Re: [squid-users] squid_ldap_auth: WARNING, could not bind to binddn 'Invalid credentials'

2014-12-15 Thread Ahmed Allzaeem
Hi Leonardo Thanks a lot for reply , Let me ask you , do we need to do any delegation on the windows server ? Can u summarize to me wt we need on AD in additional to creating the users ? cheers From: squid-users [mailto:squid-users-boun...@lists.squid-cache.org] On Behalf Of Leona

Re: [squid-users] Splicing a connection if server cert cannot be verified

2014-12-15 Thread Soren Madsen (DREIJER)
Thanks for the quick reply, Amos. > Offering SSLv3 from a server is suicide these days. Those sites should > be on the fast decline, or at very least shunned like plague victims. > Lookup POODLE if you dont know why already. That's correct. That's why I don't want to bump such connections and ins

Re: [squid-users] Splicing a connection if server cert cannot be verified

2014-12-15 Thread Amos Jeffries
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 16/12/2014 8:11 a.m., Soren Madsen (DREIJER) wrote: > Hi all, > > By default, I want to bump all connections through my Squid > instance. However, while testing I've discovered lots of sites that > use SSLv3 Offering SSLv3 from a server is suicid

Re: [squid-users] Parent Proxy Cache Problem

2014-12-15 Thread Amos Jeffries
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 16/12/2014 2:26 a.m., squeeky wrote: >> Please check your config for "proxy-only" option on the link to >> parent proxy. That alone will prevent caching. >> >> If that option is not there, please post your config. > > Still having issues with with

Re: [squid-users] squid_ldap_auth: WARNING, could not bind to binddn 'Invalid credentials'

2014-12-15 Thread Leonardo Rodrigues
I have several squids authenticating users using ldap_auth and it works fine. Users are located on the 'Users' OU and my config lines are: (single line) auth_param basic program /usr/lib/squid/squid_ldap_auth -P -R -b "dc=myad,dc=domain" -D "cn=ProxyUser,cn=Users,dc=myad,dc=domain" -w "

[squid-users] Splicing a connection if server cert cannot be verified

2014-12-15 Thread Soren Madsen (DREIJER)
Hi all, By default, I want to bump all connections through my Squid instance. However, while testing I've discovered lots of sites that use SSLv3 or self-signed certificates, in which case I'd like to fall back to TLS passthrough mode and let the client decide whether it wants to trust the serv

Re: [squid-users] squid_ldap_auth: WARNING, could not bind to binddn 'Invalid credentials'

2014-12-15 Thread Amos Jeffries
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 16/12/2014 12:03 p.m., Ahmed Allzaeem wrote: > Hi guys > > Im trying to use squid with active directory 2008 R2 as an > external authentication > > On DC called smart.ps > > Create user squid and gave it delegation to the dc and put it also > in

Re: [squid-users] Parent Proxy Cache Problem

2014-12-15 Thread squeeky
> Please check your config for "proxy-only" option on the link to parent > proxy. That alone will prevent caching. > > If that option is not there, please post your config. Still having issues with with getting content that is served from parent to cache locally. Config below: http_port 10.77.4

[squid-users] squid_ldap_auth: WARNING, could not bind to binddn 'Invalid credentials'

2014-12-15 Thread Ahmed Allzaeem
Hi guys Im trying to use squid with active directory 2008 R2 as an external authentication On DC called smart.ps Create user squid and gave it delegation to the dc and put it also in the group admins in the OU=proxy Also create user with username a and pwd 11 Now on my linux box it

[squid-users] CVS mailing list

2014-12-15 Thread FredB
Hello, FI, the mailing list CVS seems broken http://lists.squid-cache.org/pipermail/squid-cvs/ Fred ___ squid-users mailing list squid-users@lists.squid-cache.org http://lists.squid-cache.org/listinfo/squid-users