Dear all, is there any directive to define Squid max connections
limit, or do I have to increase the RAM and CPU instead?
Thanks a lot, regards!
___
squid-users mailing list
squid-users@lists.squid-cache.org
Dear all, I have a Squid server in non-transparent mode.
All my hosts go to Internet sites using this proxy in the correct way.
But now I need the following:
When my hosts want to go to the internal URL https://www.example.com,
this request reaches Squid and it tells them to go to the internal
Dear all, I have an Ubuntu 22.04 with Squid package, and I've
configured it in order to let pass ssh protocol to Internet.
>From the own proxy, if I execute:
$ sftp -v -oConnectTimeout=20 -oPoxyCommand='nc -X connect -x
10.12.1.1:8080 %h %p' -oPort 6 user@x.x.x.x
I can login successfully.
Ok Amos, thanks a lot for your help.
I'll try to update my Squid version i order to block the given domains in
my access.log file.
Greetings !!!
El vie., 3 ene. 2020 a las 3:15, Amos Jeffries ()
escribió:
> On 3/01/20 7:09 am, Roberto Carna wrote:
> > Dear Amos, I have this log entri
ue., 2 ene. 2020 a las 2:55, Amos Jeffries ()
escribió:
> On 2/01/20 10:14 am, Roberto Carna wrote:
> >
> > Please can you tell me what I can do in order to deny logs from
> > hangouts.google.com <http://hangouts.google.com> ???
>
> Which of the several FQDN e
Hi people, I have Debian 9 + Squid 3.5.23.
I'm using squidguard to filter domains and URL's, so in
/etc/squid/squid.conf I have:
url_rewrite_program /usr/bin/squidGuard -c /etc/squidguard/squidGuard.conf
I must exclude "hangouts.google.com" domain in /var/log/squid/access.log
file.
So firstly
squid.conf and squidGuard.conf between this server
and the other running OK, and both files are similar.
Thanking in advance.
Robert
El vie., 1 feb. 2019 a las 3:45, Amos Jeffries ()
escribió:
> On 1/02/19 8:48 am, Roberto Carna wrote:
> > Dear, I have Squid 3.5.23 and I use Squidguard for URL and
Dear, I have Squid 3.5.23 and I use Squidguard for URL and domain filtering.
In squid.conf I have this line:
url_rewrite_program /usr/bin/squidGuard -c /etc/squidguard/squidGuard.conf
but in this proxy server, the line is not executed by Squid, so Squidguard
doesn't work at all.
Same
Dear, I have a Squid 3.5 server working OK.
After cloning this server two times, both the new two servers don't execute
the following line from /etc/squid/squid.conf:
url_rewrite_program /usr/bin/squidGuard -c /etc/squidguard/squidGuard.conf
If I execute "/usr/bin/squidGuard -c
eo_info?video_id=VIDEOID
>> ytimg.googleusercontent.com/vi/VIDEOID
>> and many more.
>>
>> Marcus
>>
>> On 16/08/18 11:01, Vacheslav wrote:
>> > Wouldn't it be better to try it in ufdbguard?
>> >
>> > -Original Message-
>> >
.
Please I need to know if using Squidguard it's just impossible to do
this exception, so in this case I forget it.
Thanks a lot again!!!
2018-08-16 10:17 GMT-03:00 Amos Jeffries :
> On 17/08/18 00:43, Roberto Carna wrote:
>> Dear, I have Squid + Squidguard working OK.
>>
>> Sq
Dear, I have Squid + Squidguard working OK.
Squidguard is filtering the entire www.youtube.com website.
But now I have to permit just one video from Youtube:
https://www.youtube.com/embed/ff9sDLGtnK8?rel=0=0
I have added the below URL as an exception in Squidguard:
Dear, our company has an internal Windows DNS with the "company.com"
authoritative domain. Suppose within it we have the following records:
a.company.com
b.company.com
c.company.com
Now we need to have several records maintained by other IT area
exclusively, in the same autoritative domain
Dear, our company has an internal Windows DNS with the "company.com"
authoritative domain. Suppose within it we have the following records:
a.company.com
b.company.com
c.company.com
Now we need to have several records maintained by other IT area
exclusively, in the same autoritative domain
Hi people, I have a Squid 3.1.20 for web browsing.
I have a local intranet server called "intranet.com.ar.com" resolving
to 192.168.10.10. This resolution is defined in my local DNS servers
and in /etc/hosts file from Squid.
Is there any way to send the web connections to intranet.company.com
(squid
+ dansguardian)...
Do you recommend upgrade to Debian testing version packages or just to
usetry with Squid + Squidguard ??'?
Special thanks !!!
Regards.
2018-05-10 13:55 GMT-03:00 Amos Jeffries <squ...@treenet.co.nz>:
> On 11/05/18 00:48, Roberto Carna wrote:
>> Dear Amos,
Dear, I have Squid/Dansguardian in a Debian 9 server.
My Squid packages is from Debian repo, it is the stable version:
squid 3.5.23-5+deb9u1
After execute "squid -k parse" everything is OK:
# systemctl status squid
● squid.service - LSB: Squid HTTP Proxy version 3.x
Thanks to everybody...
I've reviewed what you tell me. I've executed "squid -k parse" and
everything is ok, and I've restarted de Squid entire server.
When I use the server with IP#1, it works OK, is fastbut when I
change its IP to IP#2 (the IP from the current Squid that I want to
replace),
in download the content page.about 1 minute to do it.
The Dansguardian configuration is te same too.
I've past my configuration in the previous mail.
Thanks a lot !!!
2018-04-09 16:36 GMT-03:00 Antony Stone <antony.st...@squid.open.source.it>:
> On Monday 09 April 2018 at 21:00:21, Robe
Dear, I have implemented a server with Dansguardian 10.2.1.1 and Squid 3.5.23-5.
I've tested it with 5 users for along 2 months and always it worked OK.
But today when a moved it to production environment, it worked but
very very slow. I've just changed hostname and IP, in order to match
with
People, I've setup a transparent Squid proxy for WiFi clients. I'm
using SSL interception so I had to generate a CA private certificate
(generated from pfSense certificate manager tab).
But when I add this CA private certificate to several Android an
Iphone devices, some of the Android devices
of the connection user-remote server.
Thanks a lot again !!!
2018-02-02 12:06 GMT-03:00 Matus UHLAR - fantomas <uh...@fantomas.sk>:
> On 02.02.18 11:42, Roberto Carna wrote:
>>
>> Dear, I can't understand an important concept:
>>
>> I know that in transparent prox
Dear, I can't understand an important concept:
I know that in transparent proxy mode, I have to intercept HTTPS
traffic in order to proxy and filter it.
But I read in the pfSense's Squid help that in explicit mode there is
no need to intercept the HTTPS traffic in order to proxy and filter
Dear, I have a Squid 3.5.27 proxy server with Squidguard in
transparent mode, for HTTP and HTTPS traffic.
Everything is OK, except when I access Facebook and select a profile
from any user: in this case, the profile load the name, picture, but
doesn't load the other data at all (pictures,
Dear, I have updated Squid on pfSense to 0.4.42_1 version. But after
start the service togeteher with squidGuard, Squid crashes.
I try running from CLI in debug mode:
# squid -d 10
[2.4.2-RELEASE][ad...@fw-pfsense-guest.g-bapro.net]/var/log:
2018/01/03 12:46:44 kid1| Starting Squid Cache version
Dear, I've setup a Squid transparent proxy + Squidgard on pfSEnse 2.4
in order to filter HTTP and HTTPS web content for different types of
WiFi clients on my company:
- Android (different versions)
- Notebooks Windows 7/10
- Iphone
- Etc.
In some cases, depending on the device Operating System,
Dear, just a brief question:
I have Squid 3.4.8 on Debian running in reverse proxy mode, and I need
to know if there is any parameter in squid.conf that I have to adjust
in order to define the quantity of clients I will accept.
Or is the same if the squid receives 10 or 1.000.000 petitions at
OK Antony thank you!!
2016-06-22 18:28 GMT-03:00 Roberto Carna <robertocarn...@gmail.com>:
> Amos, just a last comment:
>
> My squid.conf from Squid3 has this line:
>
> #Default:
> # logfile_rotate 0
>
> So the parameter you mentiones it's just setup.
>
Amos, just a last comment:
My squid.conf from Squid3 has this line:
#Default:
# logfile_rotate 0
So the parameter you mentiones it's just setup.
Any other thing relative to log problem?
2016-06-22 11:42 GMT-03:00 Amos Jeffries <squ...@treenet.co.nz>:
> On 23/06/2016 1:44 a.m., Robe
OK, I'll do that.
And what about the "nocreate" option in the logrotate file for
squid3???Do I have to delete or change for waht option???
Thanks a lot again, this is my last question.
2016-06-22 14:02 GMT-03:00 Amos Jeffries <squ...@treenet.co.nz>:
> On 23/06/2016 4:32
-22 10:44 GMT-03:00 Roberto Carna <robertocarn...@gmail.com>:
> Dear Antony, thanks for your help..below is the
> /etc/logrotate.d/squid3 filebut before I have to say I've seen in
> the web that this problem is solved by enabling IPv6, and was reported
> by a ticket (https://
GMT-03:00 Antony Stone <antony.st...@squid.open.source.it>:
> On Wednesday 22 June 2016 at 14:53:23, Roberto Carna wrote:
>
>> everything was OK until the /var/log/squid3/access.log rotate to
>> access.log.1. From this moment, the access.log file is not present, and the
Dear, I've implemented a Squid3 in reverse mode, and when I test it
with some web access from my PC, everything was OK. But when I put it
in production, there are a lot of web access and everything was OK
until the /var/log/squid3/access.log rotate to access.log.1. From this
moment, the access.log
Dear, I'm using Squid in reverse proxy mode.
Everything is OK, but now I have to do this:
If a user put in the browser:
http://www.site1.com
Squid reverse has to redirect to:
http://www.site2.com/foo/
How can I do this???
Special thanks,
Roberto
Dear, we have a Squid3 as reverse proxy with default configuration.
We have a domain pointed to a web server. In this server the user
session expiration is setup in 3 hs, but each 15 minutes the session
expires.
At this time, we are not sure about the origin of the session
expiration. Taking
I add that the main line in squid3.conf is:
cache_peer 10.10.1.10 parent 80 0 no-query originserver login=PASS name=SiteXXX
Thanks again.
2015-12-15 8:39 GMT-03:00 Roberto Carna <robertocarn...@gmail.com>:
> Dear, we have a Squid3 as reverse proxy with default configuration.
&g
Development team say that a session is conformed by cookies, and the
expiration time defined is 3 hours.
2015-12-15 9:32 GMT-03:00 Antony Stone <antony.st...@squid.open.source.it>:
> On Tuesday 15 Dec 2015 at 11:39, Roberto Carna wrote:
>
>> Dear, we have a Squid3 as reverse
Dear, just one question...is it possible to use a Squid reverse proxy
with several SSL sites/certificates, all listening in TCP/443 in the
same public IP ???
Thanks a lot,
Roberto
Dear, I've implemented a Squid reverse proxy that works OK.
I have several HTTP and HTTPS sites setup in reverse mode, but now one
of them has to change the hostname from server.company.com to
mail.company.com.
If I define an alias in our internal DNS as follow:
mail.company.com CNAME
Dear, suppose I have a web server with a DNS hostname
server.company.com I want to access, is it possible to setup
squid.conf for a reverse mode that uses alias-server.company.com as
dstdomain ??? Or do I have to use the DNS hostname mandatory ???
Special thanks,
Roberto
problems and limitations as URL re-writing.
Amos
On 2014-05-29 21:47, Roberto Carna wrote:
Dear, suppose I have a web server with a DNS hostname
server.company.com I want to access, is it possible to setup
squid.conf for a reverse mode that uses alias-server.company.com as
dstdomain ??? Or do I
Dear, I have an Squid 2.7 STABLE that works OK. When I download a file
from the PC browsers or navigate, everything is OK. But when I
configure a given server to use my Squid, I can't download files with
wget or get the IDS rules with pulledpork.
With Pulledpork script:
Error 504 when fetching
Dear, the splash page work OK for Windows XP and Windows 7 with IE,
but it doesn't work for Android devices.
What can I do ???
2013/8/9 Roberto Carna robertocarn...@gmail.com:
Web page is http protocol and makes a redirect to a public web site.
With some browsers the redirect is ok
Dear, I have implemented a Splash page with Debian 7 + Squid 3.1 as folow:
external_acl_type splash_page ttl=60 concurrency=100 %SRC
/usr/local/sbin/squid/squid_session -t 7200 -b
/var/lib/squid/session.db
acl existing_users external splash_page
deny_info http://example.com/splash.html
44 matches
Mail list logo