Re: [squid-users] Gmail attachment (bug)

2009-05-28 Thread Nitin Bhadauria
I didn't really find a solution for this should report a bug for the problem.. Dear Ben, I have almost 6000 users on my proxy server i can't do it from user end. Ben Scott wrote: On Tue, May 26, 2009 at 11:18 AM, Nitin Bhadauria nitin.bhadau...@tetrain.com wrote: I am using squid 3.0

RE: [squid-users] TCP_MISS:FIRST_UP_PARENT error when use COSS store type

2009-05-28 Thread Nguyen Cao Cuong
Thank Amos so much, I have one question, How to configure squid with coss store type to arvice TCP_IMS_HIT:NONE code in access.log? -Original Message- From: Amos Jeffries [mailto:squ...@treenet.co.nz] Sent: Wednesday, May 27, 2009 7:42 PM To: Nguyen Cao Cuong Cc:

[squid-users] minor issues with squid

2009-05-28 Thread RoLaNd RoLaNd
Hello all, i'm facing minor problems with squid as i newly configured it. hope you could help me with the following issues: 1- certain extensions are blocked without any reason. i havent blocked them in any ACL. for example .zip and .dmg 2- complete URL's for a certain page arent opened

Re: [squid-users] minor issues with squid

2009-05-28 Thread Leonardo Carneiro
RoLaNd RoLaNd escreveu: Hello all, Hello Roland, i'm facing minor problems with squid as i newly configured it. hope you could help me with the following issues: 1- certain extensions are blocked without any reason. i havent blocked them in any ACL. for example .zip and .dmg 2-

[squid-users] RE: minor issues with squid

2009-05-28 Thread joost.deheer
2- complete URL's for a certain page arent opened though the main domain could. for example www.hp.com opens normaly.. though http://www.hp.com/support/BatteryReplacement if clicked would be denied. acl x-type req_mime_type -i ^application/octet-stream$ acl x-type req_mime_type -i

[squid-users] squint issue

2009-05-28 Thread Lee Higginbotham
Good morning everyone, First things first, thank you for any help you can provide. I'm very new to squid, in fact only been working with it for about 2 1/2 - 3 weeks. So please bear with me. I did not install squid, so I'm coming in on the back end. The individual that did install it is

Re: Fwd: [squid-users] How to strip/ignore header in squid?

2009-05-28 Thread Kurt Buff
On Wed, May 27, 2009 at 12:11, Chris Robertson crobert...@gci.net wrote: Kurt Buff wrote: I cd'ed to /usr/ports/www/squid30/work/squid-3.0.STABLE15/ and saved the file as httpheader.patch, with the following results: -- squid# patch httpheader.patch Hmm...  Looks like a unified diff

[squid-users] Issue with overflow in vsprintf (sgLogError)

2009-05-28 Thread Lee Higginbotham
Good afternoon, We are currently have squid 3.0 STABLE 13 running with squidGuard 1.3. Currently the squidGuard is going into emergency mode (4 times in the last 45 minutes). Here is an excerpt of the squidGuard.log file: 2009-05-28 12:28:44 [25888] going into emergency mode 2009-05-28 12:28:44

[squid-users] Transparent proxy tproxy 4.1 wccp config

2009-05-28 Thread 7441122
hello experts, I have followed the following wiki, and set up a Ubuntu 9.04, http://wiki.squid-cache.org/Features/Tproxy4 with iptables 1.4.3, and squid 3.1, this is just a test system to avoid kernel compile problems. We have a cisco router, which i want to establish wccp, can anybody guide me

Re: [squid-users] Issue with overflow in vsprintf (sgLogError)

2009-05-28 Thread Marcus Kool
Hi Lee, I am the author of ufdbGuard. ufdbGuard is based upon squidGuard 1.2.x and is heavily modified, is a lot faster and has new features that squidGuard does not have. I suggest that you try it. It is free. -Marcus Lee Higginbotham wrote: Good afternoon, We are currently have squid 3.0

[squid-users] blocking domains certain times of day

2009-05-28 Thread Troy Piggins
Hi there. I'm very new to setting up acls and http_access etc. To date I've pretty much only set up the default Ubuntu squid.conf as a transparent proxy through iptables. I now want to implement something a little more complicated, for me anyway. I want to block access to certain websites

Re: [squid-users] blocking domains certain times of day

2009-05-28 Thread Troy Piggins
* Dan Slinky wrote : 2009/5/28 Troy Piggins t...@piggo.com acl lunchtime time 12:30-13:30 acl lunchtime_url dstdomain /etc/squid3/lunchtime_url.squid http_access allow lunchtime lunchtime_url http_access deny lunchtime_url How do I add the lunchtime requirement for weekdays only,

Re: [squid-users] blocking domains certain times of day

2009-05-28 Thread Dan Slinky
2009/5/29 Troy Piggins t...@piggo.com Now I just need to figure out how to redirect that denied page to one that says I'm sorry, that website is not allowed during office hours. :) try using deny_info http://www.squid-cache.org/Doc/config/deny_info/ HTH S.

Re: [squid-users] blocking domains certain times of day

2009-05-28 Thread Chris Robertson
Troy Piggins wrote: * Dan Slinky wrote : 2009/5/28 Troy Piggins t...@piggo.com acl lunchtime time 12:30-13:30 acl lunchtime_url dstdomain /etc/squid3/lunchtime_url.squid http_access allow lunchtime lunchtime_url http_access deny lunchtime_url How do I add the lunchtime requirement

[squid-users] Re: blocking domains certain times of day

2009-05-28 Thread Troy Piggins
* Chris Robertson wrote : Troy Piggins wrote: * Dan Slinky wrote : 2009/5/28 Troy Piggins t...@piggo.com snip / Thanks mate. I've actually tested it and was surprised how close I was to being correct. Here's what I ended up with: acl weekends time A S acl lunchtime time 12:30-13:30 acl

Re: [squid-users] FW: Re[2]: squid with tproxy

2009-05-28 Thread Amos Jeffries
7441122 wrote: I have gone through http://wiki.squid-cache.org/Features/Tproxy4 done all as required. initially we had squid as gateway, but now i want to use wccp, is tehre any how to on this one ? Not specifically for the new TPROXY. I've been watching for one. People who are familiar with

Re: [squid-users] delay pool: limit download on file types

2009-05-28 Thread Dooda Dave
Hi, This is really something! Thanks so much. I can really see real-time. Best, Dooda On Wed, May 27, 2009 at 2:01 AM, Chris Robertson crobert...@gci.net wrote: Dooda Dave wrote: Chris, Thanks. I think it works; I tested by looking at the download screen. But is there any better way i can

Re: [squid-users] position of Proxy-Authorization header (ICAP)

2009-05-28 Thread yado
Sorry,I corrected the question to a concise content. According to RFC 3507 , - Despite the above restrictions on encapsulation, the hop-by-hop Proxy-Authenticate and Proxy-Authorization headers MUST be forwarded to the

[squid-users] Squid 3.1.0.8 beta is available

2009-05-28 Thread Amos Jeffries
The Squid HTTP Proxy team is very pleased to announce the availability of the Squid-3.1.0.8 beta release! A fairly large amount of bug fixes have gone into this release. All the dozen or so bugs fixed in the last few 3.0 releases are included in this release, along with an impressive list

Re: [squid-users] Firefox not googling anymore after setting up squid

2009-05-28 Thread Amos Jeffries
Amos Jeffries wrote: On Wed, 27 May 2009 17:16:41 +0200, Boniforti Flavio fla...@piramide.ch wrote: In that case the config you posted is all correct. You have a global allow for localnet before domini_bloccati is ever tested so it can't even be a bad domain entry in there. It must be

Re: [squid-users] TCP_MISS:FIRST_UP_PARENT error when use COSS store type

2009-05-28 Thread Amos Jeffries
Nguyen Cao Cuong wrote: Thank Amos so much, I have one question, How to configure squid with coss store type to arvice TCP_IMS_HIT:NONE code in access.log? Using COSS will not automatically cause *_HIT, no more then any other storage type. AFAIK, the max-size=1048576 you already have

Re: [squid-users] direct access for local intranet urls

2009-05-28 Thread Amos Jeffries
RoLaNd RoLaNd wrote: thanks for the advice.. i've checked the link below and searched through my squid.conf and the only relevant part i've found is the following: acl QUERY urlpath_regex cgi-bin \? cache deny QUERY any advice? all i want to do is to block *.devtest.com You found the only

Re: [squid-users] Gmail attachment

2009-05-28 Thread Amos Jeffries
Nitin Bhadauria wrote: Dear Ben, I have almost 6000 users on my proxy server i can't do it from user end. Ben Scott wrote: On Tue, May 26, 2009 at 11:18 AM, Nitin Bhadauria nitin.bhadau...@tetrain.com wrote: I am using squid 3.0 with ntlm authentication. Now when a user try to attach a

Re: [squid-users] position of Proxy-Authorization header (ICAP)

2009-05-28 Thread Amos Jeffries
yado wrote: Sorry,I corrected the question to a concise content. According to RFC 3507 , - Despite the above restrictions on encapsulation, the hop-by-hop Proxy-Authenticate and Proxy-Authorization headers MUST be

[squid-users] reply header X-Cache MISS on 304

2009-05-28 Thread Chudy Fernandez
the access_log says TCP_REFRESH_HIT but the X-Cache reader reply say's MISS is there something we can do about this?

Re: [squid-users] HTCP logging?

2009-05-28 Thread Amos Jeffries
Amos Jeffries wrote: No there's not. See: http://www.squid-cache.org/bugs/show_bug.cgi?id=2627 Aye. FWIW I'm clearing up the logging code in 3.1 and extending it in 3.2. When the 3.1 cleanup is done and approved I'll take a look at how easy adding HTCP would be for that release. But

Re: Fwd: [squid-users] How to strip/ignore header in squid?

2009-05-28 Thread Amos Jeffries
Kurt Buff wrote: On Wed, May 27, 2009 at 12:11, Chris Robertson crobert...@gci.net wrote: Kurt Buff wrote: I cd'ed to /usr/ports/www/squid30/work/squid-3.0.STABLE15/ and saved the file as httpheader.patch, with the following results: -- squid# patch httpheader.patch Hmm... Looks like

Re: Fwd: [squid-users] How to strip/ignore header in squid?

2009-05-28 Thread Amos Jeffries
Amos Jeffries wrote: Kurt Buff wrote: On Wed, May 27, 2009 at 12:11, Chris Robertson crobert...@gci.net wrote: Kurt Buff wrote: I cd'ed to /usr/ports/www/squid30/work/squid-3.0.STABLE15/ and saved the file as httpheader.patch, with the following results: -- squid# patch