Did you tried default squid?
apt-get install squid3
Maybe something else uses ldap port?
Try with (if I am not wrong):
debug_options 82,0 84,9
Do you have wireshark? Can you capture ldap requests on windows server from
Ubuntu?
Do you have firewall from Windows Server on?
>From my practice it i
Ok hmm...
One more thing, did you follow this one:
http://wiki.squid-cache.org/ConfigExamples/Authenticate/Ldap#Windows_2003_Active_Directory_adjustments
Because I use now the U13.10 version with Ubuntu's Squid 3.3.8 from
repository, and Windows 2008 R2 AD. It is working good. However, as far as
Ok so you have Windows Server 2003 R2.
Do you have all updates installed on windows server?
what shows netstat -aon in cmd?
is there port 389 open?
3.3.10 should work... Did you build it by yourself?
--
View this message in context:
http://squid-web-proxy-cache.1019090.n4.nabble.com/Cannot-get
Hi
Which version of squid do you use?
Which os do you use for squid?
Which version of AD do you use?
Is it a ssl ldap?
Thanks.
--
View this message in context:
http://squid-web-proxy-cache.1019090.n4.nabble.com/Cannot-get-basic-ldap-auth-to-work-with-AD-tp4663282p4663404.html
Sent from the S
Hi Brig,
Did you try something like this:
/usr/lib/squid3/basic_ldap_auth -P -R -u cn -b
"cn=Users,dc=mydomain,dc=com" -h ldap.mydomain.com
Please pay attention, that in practical way I defined that helper do not
provide support to such names:
john.doe
Better to use like this:
johndoe
Or Passwo
Hi Elizer,
I din't try your script yet... I am busy now with setting up the following
set of packages:
Squid+dansguardian+calmav+suricata+openswan.
I am trying to create something that replace the Forefront TMG (Proxy,
Web-cache, antivirus, ids/ips, IPsec s2s VPN)
Squid already working with LDAP
I am curious too...
--
View this message in context:
http://squid-web-proxy-cache.1019090.n4.nabble.com/Ubuntu-Server-13-10-Squid-3-3-8-WARNING-external-ACL-memberof-queue-overload-tp4663243p4663314.html
Sent from the Squid - Users mailing list archive at Nabble.com.
According
http://wiki.squid-cache.org/KnowledgeBase/DebugSections
Try to generate new logs (cache.log) E.g.:
debug_options 83,9 70,9
Play with it. And share logs here.
--
View this message in context:
http://squid-web-proxy-cache.1019090.n4.nabble.com/Help-Required-for-Squid-3-3-8-tp4663300
Hi Amos
The *right* solution is to configure IPv6 properly on the
machine as working with correct firewall rules to make it obey the local
traffic policies (even if that policy is "no IPv6 packets to leave the
machine").
Can you provide some configs or tutorials please, it would be nice to ha
I try to answer your questions, because we move in the way of writing the
huge discussion book in a post:)
>Why would it get stuck on IPV4 or IPV6?
It is my assumption, call it intuition. And the flag IPv4 resolved the main
problem, isn't it?
>Also a FD :: should not be related to any of squid h
November 13, 2013 9:43 PM
To: squid-users@squid-cache.org
Cc: Andrey
Subject: Re: [squid-users] Ubuntu Server 13.10. Squid 3.3.8. WARNING:
external ACL 'memberof' queue overload
OK got it.
The basic issue is that the helper is trying to use ip?
I am trying to understand something abo
/13 20:29:36.907| helper.cc(1180) GetFirstAvailable:
GetFirstAvailable: Running servers 1
-Oorspronkelijk bericht-
From: Eliezer Croitoru
Sent: Wednesday, November 13, 2013 7:15 PM
To: Andrey ; squid-users@squid-cache.org
Subject: Re: [squid-users] Ubuntu Server 13.10. Squid 3.3.8. WARNING
helpful ;)
references:
http://squid-web-proxy-cache.1019090.n4.nabble.com/external-acl-td4662446.html~
http://squid-web-proxy-cache.1019090.n4.nabble.com/Starting-helpers-with-ipv6-disabled-td4660978.html
-Oorspronkelijk bericht-
From: Andrey
Sent: Wednesday, November 13, 2013 3:34 PM
To: El
27; queue overload.
Request rejected 'administrator InternetAccess'.
2013/11/13 15:28:19.092| helper.cc(1180) GetFirstAvailable:
GetFirstAvailable: Running servers 1
-Oorspronkelijk bericht-
From: Eliezer Croitoru
Sent: Wednesday, November 13, 2013 12:15 PM
To: Andrey
I did. All LDAP related logs info is in previous message. However I do not
understand what all this codes means.
-Oorspronkelijk bericht-
From: Eliezer Croitoru
Sent: Wednesday, November 13, 2013 1:04 AM
To: Andrey ; squid-users@squid-cache.org
Subject: Re: [squid-users] Ubuntu
cklist:
ACLFilledChecklist destroyed 0x7f655bf98768
2013/11/13 00:47:28.350| Checklist.cc(334) ~ACLChecklist:
ACLChecklist::~ACLChecklist: destroyed 0x7f655bf98768
2013/11/13 00:47:28.350| UserRequest.cc(121) ~UserRequest: freeing request
0x7f655bf97520
But it is far from understanding for me. I
#x27;CXXFLAGS=-g -O2 -fPIE -fstack-protector --param=ssp-buffer-size=4 -Wformat
-Werror=format-security'
Thank you.
-Oorspronkelijk bericht-
From: Eliezer Croitoru
Sent: Tuesday, November 12, 2013 8:28 PM
To: squid-users@squid-cache.org
Subject: Re: [squid-users] Ubuntu Server 13.
Hi everyone
During configuration of LDAP basic and group authentication methods by
Squid, a came across this error (/var/log/squid3/cache.log):
Code:
WARNING: external ACL 'memberof' queue overload. Request rejected
'administrator InternetAccess'.For basic authentication I use following
pi
Hi list.
How is the best way to calculate the "delay pools" parameter? I have a 6
MB bandwidth, and I don't wanna only one machine use all the link a time
(1500 PCs on lan)
I also would like to have a complete example, using delay pools, delay
class, etc
[]s;
Andrey
e cache to some files (EXE, GIF,
JPG...), as it would supposed to do.
- How to set squid as FQDN?
Thanks in advance;
Andrey
-> Interesting things on squid.conf
cache_swap_low 80
cache_swap_high 85
ipcache_size 2048
fqdncache_size 5000
httpd_accel_host virtual
httpd_
behavior of the site affected on cachability of squid? In the thread
mentioned you named such site broken. As i understand, squid convert
http 1.1 to http 1.0.
Andrey Oreshnikov.
On 11/13/06, Mark Elsen <[EMAIL PROTECTED]> wrote:
Verify whether the particular object(s) can be cache
mber: 0x800CCC0D
> I have added Port 25,110 as safe port..
> Still the above error..
Outlook Express doesn't use proxy for POP3/IMAP/SMTP. Only for
external images/whatever inside e-mails.
Check your DNS & firewall settings on client cpumputer(s):
nslookup xxx.com
telnet xxx.com 25
telnet xxx.com 110
--
Best regards,
Andrey Shorin
launchctl load ~/Library/LaunchAgents/com.startsquid.plist
> and squid starts. If I kill squid, it gets restarted automatically.
> That's just what I want. But, when I reboot, squid doesn't start. Any
> ideas?
--
Best regards,
Andrey Shorin
s to lock their
workstation when they leave. Enable screensaver with password thru
group policy.
--
Best regards,
Andrey Shorin
gt; > I am new to Squid/Squid NT...so sorry if my question sounds stupid..
>> > I am facing a problem configuring SquidNT 2.5...
>> >
>> > None of my Network PC's can access Net..its running on default port 3128
>>
>>
>> What does 'telnet ip-of-squid-NT 3128' give you?
>> What does it say in the logs? access.log and cache.log
>>
--
Best regards,
Andrey Shorin
Any other solution ?
>>
> You can put it on any webserver which can access your proxy.
> Another alternative is to possibly look at the snmp extension for squid.
and yet another one is to use squidclient utility:
squidclient mgr:
--
Best regards,
Andrey Shorin
for
> different users?
As for connections speeds, read about delay pools.
http://www.squid-cache.org/Doc/FAQ/FAQ-19.html#ss19.8
--
Best regards,
Andrey Shorin
e problem??
> please I really need help...
> regards
> Daniel Bonnici
Looks like pop up goes from ActiveX control, but not because http
authorization required. So it's look into your browser
ActiveX/security settings.
And yes, I tried this behind a squid 2.5.10.
--
Best regards,
Andrey Shorin
Hello Shin,
Thursday, June 16, 2005, 11:48:00, Shin Imai wrote:
> hosts file looks fine on squid server.
not the hosts file, but hosts_file directive in squid.conf file
--
Best regards,
Andrey Shorin
during instllation?
> Shin
Look for hosts_file directive in your squid.conf
--
Best regards,
Andrey Shorin
Hello kdv,
Tuesday, June 14, 2005, 18:21:18, kdv wrote:
> One more question! :(
> Which TAG in squid.conf is responsible for displaing ERR_ pages in, for
> example, russian language?
error_directory
--
Best regards,
Andrey Shorin
first run, remove '-i calamaris.cache' option.
--
Best regards,
Andrey Shorin
iletypes that I don't want.
> How does the dollar make a difference?
Dollar sign stays for "end of string (URL)"
--
Best regards,
Andrey Shorin
old copy of dnsserver.exe?
> Have I totally missed the point here?
Most likely it's compiled with internal DNS resolver. Does it complain
on DNS tests performed on startup? See dns_testnames setting in
squid.conf
--
Best regards,
Andrey Shorin
elpful.
Look a little up the message. regexps having '$' at the end which
means 'end of string'
> Otherwise, if the request matches an "http_access allow" before the
> "http_access deny blockedfiles" the download will be successful. That
> depends entirely on the order of your http_access lines.
> Chris
--
Best regards,
Andrey Shorin
anybody know how to use Chinese Character URLS?
> Thanks very much
Through a redirector, I guess.
Best regards,
Andrey Shorin
System/Web Administration Consultant
d file (typically located in
cache directory). You may safely delete this file and try to
launch SquidNT once more.
Best regards,
Andrey Shorin
System/Web Administration Consultant
de: QUERY, status: NOERROR, id: 41
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 2, ADDITIONAL: 0
;; QUESTION SECTION:
;mail.domain.ph.IN A
;; ANSWER SECTION:
mail.domain.ph. 14400 IN A 203.167.64.22
(which means mail.domain.ph exists)
Can you ping it? Maybe, there is a problem with your name
server(s).
Best regards,
Andrey Shorin
System/Web Administration Consultant
t work.
Does anyone know, how to configure Squid to redirect all queries to
ISVW to obtain a chain
(user)---(Squid)---(ISVW)---(Inet)?
The problem is that afaik ISVW doesn't support ICP queries.
Can you give me a piece of advice?
Thanks a lot.
--
WBR,
Andrey Voitenko
39 matches
Mail list logo