Re: [squid-users] chrooting: why and how?

2004-08-31 Thread Henrik Nordstrom
On Tue, 31 Aug 2004, Joe Cooper wrote: Out of curiosity: without squid.conf in the chroot, how does a -k reconfigure work? It doesn't. It should work with a copy of squid.conf within the chroot however. Regards Henrik

Re: [squid-users] chrooting: why and how?

2004-08-31 Thread Joe Cooper
Actually, I was hoping for a clue from Henrik on how the Squid process gets access to a file outside of the chroot during a reconfigure. I believed Henrik when he said it needed to be outside of the chroot. Just looking to understand Squid's chroot implementation a more deeply. ;-) Rick G. Ki

Re: [squid-users] chrooting: why and how?

2004-08-31 Thread Rick G. Kilgore
Works just as if it was not chroot jailed at all. Actually with the conf file in the chroot I had more problems accessing external ACL and other oddities. Joe Cooper wrote: Henrik Nordstrom wrote: On Tue, 31 Aug 2004, Joe Cooper wrote: resolve.conf) that Squid relies on (it could be that share

Re: [squid-users] chrooting: why and how?

2004-08-31 Thread Joe Cooper
Henrik Nordstrom wrote: On Tue, 31 Aug 2004, Joe Cooper wrote: resolve.conf) that Squid relies on (it could be that shared libraries are pulled in before Squid chroots, and so they might not be needed--Henrik wrote the chroot code I think, or at least maintains it now, maybe he'll chime in with

Re: [squid-users] chrooting: why and how?

2004-08-31 Thread Henrik Nordstrom
On Tue, 31 Aug 2004, Rick G. Kilgore wrote: I was able to leave the squid.conf and executable on my regular volume and use the squid chroot directive to chroot squid (thanks to help from this forum). I did notice that the mime.conf files will need to be on the chroot volume, but you should be ab

Re: [squid-users] chrooting: why and how?

2004-08-31 Thread Rick G. Kilgore
I was able to leave the squid.conf and executable on my regular volume and use the squid chroot directive to chroot squid (thanks to help from this forum). I did notice that the mime.conf files will need to be on the chroot volume, but you should be able to leave the squid.conf and executable

Re: [squid-users] chrooting: why and how?

2004-08-31 Thread Henrik Nordstrom
On Tue, 31 Aug 2004, Joe Cooper wrote: resolve.conf) that Squid relies on (it could be that shared libraries are pulled in before Squid chroots, and so they might not be needed--Henrik wrote the chroot code I think, or at least maintains it now, maybe he'll chime in with clarification). If you u

Re: [squid-users] chrooting: why and how?

2004-08-31 Thread Henrik Nordstrom
On Tue, 31 Aug 2004, Boniforti Flavio wrote: I noticed that there's the option to "chroot" my squid. Now, which benefits could I get from this configuration? Added security should there be a security issue in Squid. What should I be doing/configuring for getting "chroot" to work in squid? Very litt

Re: [squid-users] chrooting: why and how?

2004-08-31 Thread Joe Cooper
Boniforti Flavio wrote: Hello all! I noticed that there's the option to "chroot" my squid. Now, which benefits could I get from this configuration? What should I be doing/configuring for getting "chroot" to work in squid? Thank you all again... chrooting Squid gives the same benefits as chrooting a

[squid-users] chrooting: why and how?

2004-08-31 Thread Boniforti Flavio
Hello all! I noticed that there's the option to "chroot" my squid. Now, which benefits could I get from this configuration? What should I be doing/configuring for getting "chroot" to work in squid? Thank you all again... -- --- Boniforti Flavio Provincia del Verbano-