[squid-users] Antwort: Re: [squid-users] Matching empty MIME-Type

2004-05-24 Thread Horst . Mundt
This works. Thanks, Andreas. Horst "Andreas Petter

[squid-users] Matching empty MIME-Type

2004-05-21 Thread Horst . Mundt
Hi, I'm using http_reply_access acls to restricht access to certain MIME-types. There are some situations where a site sends an "empty" MIME-Type (showing as "-" in access.log ), e.g when sending an http-redirect. How can I match these in an acl? Horst Disclaimer Diese E-Mail kann vertrauliche

[squid-users] Antwort: Antw: [squid-users] Antwort: [squid-users] LDAP AuthenticationtoEdirectory

2004-05-19 Thread Horst . Mundt
Theo, glad I could help :-) I think in your first config the -D parameter to squid_auth_ldap was missing. The LDAP helper needs this bind DN in order to bind to the directory in order to find out if the supplied user DN exists. If the supplied user DN exists, the helper binds to the directory wi

[squid-users] Antwort: [squid-users] LDAP Authentication to Edirectory

2004-05-19 Thread Horst . Mundt
Strange, indeed. In my config I have the -D, -w, -s, -h parameters first and then the searchfilter (-f). You might try this. Also I think there should be a blank between the "-f" and the actual filter. Dont know if this is required, though. >external_acl_type ldap %LOGIN /usr/libexec/squid_ldap_

[squid-users] credentialsttl and authenticate_ttl

2004-05-19 Thread Horst . Mundt
Can someone pls explain the difference between auth_param basic credentialsttl 2 hours and authenticate_ttl 1 hour Regards Horst Disclaimer Diese E-Mail kann vertrauliche und/oder rechtlich geschützte Informationen enthalten. Wenn Sie nicht der beabsichtigte Empfänger sind oder diese E-Mail

[squid-users] Antwort: [squid-users] Chain NTLM Auth on Squid and on Apache web server

2004-05-17 Thread Horst . Mundt
You cannot use NTLM-authentication through squid. See http://www.squid-cache.org/Doc/FAQ/FAQ-11.html#ss11.14 "CHARREAU Anthony"

[squid-users] Antwort: [squid-users] NTLM username logging problem

2004-05-11 Thread Horst . Mundt
In your acl-config the "authorizedusers" acl is maybe not evaluated since the others (allowed_hosts, our_networks) match first (see below)? http_access allow allowed_hosts http_access allow our_networks http_access allow all authorizedusers What are you trying to achieve with thes acls? Do you w

[squid-users] Antwort: Re: [squid-users] filtering by file extension (was: problem with

2004-05-04 Thread Horst . Mundt
Send all request to your antivirus-proxy and turn of scanning for the mime types you do not want scanned in your AV-software [EMAIL PROTECTED]

[squid-users] Antwort: Re: [squid-users] squid BUG?

2004-05-03 Thread Horst . Mundt
Are you sure this is a squid problem ? I had the same effect with IE and squid, but it turned out that squid used an Interscan Viruswall as parents proxy and it was a configuration isssue on the viruswall, not squid. (The viruswall has a "trickle" option that sends some Bytes to the client while i

[squid-users] Antwort: [squid-users] antivirus with squid

2004-04-28 Thread Horst . Mundt
Configuration Nr. 1 is the more secure option since all http traffic is scanned by the viruswall (which also scans for stuff like javascript "malware"). Of course this affects performance, or rather the way users experience their download. In order to scan a file (say a .zip-archive), the viruswal

[squid-users] Antwort: Re: [squid-users] Antwort: [squid-users] blocking porn sites ?

2004-04-22 Thread Horst . Mundt
What is the content of your acl file?? Hement Gopal <

[squid-users] Antwort: [squid-users] blocking porn sites ?

2004-04-22 Thread Horst . Mundt
In order to make squid read the list from afile you should enclose the filename in double quotes: acl porn1 url_regex "/usr/local/squid/etc/porn1" Otherwise squid will not read the urls from the file but match the filename itself You should also probably use "url_regex -i" (csase insensitiv

[squid-users] Antwort: Re: [squid-users] http_reply_access & LDAP external acl

2004-04-22 Thread Horst . Mundt
Thanks Henrik, this seems to work. What exactly do you mean with "quite well (but not 100%)"? Would you consider this workaround fit for use in a production environment (about 1000 users)? Regards Horst

[squid-users] http_reply_access & LDAP external acl

2004-04-21 Thread Horst . Mundt
Hi, I'm using squid-2.5.STABLE5-20040419 and OpenLDAP 2.1.29 an RedHat Professional WS. I want to restrict access to certain MIME-Types on a per-user(Group)-level. The basic idea is to have a group of users that are allowed to access html, images css, javascript only and another group ("admins")

[squid-users] Antwort: RE: [squid-users] https

2004-03-12 Thread Horst . Mundt
I had this problem with https sites even without authentication. Only occured with IE6, other browsers ot older IE worked fine. Following settings from the FAQ helped: According to Joao Coutinho, this simple solution also corrects the problem: Go to Tools/Internet Go to Options/Advance

[squid-users] How to disable DNS ?

2004-03-03 Thread Horst . Mundt
rs other than the parent proxy)) i.A. Dipl. Math. Horst Mundt Professional Communication ___ arxes Network Communication Consulting AG Tel.: +49 221 96486 - 156 Fax: + 49 221 96486 - 202 Email: [EMA