Hello all
I saw these strange messages in cache.log
2004/01/06 18:44:59| httpAccept: FD 10: accept failure: (53)
Software caused connection abort
These are fairly normal on BSD and indicate browser(s) aborting
requests to tthe squid cache,
Concerning :
FATAL: xcalloc:
On Wed, 7 Jan 2004, Peter Schobel wrote:
For some reason DNAT does not seem to work either - I also tried to use
the transproxy daemon and that didn't seem to work either - this
problem is really stumping me
Does it work if you configure the browser to use the proxy?
Regards
Henrik
On Thu, 8 Jan 2004, DLau wrote:
Next I would like to try setting up the SSL for OWA, would you recommand
squid 3 (as you mentioned in another thread with Jonathan earlier) or squid
2.5 stable would work just fine for Exchange 2000?
I would recomment Squid-3 in that case.
It MAY be possible
On Wed, 7 Jan 2004, anders wrote:
http://www.google.se/search? - NONE/- text/html
1073512973.676 7 citrix13.jll.se TCP_DENIED/407 1902 GET
http://www.google.se/search? - NONE/- text/html
1073512975.155 1479 citrix13.jll.se TCP_MISS/200 6785 GET
http://www.google.se/search?
On Wed, 7 Jan 2004, Jairo.CastaƱeda wrote:
Any of you have tested Squid 2.5 running on a RH Enterprise Linux Server?
I have customers running such configuration on quite large scale
proxies and quite happy with it.
But I am not 100% sure they are using the Enterprise Linux kernel or if
they
dear all...
why my squid 2.5 stable 2 say failed to unpack metadata? what wrong?
i'm use openbsd 3.3, transparent proxy, diskd (with re-compile kernel
before), malloc.
thanks in advace.
Niken Padma Aulia W (C2A098024)
Departemen Manajemen
Fakultas Ekonomi
Universitas Diponegoro
Semarang, Jawa
On Thu, 8 Jan 2004, hugle wrote:
2004/01/06 18:44:59| httpAccept: FD 10: accept failure: (53) Software caused
connection abort
2004/01/06 18:46:25| comm_accept: FD 10: (53) Software caused connection abort
2004/01/06 18:46:25| httpAccept: FD 10: accept failure: (53) Software caused
On Thu, 8 Jan 2004, Hamed Majnoonian wrote:
The point is I don't know where I can find those openLDAP Libraries... all
I know is openldap21-client-server and openldap22-server and client
which are located on /usr/ports/net/! Is there anything else expect these?
Also... how I am now familiar
Hi all,
I want to use Squid as a caching server for a network that has about 500
users. I intend to use a Sun 280R, 1 x 900 MHz cpu, 1 GB memory and 1 x 36
GB HDD.
How many RAM and disk space should I have? What is the recommended hardware
configuration? Is there any docs that show how to sizing
why my squid 2.5 stable 2 say failed to unpack metadata? what wrong?
i'm use openbsd 3.3, transparent proxy, diskd (with re-compile kernel
before), malloc.
http://www.squid-cache.org/Doc/FAQ/FAQ-12.html#ss12.38
M.
Hi all,
I want to use Squid as a caching server for a network that
has about 500
users. I intend to use a Sun 280R, 1 x 900 MHz cpu, 1 GB
memory and 1 x 36
GB HDD.
How many RAM and disk space should I have? What is the
recommended hardware
configuration? Is there any docs that
Hi all,
I saw this in my cache.log:
2003/12/31 15:20:34| comm_accept: FD 11: (130) Software caused connection
abort
2003/12/31 15:20:34| httpAccept: FD 11: accept failure: (130) Software
caused connection abort
2003/12/31 15:24:29| parseHttpRequest: NAT lookup failed: ioctl(SIOCGNATL)
2003/12/31
On Thu, 8 Jan 2004, aiggno wrote:
2003/12/31 15:24:29| parseHttpRequest: NAT lookup failed: ioctl(SIOCGNATL)
You have compiled Squid with --enable-ipf-transparent, but have not given
Squid permission to use /dev/nat (or whatever the nat device is called in
your system).
Regards
Henrik
HN On Thu, 8 Jan 2004, hugle wrote:
2004/01/06 18:44:59| httpAccept: FD 10: accept failure: (53)
Software caused connection abort
2004/01/06 18:46:25| comm_accept: FD 10: (53) Software caused connection abort
2004/01/06 18:46:25| httpAccept: FD 10: accept failure: (53)
Software caused
On Thu, 8 Jan 2004, hugle wrote:
HN On Thu, 8 Jan 2004, hugle wrote:
2004/01/06 18:44:59| httpAccept: FD 10: accept failure: (53)
Software caused connection abort
2004/01/06 18:46:25| comm_accept: FD 10: (53) Software caused connection abort
2004/01/06 18:46:25| httpAccept: FD 10:
Hi all
Has anybody tried caching without proxing?
sudhir
Hi,
I got problems with the Squid PID after updating from
squid-2.5.STABLE1 to squid-2.5.STABLE4.
The daily squid -k rotate didn't work anymore with error
squid: ERROR: No running copy.
I read in the FAQ, that possibly the squid.pid is missing - but that's
not the case:
ps ax|grep squid
25694 ?
Henrik Nordstrom ha scritto:
On Wed, 7 Jan 2004, Giulio Cervera wrote:
this is the full acl, i have also attached the full config
Try using half_closed_clients off
Regards
Henrik
ops ...
sorry ...
i have wrong cut paste, i need more holiday :(
the previous msg leak some part of
Hi,
One quick question for who I didn't find any answer on the web.
I need to have one proxy doing the authentication on a multi-domain
(forest) environement.
Anybody have a clue how I can tell squid to look with the right AD server
to authenticate ?
Without having to go to one AD, and then making
Hi all
I'm trying to use squid as a reverse proxy in front of Tomcat and to make things
more complicated squid is compiled with ESI enabled :-)
I've allready convinced squid-tomcat dou to process basic esi example but squid
doesn't cache anything. I suspect that it's because of http headers
Each swap file has a header of meta data: URL, MD5, part of StoreEntry.
That error means that meta data was missing or corrupted.
debug storeSwapMetaUnpack() to track the error. How long's been your squid
running? Where you get Squid, ported application or the source?
Good LUck Cah Semarang.
Transparent caching, is that what you mean?
On Thu, 8 Jan 2004 15:57:42 +0545 (NPT), [EMAIL PROTECTED]
wrote:
Has anybody tried caching without proxing?
sudhir
--
Using M2, Opera's revolutionary e-mail client: http://www.opera.com/m2/
Maybe your /var/run not chown-ed by nobody.
On Thu, 08 Jan 2004 11:19:46 +0100, Oliver Zimmermann [EMAIL PROTECTED]
wrote:
Hi,
I got problems with the Squid PID after updating from
squid-2.5.STABLE1 to squid-2.5.STABLE4.
The daily squid -k rotate didn't work anymore with error
squid: ERROR: No
I am having a hell of a time getting squid to let me browse the internet from client
machines. Every time I try to access the internet I get this error.
While trying to retrieve the URL: http://www.yahoo.com/
The following error was encountered:
Access Denied.
Access control configuration
On Thu, Jan 08, 2004 at 07:58:06AM -0500, Dan Brita wrote:
I am having a hell of a time getting squid to let me browse the
internet from client machines. Every time I try to access the internet
I get this error.
While trying to retrieve the URL: http://www.yahoo.com/
The following error
Hello,
I've got a problem with my proxy. Each time I try to reach a dynamic
page (.asp, or with ? in the URL), I have a message connection
refused (111).
My squid.conf seems OK. I didn't find where was the error.
Dan Brita wrote:
I am having a hell of a time getting squid to let me browse the internet from client machines. Every time I try to access the internet I get this error.
While trying to retrieve the URL: http://www.yahoo.com/
The following error was encountered:
Access Denied.
Access control
damk wrote:
Maybe your /var/run not chown-ed by nobody.
Thank you, but seems not. /var/run is owned by root and should not be
changed due to system defaults. And this worked with the former
squid-release.
But I tried something similar to your idea: I created /var/run/squid/
owned by the user,
On Thu, 8 Jan 2004 [EMAIL PROTECTED] wrote:
Has anybody tried caching without proxing?
I don't see how such thing would work.
Regards
Henrik
On Thu, 8 Jan 2004 [EMAIL PROTECTED] wrote:
One quick question for who I didn't find any answer on the web.
I need to have one proxy doing the authentication on a multi-domain
(forest) environement.
Anybody have a clue how I can tell squid to look with the right AD server
to authenticate ?
On Thu, 8 Jan 2004, Konrad wrote:
Hi all
I'm trying to use squid as a reverse proxy in front of Tomcat and to make things
more complicated squid is compiled with ESI enabled :-)
I've allready convinced squid-tomcat dou to process basic esi example but squid
doesn't cache anything. I
[EMAIL PROTECTED] wrote:
Has anybody tried caching without proxing?
sudhir
squid can be used to proxy w/o caching. i don't think the other way
around is possible w/ squid.
--
Dodjie Nava [EMAIL PROTECTED]
Systems Engineer
E-Net Corporation
Binan, Laguna, Philippines
try: http_access allow our_networks MYLAN ?
#http_access allow MYLAN
http_access deny all
what is MYLAN's ACL anyway?
On Thu, 08 Jan 2004 07:58:06 -0500, Dan Brita [EMAIL PROTECTED] wrote:
I am having a hell of a time getting squid to let me browse the internet
from client
hi to all.
a friend of mine is using redhat 8.0 squid-2.4.STABLE7-4.rpm. he
asked me to help him upgrade to squid-2.5.STABLE4. the only question is
can squid2.5 use the squid2.4 cache? it's quite big already, around
100gig, and he doesn't want to start all over again. i'm not sure about
a friend of mine is using redhat 8.0 squid-2.4.STABLE7-4.rpm. he
asked me to help him upgrade to squid-2.5.STABLE4. the only
question is
can squid2.5 use the squid2.4 cache? it's quite big already, around
Yes.
M.
Dnia 2004-01-08 14:50, Uytkownik Henrik Nordstrom napisa:
On Thu, 8 Jan 2004, Konrad wrote:
Hi all
I'm trying to use squid as a reverse proxy in front of Tomcat and to make things
more complicated squid is compiled with ESI enabled :-)
I've allready convinced squid-tomcat dou to process basic
On Thu, 8 Jan 2004, Dodjie Nava wrote:
squid can be used to proxy w/o caching. i don't think the other way
around is possible w/ squid.
I don't see how the other way around could be possible with anything.
Regards
Henrik
iv ran squid on RedHat v3 AS server and was happy with it. BUT
i need to run wccp and ive been haveing a HECK of a time trying to get that to work.
just an fyi
Henrik Nordstrom [EMAIL PROTECTED] 1/8/2004 2:51:15 AM
On Wed, 7 Jan 2004, Jairo.CastaƱeda wrote:
Any of you have tested Squid
Hmm, I guess you could run wget commands on the Squid server. If you tell
wget to go through Squid, it will cache pages but is not really proxying as
it is the Squid box making the requests for the Squid box which is not 'on
behalf of' ie proxying. The proxy part I think is only when Squid
On Thu, 8 Jan 2004, Victor Souza Menezes wrote:
Henrik,
you asked : Is these in the default Users container, or somewhere else?
yes. All the users i created are in the default users conteiner.
you also asked: Is the Pre-Windows 2000 login set to something that makes sense?
Hi,
I am using LDAP to authenticate to Novell E-Dir with Squid for Internet access. It is
working perfectly, however our management and users do not like the fact that when the
browser is closed down and reopened, they have to authenticate again. They are whining
because they do not want to
yes
it works if i configure the proxy on port 3128 and it also works if i
configure the proxy on port 80 - so the proxy must be working and the
redirection must be working but the transparency is not working
Peter Schobel
~
On Thursday, January 8, 2004, at 02:39 AM, Henrik Nordstrom wrote:
Hy,
The autthentification by groups LDAP functions by chance.
As an information we have 26 groups and in group between 30 and 100 users.
How many groups can one list you with squid_ldap_group?
Is there a limitation with 10 goupes, 16 groups, etc?
Thanks,
Gilles
As an information in the squid.conf we have this message:
*externalAclLookup: ' ldapgroup' tail overload*
Hy,
The autthentification by groups LDAP functions by chance.
As an information we have 26 groups and in group between 30 and 100
users.
How many groups can one list you with
As an information in the *Cache.log* we have this message:
**externalAclLookup: ' ldapgroup' tail overload* *
Hy,
The autthentification by groups LDAP functions by chance.
As an information we have 26 groups and in group between 30 and 100
users.
How many groups can one list you with
It appears that they are 2 methods to block streaming media using Squid.
req_mime_type and url_regex used in ACL statements
Am I correct in assuming that the req_mime_type would work *better* than
the url_regex because the mime_type is what tells the client machine
how to act on the content?
On Thu, 8 Jan 2004, Dan Brita wrote:
I am having a hell of a time getting squid to let me browse the internet from client
machines. Every time I try to access the internet I get this error.
While trying to retrieve the URL: http://www.yahoo.com/
The following error was encountered:
On Thu, 8 Jan 2004, Craig Sharp wrote:
Hi,
I am using LDAP to authenticate to Novell E-Dir with Squid for
Internet access. It is working perfectly, however our management
and users do not like the fact that when the browser is closed down
and reopened, they have to authenticate again.
The IP Address of the PC that the user is logged onto is stored in the
LDAP DB (if you run an LDAP Query on a logged in user, you should see a
field called networkAddress. With a little research, you could probably
write a helper(or tweak the current ldap one) to use this information
for
Tim Bernhardson wrote:
The IP Address of the PC that the user is logged onto is stored in the
LDAP DB (if you run an LDAP Query on a logged in user, you should see a
field called networkAddress. With a little research, you could probably
write a helper(or tweak the current ldap one) to use this
Hello,
I've got an older Dell server that I'm going to use for squid.
I have 2 Ultra160 drives: 1 Quantum 9gb and 1 Seagate 36.1gb.
Should I install the OS (RH9) on the Quantum and use the Seagate for
cache? or should I install the OS on the Seagate and have both drives
setup for cache?
Hi
i have a squid with squidguard and parent proxy configured.
each region has his own DNS servers.
my proxy have some advise pages to tell users the request was denied.
from my client i can access this pages, but when i access a forbidden
site it takes a long time and parent proxy returns a
How can I tell where I need to put the new intermediate.crt file I just got
from Verisign? They signed my cert on 12/29/03 with their cert that expired
on 1/7/04! Now I have to jump through a hoop to fix it.
On Thu, 8 Jan 2004, ROUTIER Gilles wrote:
As an information in the squid.conf we have this message:
*externalAclLookup: ' ldapgroup' tail overload*
Explanation please.
Regards
Henrik
On Thu, 8 Jan 2004, Darren wrote:
Hello,
I've got an older Dell server that I'm going to use for squid.
I have 2 Ultra160 drives: 1 Quantum 9gb and 1 Seagate 36.1gb.
Should I install the OS (RH9) on the Quantum and use the Seagate for
cache? or should I install the OS on the Seagate
On 8 Jan 2004, Dave Augustus wrote:
It appears that they are 2 methods to block streaming media using Squid.
req_mime_type and url_regex used in ACL statements
req_mime_type is not that useful for the purpose. resp_mime_type is a
better match (but must be used in http_reply_access, not
On Thu, 8 Jan 2004, Tim Bernhardson wrote:
The IP Address of the PC that the user is logged onto is stored in the
LDAP DB (if you run an LDAP Query on a logged in user, you should see a
field called networkAddress. With a little research, you could probably
write a helper(or tweak the
On Thu, 8 Jan 2004, Schaefer, Charles wrote:
How can I tell where I need to put the new intermediate.crt file I just got
from Verisign? They signed my cert on 12/29/03 with their cert that expired
on 1/7/04! Now I have to jump through a hoop to fix it.
If you are running Squid as an SSL
On 8 Jan 2004, Elton S. Fenner wrote:
so i was wondering.
if squidguard returns that the request was blocked. (4b) why i get a
error page from parent proxy.
Because your proxy does not know how to fetch the block page returned by
Squidguard.
What am i doing wrong in squid.conf?
You are
While reading through the archives, I read a message that asked for
assistance in getting squid to go through a satellite proxy/cache server. I
happen to have set up a squid cache for a Starband subscriber. The key
entries in squid.conf are as follows:
cache_peer 192.168.0.1 parent 9877 0
How can I tell where to put this file, or which ca-bundle.crt file to chain
this to? I did a find on my system, and there are two files. one in
/usr/share/apps/kssl, and the other in /usr/share/ssl/certs.
squid_GATEWAY_ssl-2.5.patch has been applied before compile.
-Original Message-
On Thu, 8 Jan 2004, Chris Wilcox wrote:
Hmm, I guess you could run wget commands on the Squid server. If you
tell
wget to go through Squid, it will cache pages but is not really proxying
as
it is the Squid box making the requests for the Squid box which is not
'on
behalf of' ie proxying.
Hi Duane,
Thanks for the reply.
How would it improve performance? If I put /var/spool/squid on one drive
and /var/spool/squid2 on the other wouldn't it just fill up the first,
then fill up the second?
Would there really but a noticable difference?
- Darren
On Thu, 2004-01-08 at 11:48, Duane
When Squid sends a Proxy-Connection: close header back to a client should it
also be closing the TCP connection? I have an instance where Squid-2.4S7
forwards a 302 redirect back to the client with the Proxy-Connection: close
but doesn't shut down the TCP connection for another 15 minutes.
Dear All
I have problem with Squid when is working as reverse proxy.
I want to put squid between my web server and internet world and do
authentication
before opening or forwarding any
Traffic to my actual webserver.
Reverse proxy configuration is working with no problem
On Fri, 2004-01-09 at 00:50, Henrik Nordstrom wrote:
Surrogate-Control: max-age=600, content=ESI/1.0
But on the other hand the surrogate-control max-age should override this I
think.. but probably it does not, or at least not all of them..
It should yes.
Konrad, I suggest testing with a
On Fri, 2004-01-09 at 09:34, Schuster, Dan wrote:
When Squid sends a Proxy-Connection: close header back to a client should it
also be closing the TCP connection?
Yes.
I have an instance where Squid-2.4S7
forwards a 302 redirect back to the client with the Proxy-Connection: close
but
Hello,
I'm doing some testing here and noticed that it's not caching large
files.
I have maximum_object_size 8192 KB
Here's an example of a test file I was using. It's 2.75 MB.
Initial Download:
1073607565.958 31350 204.244.159.3 TCP_MISS/200 2814345 GET
Hello all
I've installed squid through a RPM distribution on a
Red Hat box. How do I enable nsca_auth for the same? I
did'nt find any documents regarding installation of
ncsa_auth. Found a couple of them which explains to
compile from the source code. How excatly do I get it
working after
On Thu, 8 Jan 2004, Schaefer, Charles wrote:
How can I tell where to put this file, or which ca-bundle.crt file to chain
this to? I did a find on my system, and there are two files. one in
/usr/share/apps/kssl, and the other in /usr/share/ssl/certs.
You need to copy the Verisign intermediary
On Thu, 8 Jan 2004, Chris Wilcox wrote:
What you get is the ability to pre-cache content: something very useful in
schools. You can schedule wget via cron to pre-cache pages during the night
(quiet period in school browsing habits) and then during the teaching day
those pre-cached pages
On Thu, 8 Jan 2004, Schuster, Dan wrote:
When Squid sends a Proxy-Connection: close header back to a client should it
also be closing the TCP connection?
Yes, this is what the above header signals. The connection will be closed
after this response.
I have an instance where Squid-2.4S7
On Thu, 8 Jan 2004, Darren wrote:
1073607565.958 31350 204.244.159.3 TCP_MISS/200 2814345 GET
http://webpages.charter.net/kevogod/files/Shareaza18A4.exe -
DIRECT/209.225.8.65 application/octet-stream
Here's when I download it again:
1073607603.549 31663 204.244.159.3
On Thu, 8 Jan 2004, Sridhar M.N. wrote:
I've installed squid through a RPM distribution on a
Red Hat box. How do I enable nsca_auth for the same?
Usually it is installed as part of the rpm installation.
If not grab the Squid sources and compile the helper from there and copy
it manually into
Hello all,
Problem:
only with squid-2.5Stable4 NOT with squid-2.5Stable1.
I tried to the Cache Manager Statistics(using
webmin)by clicking on it
(http://192.16.1.160:1/Squid/cachemgr.cgi).
It went to the page.
Then i try to click Continue button (which is at the
bottom of taht page), it
So if my statement says:
Https_port 443 cert=/usr/share/ssl/cert.pem key=/usr/share/ssl/key.pem
I need to put this into the bottom of the cert.pem file, or the key.pem
file?
Regards,
Charles
-Original Message-
From: Henrik Nordstrom [mailto:[EMAIL PROTECTED]
Sent: Thursday, January
Yes.
I need to put a transparent cache before bandwidht manager.
On Thu, 8 Jan 2004, damk wrote:
Transparent caching, is that what you mean?
On Thu, 8 Jan 2004 15:57:42 +0545 (NPT), [EMAIL PROTECTED]
wrote:
Has anybody tried caching without proxing?
sudhir
78 matches
Mail list logo