[squid-users] Custom error page for an acl

2012-08-08 Thread a bv
Hi, I would like to write an acl on squid for the block the users access to the internal domain and LAN from squid. for this i guess acl dst will help me but i also like to have a custom error page for this acl . How can i easily do that ? Regards

[squid-users] Re: Re: Character conversion between authentication and authorisation

2012-08-08 Thread Markus Moeller
Hi Amos, What is the rule for squid regarding rfc1738 escaping/unescaping ? Should the auth helpers return a rfc1738_escaped username and expect the same as input for the authorisation helper ? I don't do that at the moment in squid_kerb_auth nor in squid_kerb_ldap . Markus Amos

Re: [squid-users] Squid 3.2.0.19 beta is available

2012-08-08 Thread Eliezer Croitoru
On 8/7/2012 10:59 AM, Amos Jeffries wrote: mportant changes to note in this release: * As you should know CVE-2009-0801 security vulnerability protection was added in 3.2 series. Earlier betas attempted to protect peer caches as well as themselves, by blocking relay of untrusted requests until

Re: [squid-users] Custom error page for an acl

2012-08-08 Thread Eugene M. Zheganin
Hi. On 08.08.2012 13:35, a bv wrote: I would like to write an acl on squid for the block the users access to the internal domain and LAN from squid. for this i guess acl dst will help me but i also like to have a custom error page for this acl . How can i easily do that ? I really think it

Re: [squid-users] Squid memory usage

2012-08-08 Thread Hugo Deprez
Hello, since I changed the configuration memory usage is growing slowy. Now squid is using 17% of 4GB Eliezer, I am not sure to understand. But I am using two VM, active/passive setup with a corosync VIP. I will consider upgrading one member of the cluster to 3.1.20 (squeeze packages). DO you

Re: [squid-users] Squid memory usage

2012-08-08 Thread Simon Roscic
Hello, in my case it does not look like FwdServer memory useage is excessive (if i interpreted it correctly). I added my findings to the bug 3605, also i attached the output from squidclient mgr:mem and squidclient mgr:info to bug 3605. kind regards, Simon On 2012-08-08 05:30, Amos Jeffries

[squid-users] squid.conf ssl-bump error

2012-08-08 Thread Nicolas Michels
I have squid installed with enable-ssl and enable-ssl-crtd sbin/squid -v Squid Cache: Version 3.0.STABLE26 configure options: '--enable-ssl' '--enable-ssl-crtd' But when I try to run squid I get this error: cache_cf.cc(346) squid.conf:19 unrecognized: 'ssl_bump' FATAL: Bungled squid.conf line 42:

Re: [squid-users] Squid 3.2.0.19 beta is available

2012-08-08 Thread Ralf Hildebrandt
* Amos Jeffries squ...@treenet.co.nz: This is the counter of how many error responses were generated and logged by Squid. OK Are you using deny_info redirection? (this counter includes the 200/30x responses from that hack) Yes, massively so: deny_info http://proxy.charite.de/phishing/

Re: [squid-users] Squid memory usage

2012-08-08 Thread Eliezer Croitoru
On 8/8/2012 6:49 PM, Hugo Deprez wrote: Hello, since I changed the configuration memory usage is growing slowy. Now squid is using 17% of 4GB Eliezer, I am not sure to understand. But I am using two VM, active/passive setup with a corosync VIP. I remembered someone talking here about a VM

Re: [squid-users] squid.conf ssl-bump error

2012-08-08 Thread Dieter Bloms
Hi Nicolas, On Wed, Aug 08, Nicolas Michels wrote: I have squid installed with enable-ssl and enable-ssl-crtd sbin/squid -v Squid Cache: Version 3.0.STABLE26 configure options: '--enable-ssl' '--enable-ssl-crtd' But when I try to run squid I get this error: cache_cf.cc(346) squid.conf:19

[squid-users] squid 3.2 intercept and upstream proxy not working

2012-08-08 Thread Davide Alberani
Hi, I'm trying squid 3.2 (since I'll need some of the new features), but I'm having troubles using it in intercept mode, when used along with an upstream proxy. Requests are forwarded to squid, but never sent to the upstream proxy; using squid directly (setting it into the browser), the requests

Re: [squid-users] squid 3.2 intercept and upstream proxy not working

2012-08-08 Thread Amos Jeffries
On 09.08.2012 08:38, Davide Alberani wrote: Hi, I'm trying squid 3.2 (since I'll need some of the new features), but I'm having troubles using it in intercept mode, when used along with an upstream proxy. Which 3.2 release number please? that matters a LOT. Requests are forwarded to

Re: [squid-users] squid 3.2 intercept and upstream proxy not working

2012-08-08 Thread Eliezer Croitoru
On 8/9/2012 2:16 AM, Amos Jeffries wrote: Releases 3.2.0.14-3.2.0.18 have a standing block preventing requests with conflicting destination IP and destination domain name being passed to peers. Release 3.2.0.19 loosens that block to allow it, but only if the clients original destination IP

Re: [squid-users] squid 3.2 intercept and upstream proxy not working

2012-08-08 Thread Amos Jeffries
On 09.08.2012 12:32, Eliezer Croitoru wrote: On 8/9/2012 2:16 AM, Amos Jeffries wrote: Releases 3.2.0.14-3.2.0.18 have a standing block preventing requests with conflicting destination IP and destination domain name being passed to peers. Release 3.2.0.19 loosens that block to allow it,

Re: [squid-users] squid.conf ssl-bump error

2012-08-08 Thread Amos Jeffries
On 09.08.2012 07:05, Dieter Bloms wrote: Hi Nicolas, On Wed, Aug 08, Nicolas Michels wrote: I have squid installed with enable-ssl and enable-ssl-crtd sbin/squid -v Squid Cache: Version 3.0.STABLE26 configure options: '--enable-ssl' '--enable-ssl-crtd' But when I try to run squid I get this