Hi Jason Haar,
Trend micro (Stop inbound threats & Secure outbound data) is one of the
best Inter Scan Web Security Virtual Appliance.
And also have listed other AV vendor:
Samba-vscan-ICAP & isilonicap AV scan (EC2) , etc..
Regards,
Visolve Squid
On 8/18/2014 3:00 PM, Jason Haar wr
squid.conf file so that
we will check the issue and help you out.
If it is not going through squid then let us know your iptables rules.
Thanks
Visolve Squid Support Team
On 7/5/2014 2:59 PM, Mark jensen wrote:
I have deploy Transparent proxy using this tutorials:
on L3 switch:
http://wiki.squid
Hello,
We have a problem with the squid when accessing a servlet page through
the squid proxy.
It is report page where the inputs are taken from the user and the
servlet manipulates the report and present it in the page.
Normally it takes around 45-60 seconds to generate the report. So we are
g
Johan,
You have missed '--enable-linux-netfilter' option when installing squid.
You should use http_port tproxy transparent and do not use
tcp_outgoing_address in the squid.conf.
Before compiling squid, please make sure libcap-dev is installed.
Thanks
ViSolve Squid Team
johan
,
ViSolve Squid Team.
y.php
Thanks
ViSolve Squid Team.
http://www.visolve.com
Probably, you can change the ulimit value and then try with
--with-filedescriptors option/. /It may work.
Change the ulimit value: root#ulimit -HSn 32768
or try
client_persistent_connections off
server_persistent_connections off
in the squid.conf configuration.
Regards,
ViSolve Squid Team
Hi Mirza,
Yes, you can do for client IP also as you have done for url_regex ACL.
like
acl full src "/etc/squid/full.txt"
acl chatonly src "/etc/squid/chat.txt"
You can mention the ip address in the respective text file one below the
other.
Regards
Visolve Squid Team
Jeff,
cache_mem keeps the frequently accessed objects in RAM, while cache_dir
stores the objects in disk.
When you increase cache_mem, reduce the size of cache_dir.
Squid requires more than 1GB of RAM for every 100 GB of cache in hard disk.
Regards
Visolve Squid Team.
Jeff P. wrote:
I
Jeff,
If you have 2GB of RAM, you can use all 146GB for cache dir.
Regards
Visolve Squid Team.
Jeff P. wrote:
I have a 146G SAS harddisk with 15000 rpm, it's used for cache storage.
How large is best suitable when I set up it for cache_dir?
I'm running squid-3.0.9 on Linux OS.
thanks.
cache_peer parent 0 no-query originserver
Example:
http_port 80 vhost
cache_peer proxy.nour.net.sa parent 8080 0 no-query originserver
For more Details: http://www.visolve.com/squid/squid26/contents.php
Thanks,
-Visolve Squid Team
www.visolve.com/squid/
dirtybugg wrote:
Hi please help me i
parent 8090 0 no-query no-digest
login=PASS
cache_peer_access parentB.mydomain.local deny !portB
Thanks,
Visolve Squid Team
www.visolve.com/squid/
Matthew Smith wrote:
Hello!
I have a squid box that I want to have listen on two ports for
requests. I also have two parent proxies. I'd li
Hello Balram,
Check with your system name by using this command in cygwin "hostname"
. Then based on the output , set the "visible_hostname" in squid
configuration.
Example:
$ hostname
admin
$
visible_hostname admin
Thanks,
Visolve Squid Team
www.visolve.com/squid/
Ba
-bin/cachemgr.cgi
Thanks,
Visolve Squid Team
www.visolve.com/squid/
shaun p martin wrote:
Hello,
I'm not having any luck using the cachemgr.cgi script.
When I run it against squid, it records a tcp miss, and forwards the
request to the default parent, which returns jumbled html... inste
Hello all,
We have updated our Squid configuration manual for 2.6 version. It is
available at http://www.visolve.com/squid/squid26/contents.php
We have included examples, wherever possible, to make understanding
easier. We hope our contribution would help potential squid users.
Thanks,
ViSol
e swap.state files from your cache directories.
3. Start Squid again. It will rebuild swap.state from the cache files.
Thanks,
ViSolve Squid Team.
www.visolve.com/squid/
following
configuration in squid.conf.
http_port 3128 transparent
Thanks,
Visolve Squid Team
www.visolve.com/squid
.
Thanks,
Visolve Squid Team.
www.visolve.com/squid/
/%h] [%
#logformat common %>a %ui %un [%tl] "%rm %ru HTTP/%rv" %Hs %#logformat combined %>a %ui %un [%tl] "%rm %ru HTTP/%rv" %Hs %"%{Referer}>h" "%{User-Agent}>h" %Ss:%Sh
Thanks,
Visolve Squid Team.
www.visolve.com/squid/
configuration can be done by using the following ACL setting in squid.conf
acl IP_List src "/usr/local/iplist.txt"
acl addresses dstdomain "/usr/local/addresslist.txt"
http_access allow addresses IP_List
Thanks,
Visolve Squid Team
www.visolve.com/squid/
?
Hello Siju,
The list of sites can be blocked by using the following configuration in
squid.conf.
acl blocked_sites dstdom_regex "/usr/local/sites.txt"
http_access deny blocked_sites
Thanks,
Visolve Squid Team
www.visolve.com/squid/
abnormally.
Hello Bengtsson,
TAG: external_acl_type
This option defines external acl classes using a helper program to
look up the status
external_acl_type name [options] FORMAT.. /path/to/helper [helper
arguments..]
Thanks,
Visolve Squid Team,
www.visolve.com/squid/
page dstdomain 1sk.ru
acl our_nets src 192.168.21.0/24 192.168.22.0/24
http_access allow page
http_access allow auth_users our_nets
Thanks,
Visolve Squid Team
www.visolve.com/squid/
filedescriptors
2006/09/19 14:37:28| WARNING! Your cache is running out of
filedescriptors
Hello Dny,
Squid might be compiled with low number of filedescriptors. So need to
increase the filedescriptor value by using "ulimit -HSn " and
recompile the squid.
Thanks,
Visolve
squid -z command to work. When I type it out, I get the
message
FATAL: Failed to make swap directory /usr/local/var/cache: (13)
Permission denied
Hello Shatford,
Check the file permission for /usr/local/var/cache
Thanks,
Visolve Squid Team.
www.visolve.com/squid/
ifetime to set
for all open descriptors during shutdown mode. Any active clients after
this many seconds will receive a 'timeout' message.
Thanks,
Visolve Squid team
www.visolve.com/squid/
up ID (taken from the password file)
and supplementary group list from the from groups membership of
cache_effective_user.
Thanks,
Visolve Squid Team
www.visolve.com/squid/
squid-2.5.STABLE14]#./configure --help
Thanks,
Visolve Squid Team
www.visolve.com/squid/
it in the /etc/rc.local file. For
more info visit this page:
http://www.squid-cache.org/Doc/FAQ/FAQ-3.html#ss3.6
Thanks,
Visolve Squid Team
www.visolve.com/squid/
erver
http_access allow all
Thanks,
Visolve Squid Team
www.visolve.com/squid/
pair or group of caches forward requests to each other. This can
happen when Squid uses ICP, Cache Digests, or the ICMP RTT
database to select a next-hop cache.
Thanks,
Visolve Squid Team
www.visolve.com/squid/
tering the following line in squid source file
src/errorpage.c.
Line:69: "Generated %T by %h (%s)\n"
In the above line %s denotes the squid version which can modified to the
requirement.
Thanks,
Visolve Squid Team
http://www.visolve.com/squid/
access rules in squid.conf.
Thanks,
Visolve Squid Team
http://www.visolve.com/squid/
Rayudu Madhava wrote:
Sir,
Delay Pools in squid 2.6 stable 2 (20060814) seems
not working..
Hello Madhava,
Delay pools now work again in squid-2.6STABLE3.
For more details visit:
http://www.squid-cache.org/Versions/v2/2.6/squid-2.6.STABLE3-RELEASENOTES.html
Thanks,
Visolve Squid Team
connection
management. The authentication is a three step (5 way) handshake per TCP
connection, not per request.
For more details to configure ntlm visit : http://www.visolve.com/squid/
Thanks,
Visolve Squid Team
http://www.visolve.com/squid/
different from older
version. It can be done by the following modification in squid.conf
http_port 80 vhost
cache_peer virtual parent [server listen port] 0 no-query originserver
http_access allow all
Thanks,
Visolve Squid Team
http://www.visolve.com/squid/
the downloands for specificied IP's by using the following acl
setting in squid configuration file(squid.conf).
acl restricted_IPs src "/usr/local/ip_list_file"
acl restricted_dwnlds urlpath_regex [i] \.mp3$ \.exe$
http_access deny restricted_dwnlds restricted_IPs
Thanks,
Visolve Squid Team
http://www.visolve.com/squid/
Kathuria,
Yes. It can be done by using the following configuration in squid.conf.
acl allow_users src "/usr/local/squid/iplist_for_allowusers"
http_access allow allow_users
http_access allow auth_users
Thanks,
Visolve Squid Team
http://www.visolve.com/squid/
#head-fd9b4b7ba1854a3c21796173af9d0b9aee33e376
Thanks,
Visolve Squid Team
http://www.visolve.com/squid/
,
Squid might be compiled with 1024 filedescriptors. So need to set the
"ulimit -HSn 2048" and recompile the squid.
Thanks,
Visolve Squid Team
http://www.visolve.com/squid/
: giving up after 31 tries
and 306.2 seconds
Hello Mazhar,
Check your DNS setup and cache.log messages
Thanks,
Visolve Squid Team
http://www.visolve.com/squid/
;s help feature. Also, some firewalls, LAN scripts,
or Internet Service Providers (ISP) prevent access to the on-line
application because of the port or IP address.
For more details about access list and ACL elements visit :
http://wiki.squid-cache.org/SquidFaq/SquidAcl
Thanks,
Visolve Squid Team
http://www.visolve.com/squid/
fused"
and "404 Not Found") are negatively-cached for a configurable amount of
time. The default is 5 minutes. Note that
this is different from negative caching of DNS lookups.
Check with negative_ttl directive in squid.conf file.
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
can be done by using the following directives
http_port 80 vhost
cache_peer virtual parent 0 no-query originserver
xxxx-Server listen port
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
e Details visit:
http://wiki.squid-cache.org/SquidFaq/ConfiguringSquid#head-f7c4c667d4154ec5a9619044ef7d8ab94dfda39b
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
Andrew Yoward wrote:
Hi Folks,
how to turn off caching of HTML?
Hello Andrew,
It can be done by using following ACL
acl html rep_mime_type -i text/html
cache deny html
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
auth_users proxy_auth REQUIRED
acl restricted src "/usr/local/squid/iplist"
acl allow_user src 172.16.1.27
http_access allow allow_user
http_access allow auth_users restricted
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
2.16.1.57: transparent
For more detials about squid-2.6 at :
http://www.squid-cache.org/Versions/v2/2.6/squid-2.6.STABLE1-RELEASENOTES.html
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
g/SquidFaq/SquidLogs#head-2914f3a846d41673d4ae34018142e672b8f258ce.
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
Mehmet, Levent (Accenture) wrote:
Hi
We have just installed Squid and I would like to know how rotate the
logs files.
Hello Mehmet,
The command " squid -k rotate" will rotate the log files.
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
Michael Ellis wrote:
Hi,
I was wondering if anyone knows of a way to configure squid so that it does
not write the URL to access.log. All I want to know is who was browsing the
web from which computer and when (date, client ip, and authname). This is to
comply with personal privacy and informat
wrong?
thanks for taking time reading my mail...
Regards
Yong
Hello Yong,
Check and send the cache.log messages while you are downloading through
proxy.
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
elieved to be in the cache, but
could not be accessed.
For more details of squid status codes in:
http://wiki.squid-cache.org/SquidFaq/SquidLogs#head-2914f3a846d41673d4ae34018142e672b8f258ce
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
more details visit:
http://wiki.squid-cache.org/SquidFaq/InterceptionProxy#head-e56904dd4dfe0e21e5c2903473c473d401533ac7
Thanks,
Visolve Squid Team,
http://squid.visolve.com
)
To get back to my question.is it possible, can Squid or any o= ther program do that??? I tried searching on the net but wasn= 't very successful.
Hello Merwe,
Yes. It is possible. You can try with the following ACL
acl aclname time [day-abbrevs] [h1:m1-h2:m2]
--
Thank
dstdomain .domain?.tld
Thanks,
Hello Bryan,
Try with ACL
acl aclname dstdom_regex [-i] xxx..
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
rong, any ideas? - I thought squid was configured
to do caching by default.
Hello Thomas,
Squid doesnot support to cache the dynamic pages. It only cache the
static html pages.
We guess your server might be filling stage in cache.
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
owing modification in
squid.conf
http_port 80 vhost
cache_peer virtual parent 80 0 noquery originserver
(or)
cahce_peer [backend server IP] parent 80 0 noquery originserver
http_access allow all
Thanks,
Visolve Squid Team,
http://squid.visolve.com
uid=%s -h yourdomain.com
acl password proxy_auth REQUIRED
http_access allow password
http_access deny all
This Squid-LDAP Setup allows the users in the LDAP to access the pages
and deny all the others.
Similarly you can configure with the other authentication methods.
--
Thanks,
can try with Server IP address instead of virual .
cache_peer [Ip address] parent 80 0 no-query originserver
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
file.
cache_peer virtual parent 80 0 no-query originserver
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
gain.
Also you can check to know whether the port 81 is opened.
#telnet localhost 81
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
n corrupted. Such corruption can
occur on unexpected system shutdowns (power failure, kernel panic etc).
You can try with the following
1. Shut down squid.
2. Remove the swap.state files from your cache directories.
3. Start Squid again. It will rebuild swap.state from the cache
files.
--
Than
query
cache_peer proxy.visolve.com2 parent 3128 3130 round-robin no-query
For more details visit:
http://squid.visolve.com/squid/squid24s1/glossary.htm.
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
cal/squid/sbin/squid
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
sure
that a previous user had got the update before.
Hello John Mok,
Squid won't support caching of dynamic pages.
acl QUERY urlpath_regex cgi-bin \?
no_cache deny QUERY
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
o Manganelli,
Check your auth_param configuration in squid.conf file.
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
e objects which URLs match user
specified regular expressions. A more troublesome feature is the ability
to remove files squid does not seem to know about any longer.
For more details of purge tool at:
http://www.wa.apana.org.au/~dean/squidpurge/
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
directive to solve your problem.
For more details see:
http://www.visolve.com/squid/squid30/accesscontrols.html#cache_peer_access
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
pass some directive
in squid's configuration file on machine 'A' too?
Hello Santhosh Rani,
For more detailed configuration of squid forward all requests to another
proxy: http://info.ccone.at/INFO/Squid/FAQ-4.html#ss4.9
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
se at the same
time the same accounts on different machine and it was possible. I
need to prevent it, because postal police couldn't believe in ubiquity..
Hello Davide,
You can try with "acl aclname max_user_ip [-s] number" directive in
squid.conf.
--
Thanks,
Luís Fernando C. Talora wrote:
Hum, I see now...
And how would the acl line to group those ACLs into one be like?
Hello Fernando,
You can try with following acl
acl usr_sites dstdomain site1, site2, site 3... (or)
acl usr_sites dstdomain "/path/to/sitesfile"
--
Thanks,
Vis
ossary.htm#access.log.
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
/neighbour.htm.
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
ut all not needed drivers same
results
Hello Bonder,
Your new server might be started with filling stage in cache . It will
be fast when the cache is full.
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
the old Expires
and Date headers, even though it seems to be using new values "under
the hood".
This will confuse downstream caches, won't it?
Hello Lawrence,
We guess this is something to do in webserver.
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
Oshio,
Check your cache.log whether squid is running . If squid is running
check the access.log while you are browsing.
For more details about squid quick start guide:
http://squid.visolve.com/squid/sqguide.htm
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
cl request_max_250 external request_body
256
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
ost.
For more details: http://squid.visolve.com/squid/reverseproxy.htm
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
think the only
# one who can access services on "localhost" is a local user
#http_access deny to_localhost
http_access allow client_vlan
http_access deny all
Hello Matteson,
Your password might not be match with cachemgr_passwd.Check the
cachemgr_passwd directive in squid.conf
--
T
rect record, try changing the dnsserver.
Thanks,
Visolve Squid Team,
http://squid.visolve.com
ed_sites
http_access deny restricted
You can create a file(restrict.txt) to list the restricted sites.
For more details: http://www.squid-cache.org/Doc/FAQ/FAQ-10.html
Thanks,
Visolve Squid Team,
http://squid.visolve.com
e in browser while you are browsing
these sites.
Thanks,
Visolve Squid Team,
http://squid.visolve.com
7;not ok' acl? :-)
Hello John,
You can try with the following
acl FILE urlpath_regex [-i]\.dll
acl FILE1 urlpath_regex [-i]\.dll
http_access allow FILE
http_access deny FILE1
Thanks,
Visolve Squid Team,
http://squid.visolve.com
<http://squid.visolve.com>
acl.
acl domain_block dstdom_regex [-i] playboy.com
(or)
acl domain_block url_regex [-i] playboy.com
http_access deny domain_block
Thanks,
Visolve Squid Team,
http://squid.visolve.com
t there is 1024 file descriptor available at startup.
Hello Yilmaz,
Squid might be compiled with 1024 fildescriptors. So You need to set the
ulimit -Hsn 8192
and recompile the squid
Thanks,
Visolve Squid Team,
http://squid.visolve.com
nable-basic-auth-helpers=LDAP,MSNT,NCSA,PAM,SMB,YP,getpwnam,multi-domain-NTLM,SASL,winbind"
with the authentication methods as your requirement.
NTLM auth helper should work for your situation.
Thanks,
Visolve Squid Team,
http://squid.visolve.com <http://squid.visolve.com/>
uid.visolve.com/squid/sqguide.htm for configuring squid.
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
dnsserver from command line using dig
dig @dnsnameserver goolge.com.br
If does not get the correct record, try changing the dnsserver.
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
On Wed, 2006-06-07 at 08:17 -0700, Daniel EPEE LEA wrote:
> Hello,
>
> Does anyone have links about squid + websense
> integration ?
> Is there an altenative to Websense in the opensource
> world ?
>
> Thanks for links and advice.
>
> Regards,
>
> Daniel
>
>
> ---
ad_timeout then that will be
logged in the cache.log as ERR_READ_TIMEOUT
So check your cache.log
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
TIA
>
Hello Tia,
Check the "delay_pools" configuration directive in squid.
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
he following
refresh_pattern -i www.site.com/. 4320 100% 43200 override-expire
override-lastmod
--
Thanks,
Visolve Squid Team,
http://squid.visolve.com
..
>
> Thanks
>
Hello ,
You could write a redirector and when the url matches for an image, it
can be replaced with a different one (url having different image). But
editing the image is not trivial.
Thanks,
Visolve Squid Team,
http://squid.visolve.com
uid configuration has to me modified as given in
http://squid.visolve.com/squid/reverseproxy.htm Let us know if you have
some specific questions.
Thanks,
Visolve Squid Team,
http://squid.visolve.com
orking, can anyone tell me how to even begin to fix this
> problem, and get there proxy up and running again? I am absolute
> clueless
Hello Roux,
Could you send me the details of your version,log files and
configuration.
Thanks,
Visolve Squid Team,
http://squid.visolve.com
s timestamp, but if you like then you
can use %t instead for a timestamp using local time zone.
"Generated %t by %h (%s)\n"
Thanks,
Visolve Squid Team,
http://squid.visolve.com
elevant
squid configuration details.
Thanks,
Visolve Squid Team,
http://squid.visolve.com
ou can visit for more
details:http://www.squid-cache.org/Doc/FAQ/FAQ-23.html#ss23.5
Thanks,
Visolve Squid Team,
http://squid.visolve.com
regex cgi-bin \?
no_cache deny QUERY
you can to add \.php$
For more details visit this page:
http://jmason.org/software/sitescooper/tao_regexps.html
and no_cache directive.
Thanks,
Visolve Squid Team,
http://squid.visolve.com
1 - 100 of 137 matches
Mail list logo