[squid-users] Re: Squid 3.3.8 does not work with mobile app

2014-05-08 Thread 0bj3ct
Amos Jeffries-2 wrote > On 8/05/2014 10:33 p.m., 0bj3ct wrote: >> Eliezer Croitoru-2 wrote >>> On 05/05/2014 10:38 AM, 0bj3ct wrote: >>>> I have a transparent Squid. But no one mobile app works with it. >>> More details will be the basic answer: >>>

[squid-users] Re: Squid 3.3.8 does not work with mobile app

2014-05-08 Thread 0bj3ct
Eliezer Croitoru-2 wrote > On 05/05/2014 10:38 AM, 0bj3ct wrote: >> I have a transparent Squid. But no one mobile app works with it. > More details will be the basic answer: > What is the IP topology of the network? > What rules have you used in IPTALBES? > is it a new machine

[squid-users] Re: Squid 3.3.8 does not work with mobile app

2014-05-05 Thread 0bj3ct
Amos Jeffries-2 wrote > On 5/05/2014 6:31 p.m., 0bj3ct wrote: >> Amos Jeffries-2 wrote >>> 1399271119.105 05/May/2014:11:25:19 +0500100 84:3w:28:49:b9:e5 >>> 10.x.x.x TCP_MISS/200 10613 GET http://www.oracle.com/favicon.ico - >>> HI

[squid-users] Re: Squid 3.3.8 does not work with mobile app

2014-05-05 Thread 0bj3ct
csn233 wrote > On Mon, May 5, 2014 at 1:56 PM, 0bj3ct < > hsnvv@ > > wrote: >> Hello, >> >> I am using Squid 3.3.8 on Ubuntu 13.10. I've configured squid to filter >> wifi >> network, which will be used mostly bu mobile users. When I use mobil

[squid-users] Re: Squid 3.3.8 does not work with mobile app

2014-05-04 Thread 0bj3ct
Amos Jeffries-2 wrote > 1399271119.105 05/May/2014:11:25:19 +0500100 84:3w:28:49:b9:e5 > 10.x.x.x TCP_MISS/200 10613 GET http://www.oracle.com/favicon.ico - > HIER_DIRECT/23.64.230.140 image/x-icon > 1399271131.094 05/May/2014:11:25:31 +0500 5012 84:3w:28:49:b9:e5 > 10.x.x.x TCP_MIS

[squid-users] Re: Squid 3.3.8 does not work with mobile app

2014-05-04 Thread 0bj3ct
Hello, Amos I cannot understand what is wrong with it. What info do u need to understand what is wrong with conf? Regards, -- View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/Squid-3-3-8-does-not-work-with-mobile-app-tp4665820p4665823.html Sent from the Squid -

[squid-users] Squid 3.3.8 does not work with mobile app

2014-05-04 Thread 0bj3ct
Hello, I am using Squid 3.3.8 on Ubuntu 13.10. I've configured squid to filter wifi network, which will be used mostly bu mobile users. When I use mobile browser, squid filters all traffic thats fine, but it does not allow internet to any mobile application. For example, I logged in to linkedin an

[squid-users] Re: Squid intercept mode loading problem

2013-12-29 Thread 0bj3ct
Thanks for reply, Amos! I've solved it. Just there was mistake in configuration. Btw I see "This connection is untrusted" popup screen everytime I enter to https website. If I accept the certificate (adding as exception) then I can continue to any https website. But is it possible to enter any htt

[squid-users] Squid intercept mode loading problem

2013-12-28 Thread 0bj3ct
Hi! I've configured hotspot with squid 3.3.8 in intercept mode. But web pages load very slowly. Can I configure squid to work faster or the speed does not depend on squid conf? By default hotspot speed is 2mbps, but it loads like 64/128 kbps. Regards, -- View this message in context: http://

[squid-users] Squid Intercept + Https + Cache_peer parent

2013-12-21 Thread 0bj3ct
hello! can I use Squid in intercept mode with parent cache_peer and handle http/https sslbump requests? I configured everything, when I start squid in cache.log it writes: "Accepting Http Socket connections at port 3129. Accepting Http NAT Socket Connections at port 3128. Accepting Ssl bumped Http

[squid-users] Squid 3.3.8 HTTPS "This Connection is Untrusted"

2013-12-20 Thread 0bj3ct
Hello! At last I configured transparent squid with http/https, added certificate and enabled in squid.conf helper crtd program for dynamic certs. :) When I type any https website "This Connection is Untrusted" popup shows, and if I add this site as exception to my browser Squid shows ERR_page "Err

[squid-users] Squid 3.3.8 https problem

2013-12-19 Thread 0bj3ct
Hello! + I've got squid source from ubuntu repo. (apt-get source squid3) + Then added --enable-ssl and --enable-ssl-crtd in /debian/rules file + Then run the command "debuil -us -uc" + Installed squid3*.deb squid3-common*.deb squidclient*deb + Created Certificate with command: "openssl req -new -

[squid-users] Squid 3.3.8 SSL Error

2013-12-19 Thread 0bj3ct
Hi. I've compiled squid with options --enable-ssl --enable-ssl-crtd qand created certificate. But when I reconfigure Squid I get the following error: FATAL: no valid signing SSL certificate configured for https_port 0.0.0.0:3127 Squid Cache (Version 3.3.8): Terminated abnormally. Any ideas how c

[squid-users] Re: Squid https caching

2013-12-18 Thread 0bj3ct
No, I don't get any errors. Does this build support https caching or recompiling is the only solution? (I have tried for several times to compile, getting library errors, that is why if it is possible I want without compiling) Regards, -- View this message in context: http://squid-web-proxy-ca

[squid-users] Squid https caching

2013-12-18 Thread 0bj3ct
Hello. Can anybody tell me can I cache https requests with squid options described below? Squid Cache: Version 3.3.8 configure options: '--build=x86_64-linux-gnu' '--prefix=/usr' '--includedir=${prefix}/include' '--mandir=${

[squid-users] Re: Squid 3.3.8 request header

2013-12-18 Thread 0bj3ct
Hello Is ssl enabled in squid 3.3.8? At last I solved my problem with intercept, but clients cannot connect via https. I did not notice --enable-ssl when run "squid3 -v".. ## Output of "squid -v" : # Squid Cache: Version 3.3.8 configure options:

[squid-users] Re: Squid 3.3.8 request header

2013-12-18 Thread 0bj3ct
it stopped working... I am agree with you, it seems something was wrong with it, but I reconfigured squid several times and it was still working... How can I configure transparent proxy with squid 3.3.8 ? I have no idea, was working on Squid for about 3 weeks.. What I am doing wrong? I've tried eve

[squid-users] Re: Squid 3.3.8 request header

2013-12-18 Thread 0bj3ct
Cannot understand, if Squid does not use the conf file, how can I see all requests in access.log? By the way client uses internet with "No-Proxy" configured in his browser settings. And Squid redirects client to deny_info page, until I add them to allowed mac addresses list.. How all these work? R

[squid-users] Re: Squid 3.3.8 request header

2013-12-18 Thread 0bj3ct
Thanks, Amos. Now it is working, I cannot get X-Forwarded-For header, but instead Squid does not change request's source address, that's why I can directly get source address. Everything is okay, I can see client's requests in access.log file and squid works in intercept mode. But in cache.log som

[squid-users] Re: Squid 3.3.8 request header

2013-12-17 Thread 0bj3ct
Thanks, I will check my iptables and network rules again. Regards, -- View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/Squid-3-3-8-request-header-tp4663897p4663914.html Sent from the Squid - Users mailing list archive at Nabble.com.

[squid-users] Re: Squid 3.3.8 request header

2013-12-17 Thread 0bj3ct
Hello, Amos ## My squid.conf file: ### cache_peer parent 8080 0 default no-query login=usr:pwd dns_v4_first on acl allow_mac arp "/home/user/Desktop/allow_mac.txt" acl spring_url dst 10.xx.xx.xx never_direct deny spring_url never_direct

[squid-users] Re: Squid 3.3.8 request header

2013-12-17 Thread 0bj3ct
Hi. Client computer is using Squid in transparent mode, I want to get client's ip address from his request header. Client ---> Squid ---> no request header X-Forwarded-For I've tried out follow_x_forwarded_for allow/deny all forward_for on/off/transparent/truncate request_header_access X-Forwa

[squid-users] Squid 3.3.8 request header

2013-12-17 Thread 0bj3ct
Hello. Am using Squid in transparent mode. How can I get request header x-forwarded-for from client using squid? Regards, -- View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/Squid-3-3-8-request-header-tp4663897.html Sent from the Squid - Users mailing list arc

[squid-users] Re: Squid 3.3.8 in intercept mode

2013-12-16 Thread 0bj3ct
Amos, how can I configure squid? I have 1 proxy A with cache_peer parent proxy P. And I want to use A as intercept proxy in local network. proxy A will read mac adresses from .txt file and allow them to use web. Bu if the client's mac address is not in .txt file proxy A must redirect him to my appl

[squid-users] Re: Squid 3.3.8 in intercept mode

2013-12-16 Thread 0bj3ct
Yes, you are right, client cannot connect to 10.* host when squid is in intercept mode. Can you help me to solve it? -- View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/Squid-3-3-8-in-intercept-mode-tp4663869p4663877.html Sent from the Squid - Users mailing list

[squid-users] Re: Squid 3.3.8 in intercept mode

2013-12-16 Thread 0bj3ct
.. It seems something wrong with proxy-forwarding. My cache.log content: 2013/12/11 02:28:50 kid1| ERROR: No forward-proxy ports configured. 2013/12/11 02:28:50 kid1| ERROR: No forward-proxy ports configured. 2013/12/11 02:28:50 kid1| ERROR: No forward-proxy ports configured. 2013/12/11 02:28:50 k

[squid-users] Re: Squid 3.3.8 in intercept mode

2013-12-16 Thread 0bj3ct
btw my squid.conf file: cache_peer parent 8080 0 default no-query login=usr:pswd acl allow_mac arp "/home/user/Desktop/allow_mac.txt" acl spring_url dst 10.xx.xx.xx never_direct deny spring_url never_direct allow all acl SSL_ports port 443 acl Safe_ports port 80 # http acl Safe_ports port 21 #

[squid-users] Re: Squid 3.3.8 in intercept mode

2013-12-16 Thread 0bj3ct
btw my squid.conf file: cache_peer proxy.bankofbaku.com parent 8080 0 default no-query login=usr:pswd acl allow_mac arp "/home/user/Desktop/allow_mac.txt" acl spring_url dst 10.xx.xx.xx never_direct deny spring_url never_direct allow all acl SSL_ports port 443 acl Safe_ports port 80 #

[squid-users] Squid 3.3.8 in intercept mode

2013-12-16 Thread 0bj3ct
Hi. I was using Squid in normal mode and it worked perfect. I configured to show my own html page in squid.conf with command: "deny_info all" squid shows my page instead of ACCESS DENIED page and I can get clients ip from request header. But I have a new task, that's why I must switch squid to

[squid-users] Re: ip hiding in squid-3.3.8

2013-12-12 Thread 0bj3ct
Thank you, I solved it. You are right, I can take ip address from request headers. Regards, -- View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/ip-hiding-in-squid-3-3-8-tp4663800p4663807.html Sent from the Squid - Users mailing list archive at Nabble.com.

[squid-users] Re: ip hiding in squid-3.3.8

2013-12-12 Thread 0bj3ct
Yeah, you are right. But I need to give internet service to clients for 30 minutes per session. Clients use DHCP, that is why I cannot do it with acl src. I need to filter with client's MAC address. But how to configure session ttl with mac adresses? -- View this message in context: http://squi

[squid-users] Re: ip hiding in squid-3.3.8

2013-12-12 Thread 0bj3ct
I want to get MAC address of the client (in the same subnet). I tried to use external_acl_type, but noticed maybe there is no option for ARP. That is why I wrote a web application. I need to get ip address of the client, which uses Squid as a proxy server.. When client enters any website I get his

[squid-users] ip hiding in squid-3.3.8

2013-12-12 Thread 0bj3ct
Hi, Am using Squid 3.3.8. Want to prevent the Squid server to change ip addresses of clients. How can I do it? How to disable ip replacing in Squid? -- View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/ip-hiding-in-squid-3-3-8-tp4663800.html Sent from the Squid -