Hi,
I read in a passed thread that running squid on a box with raid
negatively affects performance of squid. Is this true for raid 5 as well
as raid 0 ? The plan, if we decide to use raid, is to use 2 disks with
raid 0 for OS (FC5) and have one disk with reiser fs for cache. Is this
recommended
Hi,
I read in a passed thread that running squid on a box with raid
negatively affects performance of squid. Is this true for raid 5 as well
as raid 0 ? The plan, if we decide to use raid, is to use 2 disks with
raid 0 for OS (FC5) and have one disk with reiser fs for cache. Is this
recommended
I presume the FAQ refers to the cache drives and not the OS drives
(assuming they are seprate drives)?
-Original Message-
From: Mark Elsen [mailto:[EMAIL PROTECTED]
Sent: 16 May 2006 09:27 AM
To: Paolo Biancolli
Cc: squid-users@squid-cache.org
Subject: Re: [squid-users] Squid and
Adrian Chadd wrote:
Is there much interest in me getting COSS to the point where its stable
and useable? I have no actual idea how COSS will actually perform in
the real world as I don't actually know of anyone who has used it.
I have used it about 1 year ago, and it crashed quite often. Also,
On Tue, May 16, 2006, Joost de Heer wrote:
I have used it about 1 year ago, and it crashed quite often. Also, after
restarting, squid crashed almost immediately, leaving the coss cache
corrupted, and it had to be rebuilt completely. It's bug 1296 in Bugzilla.
I switched to aufs shortly
Hello.
It's my first post, I'm so excited :P
I'm testing squid at home and it looks really nice, we all are
browsing using squid. But, how can I get all images that have been
downloaded from a specific site? For example, all images downloaded
from dangerous-syte.com.
Thanks in advance
hello
I am French
I would like to know if Dansguardian functions with Ident because my
problem my problem is as follows.
I set up a proxy with Squid (version 2.5) and Dansguardian (version
2.8). Each station Windows customer has a service Ident (version
1.1.0).I chose like mode of
Hello,
I have serious problems with squid.
My setup is:
Debian Sarge @ Athlon 750, 512 RAM and 2 SCSI hdd's (one for cache, one
for system). Kernel is 2.4.31.
Squid Cache: Version 2.5.STABLE13
configure options: --prefix=/usr/squid-13/ --with-aufs-threads=10
--with-pthreads
Hi,
I've a problem that puzzles me for some time and I finally decided to
ask for help. We are trying to access a site:
194.79.66.154/sites/intelligent_cities/default.aspx
that asks for a username and a password. If in the browser, IE or
Firefox, I define a direct access to the site,
tis 2006-05-16 klockan 09:54 +0200 skrev Paolo Biancolli:
I presume the FAQ refers to the cache drives and not the OS drives
(assuming they are seprate drives)?
Correct.
For OS and logs RAID5 is a very good choice. But not so good for a heavy
loaded cache partition.
Regards
Henrik
Hello,
I'm not sure if I got everything correctly ...
In the file squid.conf, I specified the following ACL :
ACL ServiceInfo ident listeUtilisateurs
http_access allow ServiceInfo
You need to specify the absolute path of your file, e.g. something like:
ACL ServiceInfo ident
tis 2006-05-16 klockan 10:10 +0200 skrev Antonio Almodóvar:
Hello.
It's my first post, I'm so excited :P
I'm testing squid at home and it looks really nice, we all are
browsing using squid. But, how can I get all images that have been
downloaded from a specific site? For example, all
tis 2006-05-16 klockan 12:14 +0300 skrev Edvard Chitro:
When I start the sistem (without starting squid) only 37 MB of ram gets
used. And usage is constant, no matter how long box is up. After a week it
still has 37 Mb used and ~400 MB free.
What a waste!
But if I start squid and let it
FAQ says: As a rule of thumb on Squid uses approximately 10 MB of RAM per
GB of the total of all cache_dirs (more on 64 bit servers such as Alpha),
plus your cache_mem setting and about an additional 10-20MB. It is
recommended to have at least twice this amount of physical RAM available
on your
tis 2006-05-16 klockan 12:14 +0300 skrev Edvard Chitro:
When I start the sistem (without starting squid) only 37 MB of ram gets
used. And usage is constant, no matter how long box is up. After a week
it
still has 37 Mb used and ~400 MB free.
What a waste!
It's not a waste it for squid
[EMAIL PROTECTED] wrote:
Hi,
I've a problem that puzzles me for some time and I finally decided to
ask for help. We are trying to access a site:
194.79.66.154/sites/intelligent_cities/default.aspx
that asks for a username and a password. If in the browser, IE or
Firefox, I define a
Hi,
I've a problem that puzzles me for some time and I finally decided to
ask for help. We are trying to access a site:
194.79.66.154/sites/intelligent_cities/default.aspx
that asks for a username and a password. If in the browser, IE or
Firefox, I define a direct access to the site, no
Hi,
Paolo Biancolli wrote:
I presume the FAQ refers to the cache drives and not the OS drives
(assuming they are seprate drives)?
Do you really want your OS on a striped partition? That doubles your
chances of losing your OS!
My current server has five spindles - 2 in a RAID1 config for the
Hello
I removed the file msntauth.allowusers. Only the users present in the ACL
UtilAutorises Ident are taken into account.
If I go on Internet, that functions but when I stopped the service Ident, I
should not authenticate myself. It is always the same problem.
So, you want those users which
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Paul Matthews wrote:
Well the two big ones are HAVP dansguardain AV plugin.
i've documented a HAVP installed on Fedora on mywebsite, it should
convert over to debian without to much trouble
http://www.yourhowto.org/content/view/14/9/
I've
When Ident turns, normally I should not authenticate myself because I am in the
ACL ident. Of course, I put in my navigator the port of dansguardian (8081). If
I stopped Ident I must normally authenticate myself. However it is not the
case. It's my problem.
I use Dansguardian because it is a
I can configure at server squid, and conect by tcp device firewall, for
content filtering of LAN?
Edson Alvarenga schrieb:
I can configure at server squid, and conect by tcp device firewall,
for content filtering of LAN?
Sorry, but I am quite sure that nobody on the list here has an idea what
your question is. Please try to be a bit more precise.
Squid is a web proxy, not a firewall or
Thanks Jakob, you know Websense, i have an server of content filter in
my house, and my friends configure your firewall whit my server
websene (url Filtering), then my server check all request and take
actions of your LAN.
I know websense, but I still do not understand your question. To
Jakob Curdes wrote:
Thanks Jakob, you know Websense, i have an server of content filter
in my house, and my friends configure your firewall whit my server
websene (url Filtering), then my server check all request and take
actions of your LAN.
I know websense, but I still do not
Really i just replace my server Websense whti Squid, but i saw Squid
don´t same working, didn´t?
I am not that familiar with websense; maybe somebody else can comment on
that. Squid alone is a web application (http) proxy that forwards and
caches client requests to origin servers (although
Hiya All,
I have managed to get squid up and running and authenticating users
that attempt to access it. Now my problem is this. I have 5 IP addresses,
depending on which IP address the users use I ned the tcp_outgoing_address
to be different. Here are the settings so far (might give
I've been using old version squid as an accelerator for quite a while on an
old Solaris 8 box and it has been working great.
I've just setup a new Solaris 10 box with the latest stable release and have
found a 'qwerk' with it.
I've been accelerating a server that i can't change certain pages
Hiya All,
I have managed to get squid up and running and authenticating users
that attempt to access it. Now my problem is this. I have 5 IP addresses,
depending on which IP address the users use I ned the tcp_outgoing_address
to be different. Here are the settings so far (might give
A user just complained to me that he could not download the latest
Apple security update. On a hunch, I bypassed the transparent Squid
proxy and the update installed properly. The Squid developers may
want to investigate why this problem occurred. The version of Squid
that's running is
A user just complained to me that he could not download the
latest Apple security update. On a hunch, I bypassed the
transparent Squid proxy and the update installed properly.
The Squid developers may want to investigate why this problem
occurred. The version of Squid that's running is
tis 2006-05-16 klockan 18:54 +0100 skrev Shadi Almosri:
acl 19_93_97_250 proxy_auth REQUIRED
acl 19_93_97_251 proxy_auth REQUIRED
acl 19_93_97_252 proxy_auth REQUIRED
acl 19_93_97_253 proxy_auth REQUIRED
acl 19_93_97_254 proxy_auth REQUIRED
All of the above ACLs are equal. The name is just
tis 2006-05-16 klockan 13:12 +0300 skrev Edvard Chitro:
tis 2006-05-16 klockan 12:14 +0300 skrev Edvard Chitro:
When I start the sistem (without starting squid) only 37 MB of ram gets
used. And usage is constant, no matter how long box is up. After a week
it
still has 37 Mb used and
tis 2006-05-16 klockan 13:06 +0300 skrev Edvard Chitro:
Top shows squid is only using 50-60 Mb ...
And if I shut down squid only 60 Mb gets freed ...
What I have been saying all the time. The problem is not Squid, the
problem is elsewhere.
Your Squid is using 60-70 MB.
This server should
tis 2006-05-16 klockan 12:16 +0200 skrev Emilio Casbas:
It seems the web server is using NTLM authentication, see
some arguments;
http://www.webappsec.org/lists/websecurity/archive/2005-07/msg6.html
please note that Squid protects the user against this attack..
Regards
Henrik
mån 2006-05-15 klockan 14:37 -0700 skrev Dan Thomson:
Fixed my own problem.
Squid was configured for way too many aufs threads.
The developers had a discussion on this the other day, and Squid-2.6 and
later will only allocate a smaller stack per I/O thread saving a bit of
VM if you have lots
I want to customize the X-Forwarded-For header. Building Squid from
the source files go to line 962 in /src/http.c you will see
/* append X-Forwarded-For */
strFwd = httpHeaderGetList(hdr_in, HDR_X_FORWARDED_FOR);
strListAdd(strFwd,
(((orig_request-client_addr.s_addr != no_addr.s_addr)
here is the answer
a) put some URLs in bypass.txt u want to bypass ICAP
b) and change the squid.conf like
acl bypass url_regex /etc/squid/bypass.txt
icap_enable on
icap_send_client_ip on
icap_send_auth_user on
icap_auth_scheme Local://%u
icap_service service_1 reqmod_precache 0
--On May 16, 2006 2:30:29 PM -0700 David Neudorfer [EMAIL PROTECTED]
wrote:
I want to customize the X-Forwarded-For header. Building Squid from the
source files go to line 962 in /src/http.c you will see
/* append X-Forwarded-For */
strFwd = httpHeaderGetList(hdr_in,
Hi all,
does anyone know how can I hide the password in squid.conf for the
function cache_peer?
Example:
cache_peer server parent 8080 0 no-query default login=aaa:bbb
I would like to encrypt the aaa and the bbb.
Thank you in advice.
Best regards,
Žiga Dolher
tcp_outgoing_address 19.93.97.250 19_93_97_250
tcp_outgoing_address 19.93.97.251 19_93_97_251
tcp_outgoing_address 19.93.97.252 19_93_97_252
tcp_outgoing_address 19.93.97.253 19_93_97_253
tcp_outgoing_address 19.93.97.254 19_93_97_254
This is the main issue that am not able to get working
Hiya,
Is it possible to create an individual access log for:
a) each user
b) each proxy IP (as we are running multiple proxy IPs)
or do we have to parse the log files manually? :/
Regards,
Shadi
I'm looking for a variable to insert here:
/* append X-Forwarded-For */
strFwd = httpHeaderGetList(hdr_in, HDR_X_FORWARDED_FOR);
strListAdd(strFwd,
(((orig_request-client_addr.s_addr != no_addr.s_addr)
opt_forwarded_for) ?
inet_ntoa(orig_request-client_addr) : unknown), ',');
What we are looking for is a variable which will represent the
requester's proxy host name. We presume it will be something similar
to apache's virtual host capabilities. For example, if a user's web
browser is set to connect to our proxy at host name
123456.mydomain.com, We'd be looking
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Here's what I'm seeing in access.log :
1147659469.909 18 adsl-71-134-224-41.dsl.pltn13.pacbell.net
TCP_MISS/304 245 GET http://squidtest.bitpusher.com/
78/31/00/5db751d7d1355191556c70570974a13793ca2468/9a6c2cb08bc0ea681a8
8bf
[...]
45 matches
Mail list logo