be reported to supp...@diladele.com<mailto:supp...@diladele.com>.
Best regards,
Rafael Akchurin
Di
e.com> or here in the mailing list.
Best regards,
Rafael Akchurin
Diladele B.V.
https://www.diladele.com/
--
Please take a look at Web Safety - our ICAP based web filter server for Squid
proxy at https://www.diladele.com/.
___
squid-users
Hello Boruc,
Please use https://en.wikipedia.org/wiki/Data_URI_scheme
Best regards,
Rafael Akchurin
Diladele B.V.
-Original Message-
From: squid-users [mailto:squid-users-boun...@lists.squid-cache.org] On Behalf
Of boruc
Sent: Sunday, January 8, 2017 6:18 PM
To: squid-users
Hello Matt,
This is how we repackage Debian 8's 3.5.23 into Ubuntu 16. It is pretty easy -
https://docs.diladele.com/howtos/build_squid_ubuntu16/index.html
I hope you can adapt the build instructions for Squid 4.
Best regards,
Rafael Akchurin
Diladele B.V.
-Original Message-
basically but sometimes ICAP chain fails on some sites - although both
ICAP services working not in a chain have no such errors... still looking for a
solution.
Best regards,
Rafael Akchurin
Diladele B.V.
-Original Message-
From: squid-users [mailto:squid-users-boun...@lists.squid
dependencies at GitHub -
https://github.com/diladele/squid-windows . Please report all
issues/bugs/feature requests at GitHub project. Issues about the *MSI installer
only* can also be reported to supp...@diladele.com<mailto:supp...@diladele.com>
.
Best regards,
Rafael Akchurin
Diladele B.V.
Hello Hardik and all,
Try adding .mzstatic.com to your exclusion from SSL bump as indicated on
https://docs.diladele.com/faq/squid/sslbump_exlusions/apple_app_store.html
Please note you need to adapt it to regex as we use it in ssl::server_name
directive.
Best regards,
Rafael Akchurin
param ntlm keep_alive off" in the config though.
It all makes me quite suspicious the error was/is in Edge or in my curly hands.
Best regards,
Rafael Akchurin
Diladele B.V.
-Original Message-
From: squid-users [mailto:squid-users-boun...@lists.squid-cache.org] On Behalf
Of Amos Jef
Hello Mike,
I specifically was debugging our NTLM implementation with Edge :)
Kerberos works just fine, you are correct.
Best regards,
Rafael Akchurin
> Op 9 mrt. 2017 om 18:57 heeft Mike Surcouf het volgende
> geschreven:
>
> Hi Rafael
>
> Is there any reason you
asily
provisioned/thrown away scalable web filter / proxy instances (think docker).
Best regards,
Rafael Akchurin
> Op 9 mrt. 2017 om 19:09 heeft Mike Surcouf het volgende
> geschreven:
>
> Ah OK sorry
> I am curious why you have a reason to use NTLM over Kerberos? :-)
>
> -Or
be used by farm of squid proxies without the need
to join boxes to domain.
Cons - that one user needs to be managed separately from all other users - i.e.
you do not want to set the password expiration policy for it - otherwise your
exported keytab will be invalid.
My 2 cents.
Rafael Akchurin
Hello Sohan,
I guess this may be helpful in your project
https://docs.diladele.com/faq/filtering/youtube_allow_only_specific_video.html
This can easily be done within squid.conf (ICAP is not required).
Best regards,
Rafael Akchurin
Diladele B.V.
https://www.diladele.com
--
Please take a look
Hello everyone,
Added new article for intermediate certificates and
X509_V_ERR_UNABLE_TO_GET_ISSUER_CERT_LOCALLY error when bumping SSL.
Hopefully will be helpful/interesting for someone
https://docs.diladele.com/faq/squid/fix_unable_to_get_issuer_cert_locally.html
Best regards,
Rafael
Hello Yuri,
Yes this is much better solution!
Best regards,
Rafael Akchurin
Op 7 apr. 2017 om 18:20 heeft Yuri Voinov
mailto:yvoi...@gmail.com>> het volgende geschreven:
# TAG: sslproxy_foreign_intermediate_certs
#Many origin servers fail to send their full server certificate
#
>>> Then my config in Squid is like this, the dhparams file I generated as per
>>> instructions in the squid wiki:
>> First of all: what's Squid's version?
> And secondly; are you sufficiently capable with Debian to (cross-)build your
> own Squid package that can run on Raspian?
> The Debian squ
dependencies at GitHub -
https://github.com/diladele/squid-windows . Please report all
issues/bugs/feature requests at GitHub project. Issues about the *MSI installer
only* can also be reported to supp...@diladele.com<mailto:supp...@diladele.com>
.
Best regards,
Rafael Akchurin
Diladele B.V.
Hello David and all,
According to
https://www.ssllabs.com/ssltest/analyze.html?d=www.boutique.afnor.org&hideResults=on
you do not need to add any intermediate certificates to system storage - site
seems to be sending the whole chain as it should...
BUT the overall site SSL rating is so bad..
Hello all,
The following steps give in Chrome 58 the "Your connection is not private"
error with "NET::ERR_CERT_COMMON_NAME_INVALID" and "missing_subjectAltName"
error:
(peek-an-splice bumping squid 3.5.23_1 as in
https://docs.diladele.com/howtos/build_squid_ubuntu16/index.html)
1. Open Chrom
1 - 100 of 239 matches
Mail list logo