[squid-users] openldap 2.3.35 failing to start

2007-06-22 Thread gonzales
Hello Resident Experts, Solaris 10, openldap 2.3.35, postgresql 8.0.1, unixODBC 2.2.12 There are the template test sql files for the Postgresql RDBMS that come with the openldap source code. I've compiled everything correctly, evertyhing is working OOTB, I can create new users and search using

[squid-users] Re: openldap 2.3.35 failing to start

2007-06-22 Thread gonzales
Dist, I figured out my own issue! Essentially 'username' is not an attribute defined in any of the schema files that I have slapd load; therefor I changed it to 'displayname' which is an attribute in the inetorgperson schema, adjusted the appropriate settings in the postgresql tables, and voi

RE: [squid-users] windows update through squid -- sharing experience

2007-06-22 Thread Mark Barlow
-Original Message- From: Dietrich Radel [mailto:[EMAIL PROTECTED] Sent: 22 June 2007 04:53 To: Jigar Raval Cc: squid-users@squid-cache.org Subject: Re: [squid-users] windows update through squid -- sharing experience Jigar Raval wrote: >> Hello All, >> >> I would like to share my experie

[squid-users] Delay pools

2007-06-22 Thread Sunil K.P.
Greetings, Am having problem restricting download traffic other than http with delay pools. My configuration is : acl limitedfiles url_regex -i ftp .exe .EXE .mp3 .MP3 .vqf .tar.gz .gz .rpm .zip .rar .avi .AVI .mpeg .MPEG .mpe .MPE . mpg .MPG .qt .QT .ram .RAM .rm .RM .iso .ISO .raw .RAW .wa

Re: [squid-users] unable to open mail.yahoo.com properly

2007-06-22 Thread Tek Bahadur Limbu
ajit kumar wrote: Hi, I am using squid with Stable13 as a transparent proxy. All is working fine. There is a problem with mail.yahoo.com However mail.yahoo.com will let me login. It will display the contents of the mail box. When i click on the mail to see the content it only shows the header a

Re: [squid-users] Squid and Windows Update

2007-06-22 Thread Julian Pilfold-Bagwell
Henrik Nordstrom wrote: tor 2007-06-21 klockan 14:22 +0100 skrev Julian Pilfold-Bagwell: If I am to guess you might need to allow access to the windows update servers without using authentication. Is it possible to do that while retaining authentication for users?

Re: [squid-users] ISP cache statistics

2007-06-22 Thread zulkarnain
--- Emilio Casbas <[EMAIL PROTECTED]> wrote: > #squidclient -p 8080 mgr:[EMAIL PROTECTED] > > Squid Object Cache: Version 2.6.STABLE10 > Start Time: Tue, 19 Jun 2007 06:33:45 GMT > Current Time: Wed, 20 Jun 2007 14:39:52 GMT > Connection information for squid: > Number of clients ac

Re: [squid-users] unable to open mail.yahoo.com properly

2007-06-22 Thread Sunil K.P.
Hi, I am having the same problem with the cisco website. The webpage doesnt load. Am getting the following message in access.log. 1182504464.622 2506 x.x.x.x TCP_MISS/502 1338 GET http://www.cisco.com/ - DIRECT/198.133.219.25 text/html On the browser am getting the following error. The fo

Re: [squid-users] Squid and Windows Update - SOLVED!!

2007-06-22 Thread Julian Pilfold-Bagwell
Hi Henrik, It's cured. You were right about allowing access to winupdate. The confusing aspect is that some time back, we had to wrestle for a day to get it working after Windows updated itself. It turned out that you had to use the always_direct directive to get it work as it would crash out

Re: [squid-users] Squid as a content filter proxy: whitelist approach

2007-06-22 Thread Amos Jeffries
[EMAIL PROTECTED] wrote: I know it's possible (and perhaps written in stone in an RFC) to have the client maintain a proxy exclusion list, but that would be unmanageble in this sort of setup. Is it? You use a centrally provided proxy.pac to control the browser. You don't need a complete whit

Re: [squid-users] unable to open mail.yahoo.com properly

2007-06-22 Thread Paul clayton
I have the same issue with google mail and a number of different sites when using transparent mode. So far no fix has come back that worked to resolve this. On Thu, 2007-06-21 at 23:22 -0700, ajit kumar wrote: > Hi, > > I am using squid with Stable13 as a transparent proxy. > All is working fine

Re: [squid-users] unable to open mail.yahoo.com properly

2007-06-22 Thread Adrian Chadd
On Fri, Jun 22, 2007, Paul clayton wrote: > I have the same issue with google mail and a number of different sites > when using transparent mode. So far no fix has come back that worked to > resolve this. Have you disabled ECN? have you disabled window scaling? Have you done some packet dumps with

[squid-users] stopping TCP_IMS_HIT

2007-06-22 Thread Suhaib Ahmad
Hello all, I've the squid 2.6 stable13 running on x.x.7.3 stepup as web accel. I want to stop the TCP_IMS_HIT/304 requests going to parent cache_peer located at x.x.7.1 My squid.conf http_port 80 accel defaultsite=www.x.com cache_peer x.x.7.1 parent 80 0 no-query or

[squid-users] Google Safe Browsing API - Integration with squid?

2007-06-22 Thread Andreas Pettersson
This might be interesting to anyone using squid to do malware filtering. It needs some kind of integration work before squid can utilize it. http://code.google.com/apis/safebrowsing/ The Malware Block List is another way to filter web traffic. http://www.malware.com.br/ -- Andreas

Re: [squid-users] Google Safe Browsing API - Integration with squid?

2007-06-22 Thread Adrian Chadd
On Fri, Jun 22, 2007, Andreas Pettersson wrote: > This might be interesting to anyone using squid to do malware filtering. > It needs some kind of integration work before squid can utilize it. > http://code.google.com/apis/safebrowsing/ > > The Malware Block List is another way to filter web traff

Re: [squid-users] How Bad is CONNECT and Should I Prevent It?

2007-06-22 Thread K K
On 6/21/07, Chuck Kollars <[EMAIL PROTECTED]> wrote: I think what we really need is just the much simpler blacklist/whitelist capability. If we can transparently intercept, and give a thumbs-up/thumbs-down to every destination IP address (perhaps after doing a reverse DNS lookup on it), that's al

[squid-users] Re: Squid auth box will not appear for everyone.

2007-06-22 Thread Dan OConnor
I have just replaced my old squid box with a new one, the old proxy was set to do local administration and the new one is set to do LDAP. I do have the authentication working for most of the users but there is a few that will not get prompted for a box and I can't figure it out? One that cannot w

Re: [squid-users] Re: Squid auth box will not appear for everyone.

2007-06-22 Thread D & E Radel
Dan OConnor wrote: I have just replaced my old squid box with a new one, the old proxy was set to do local administration and the new one is set to do LDAP. I do have the authentication working for most of the users but there is a few that will not get prompted for a box and I can't figure it ou

[squid-users] reverse proxy tutorial version dependant?

2007-06-22 Thread Babar Haq
Hi all I am trying to set up a reverse proxy. I found a tutorial which seems pretty different from others at http://wiki.squid-cache.org/SquidFaq/ReverseProxy Is this tutorial by any chance only for squid 2.6 upwards? I am configuring it on squid 2.5. Actually there is a statement in the tutori

Re: [squid-users] Re: Squid auth box will not appear for everyone.

2007-06-22 Thread Dan OConnor
Manual settings sent out via GP On 6/22/07, D & E Radel <[EMAIL PROTECTED]> wrote: Dan OConnor wrote: >> I have just replaced my old squid box with a new one, the old proxy > was set to do local administration and the new one is set to do LDAP. > I do have the authentication working for most of

RE: [squid-users] access.log

2007-06-22 Thread Fernando Rodriguez
Instead of moving only the file you can change the name using the same cron so the name of the file will be access.log-day-month-year-hour-minute --- Fernando Rodriguez -Mensaje original- De: Firas A. Mubarak [mailto:[EMAIL PROTECTED] Enviado el: miƩrcoles, 20 d

Re: [squid-users] access.log

2007-06-22 Thread Firas A. Mubarak
Thats also good, but how to do this ? thnx Firas - Original Message - From: "Fernando Rodriguez" <[EMAIL PROTECTED]> To: "'Firas A. Mubarak'" <[EMAIL PROTECTED]>; Sent: Saturday, June 23, 2007 1:27 AM Subject: RE: [squid-users] access.log Instead of moving only the file you can chang

Re: [squid-users] How Bad is CONNECT and Should I Prevent It?

2007-06-22 Thread K K
> Or better yet, use real MITM interception, and the https: proxies no > longer bypass your filters, since no SSL/TLS traffic can make it out > of your network alive. Ok, I give up. Can you describe the "real MITM interception" for me please? Well, let's say you know that there are internal cli