Re: [squid-users] v3.5.x RPM for CentOS 6

2015-03-17 Thread Dan Charlesworth
Hi Donny I gathered that much. I guess what I specifically am asking for is: - Which CentOS 6 package includes the missing perl modules? - How do I grant the “pinger” the correct permissions in CentOS 6? Cheers Dan > On 18 Mar 2015, at 4:58 pm, Donny Vibianto wrote: > > hi Dan, > > eliezer a

Re: [squid-users] Random SSL bump DB corruption

2015-03-17 Thread Dan Charlesworth
Bumpity bump Had this go down exactly the same way this past Monday at Deployment #1. > On 10 Mar 2015, at 4:51 pm, Dan Charlesworth wrote: > > Hey folks > > After having many of our systems running Squid 3.4.12 for a couple of weeks > now we had two different deployments fail today due to SS

Re: [squid-users] v3.5.x RPM for CentOS 6

2015-03-17 Thread Dan Charlesworth
*Tory — sorry. > On 18 Mar 2015, at 3:49 pm, Dan Charlesworth wrote: > > Hi Tony > > Yeah, I wouldn’t mind taking a peek at your SRPM or spec file if you can > share—thanks! > >> On 18 Mar 2015, at 3:15 pm, Tory M Blue > > wrote: >> >> I've built a 3.5 and have it ru

Re: [squid-users] (about external_acl_type problem ) two people can't login and access internet together

2015-03-17 Thread johnzeng
Hello All Whether ttl=50 (value) is too low , Maybe i will update ttl value to ttl=3600 cache=1048576 . i have a question still , Whether cached results for external_acl is reponse from helper program ? for example : if FORMAT is %SRC , and helper progrm return "OK\n" , and external_acl_type t

Re: [squid-users] v3.5.x RPM for CentOS 6

2015-03-17 Thread Dan Charlesworth
Hi Tony Yeah, I wouldn’t mind taking a peek at your SRPM or spec file if you can share—thanks! > On 18 Mar 2015, at 3:15 pm, Tory M Blue wrote: > > I've built a 3.5 and have it running. I can look and see if I can share it > with you. Don't believe there is anything special . > > Tory > >

Re: [squid-users] (about external_acl_type problem ) two people can't login and access internet together

2015-03-17 Thread johnzeng
> Hello All: > > i test splash portal via external_acl_type ... > > Although the first people succeed to login and can access internet , but > when second people succeed to login and can access internet , > > and the firest people have to login again . when the firest people > succeed to login and

Re: [squid-users] v3.5.x RPM for CentOS 6

2015-03-17 Thread Tory M Blue
I've built a 3.5 and have it running. I can look and see if I can share it with you. Don't believe there is anything special . Tory Sent via the wild blue yonder > On Mar 17, 2015, at 20:16, Dan Charlesworth wrote: > > Hey Eliezer > > Do you have any plans to maintain a Squid 3.5.x rpm for

[squid-users] v3.5.x RPM for CentOS 6

2015-03-17 Thread Dan Charlesworth
Hey Eliezer Do you have any plans to maintain a Squid 3.5.x rpm for CentOS 6? I can see you’ve published one for CentOS 7. In fact I tried to use your spec file from the EL7 version to build an EL6 rpm, but ran into errors when updating from 3.4.12: 1. Installing the separate squid-helpers pa

[squid-users] (about external_acl_type problem ) two people can't login and access internet together

2015-03-17 Thread johnzeng
Hello Dear All: i test splash portal via external_acl_type ... Although the first people succeed to login and can access internet , but when second people succeed to login and can access internet , and the firest people have to login again . when the firest people succeed to login and can acces

Re: [squid-users] Refresh ACL list only

2015-03-17 Thread Marcus Kool
On 03/17/2015 04:32 PM, Brendan Kearney wrote: On Tue, 2015-03-17 at 16:13 -0300, Marcus Kool wrote: it has a configuration option to respond with 'allow all' during a reconfiguration. a Fail-Open policy can be a security gap, and should be considered carefully before implementing. the inte

Re: [squid-users] Refresh ACL list only

2015-03-17 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 I'm already scored ufdbguard. It reconfigures momentary, without squid interruption. With arbitrarily complex ACL's. 18.03.15 1:13, Marcus Kool пишет: > > > On 03/17/2015 02:59 PM, Samuel Anderson wrote: >> Unfortunately thats not really an option

Re: [squid-users] Refresh ACL list only

2015-03-17 Thread Brendan Kearney
On Tue, 2015-03-17 at 16:13 -0300, Marcus Kool wrote: > it has a configuration option to respond with > 'allow all' during a reconfiguration. a Fail-Open policy can be a security gap, and should be considered carefully before implementing. the intention of the whitelisted URLs is to prevent acces

Re: [squid-users] Refresh ACL list only

2015-03-17 Thread Marcus Kool
On 03/17/2015 02:59 PM, Samuel Anderson wrote: Unfortunately thats not really an option for me. I've already built everything just using squid. It works great and does everything I need it to do with the exception of refreshing the ACL lists. I just need to find a way to refresh those single

Re: [squid-users] Refresh ACL list only

2015-03-17 Thread Samuel Anderson
Thanks, I'll look into using haproxy. On Tue, Mar 17, 2015 at 12:31 PM, Brendan Kearney wrote: > On Wed, 2015-03-18 at 00:08 +0600, Yuri Voinov wrote: > > Brendan reads my thoughts. :) > > > > You can, of course, use two or more squid instances and Cisco with > > configured WCCP protocol before

Re: [squid-users] Refresh ACL list only

2015-03-17 Thread Brendan Kearney
On Wed, 2015-03-18 at 00:08 +0600, Yuri Voinov wrote: > Brendan reads my thoughts. :) > > You can, of course, use two or more squid instances and Cisco with > configured WCCP protocol before it. WCCP can plays with several cache > instances in load balancing role. Running squid at this moment send

Re: [squid-users] Refresh ACL list only

2015-03-17 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Alberto, quetsion is not about this completely. ;) 18.03.15 0:08, Alberto Perez пишет: > I did this once, with external acl, you can specify a ttl of each > external acl and also make your acl reload the list any time you > want. > > My external ac

Re: [squid-users] Refresh ACL list only

2015-03-17 Thread Alberto Perez
I did this once, with external acl, you can specify a ttl of each external acl and also make your acl reload the list any time you want. My external acl loaded users (in your case domains) from a list in hard disk to memory, and then each time squid asked acl verify for a preset elapsed time to r

Re: [squid-users] Refresh ACL list only

2015-03-17 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Brendan reads my thoughts. :) You can, of course, use two or more squid instances and Cisco with configured WCCP protocol before it. WCCP can plays with several cache instances in load balancing role. Running squid at this moment sends "here I am" mes

Re: [squid-users] Refresh ACL list only

2015-03-17 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Unfortunately, there is completely impossible in current Squid realisation. Only with ufdbGuard. Or, of course, you can build hierarchical cache cluster :) with load balanser before it. And reload ACL's lists consequentially. 17.03.15 23:59,

Re: [squid-users] Refresh ACL list only

2015-03-17 Thread Brendan Kearney
On Tue, 2015-03-17 at 11:59 -0600, Samuel Anderson wrote: > Unfortunately thats not really an option for me. I've already built > everything just using squid. It works great and does everything I need > it to do with the exception of refreshing the ACL lists. I just need > to find a way to refresh

Re: [squid-users] Refresh ACL list only

2015-03-17 Thread Samuel Anderson
Unfortunately thats not really an option for me. I've already built everything just using squid. It works great and does everything I need it to do with the exception of refreshing the ACL lists. I just need to find a way to refresh those single lists without disrupting Internet traffic to the user

Re: [squid-users] Refresh ACL list only

2015-03-17 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Did you hear about rewriters and filters? I.e., squidGuard, or Dansguardian? Or, of course https://www.urlfilterdb.com/products/ufdbguard.html ? It has separate server process which can be restart VERY quickly independently of squid. 17.03.15 23:35, S

[squid-users] Refresh ACL list only

2015-03-17 Thread Samuel Anderson
Hello all, Does anyone know of a way to reload a single ACL list? I have a very complicated and large config file that takes around 30 seconds to reload when I run the (squid3 -k reconfigure) command. I have several ACL lists that need to be updated throughout the day and it would be nice if I cou

Re: [squid-users] squid-users Digest, Vol 7, Issue 70

2015-03-17 Thread Brijesh B. Mehta
Mehta wrote: >> Hello, >> >> I am new to squid and using it for few days. i found that in my squid >> configuration (which default i guess) access log of only three days is >> being maintained (/var/log/squid3/). Now i want to store access log of >> more than 3 days say fo

Re: [squid-users] How can i keep log files for longer periods?

2015-03-17 Thread Amos Jeffries
On 17/03/2015 10:50 p.m., Brijesh B. Mehta wrote: > Hello, > > I am new to squid and using it for few days. i found that in my squid > configuration (which default i guess) access log of only three days is > being maintained (/var/log/squid3/). Now i want to store access log of > more than 3 days

Re: [squid-users] How can i keep log files for longer periods?

2015-03-17 Thread squid-list
Hi, You can use the following in squid configuration to have access log for log time. *logfile_rotate 10* It will keep last 10 access log of squid. If you wish to have log for month, use it as 30. You may rotate squid log using crontab. Following will rotate log at every morning 6. 00

Re: [squid-users] How can i keep log files for longer periods?

2015-03-17 Thread Yuri Voinov
With OS facility, no? 17.03.15 15:50, Brijesh B. Mehta пишет: Hello, I am new to squid and using it for few days. i found that in my squid configuration (which default i guess) access log of only three days is being maintained (/var/log/squid3/). Now i want to store access log of more than 3 da

[squid-users] How can i keep log files for longer periods?

2015-03-17 Thread Brijesh B. Mehta
Hello, I am new to squid and using it for few days. i found that in my squid configuration (which default i guess) access log of only three days is being maintained (/var/log/squid3/). Now i want to store access log of more than 3 days say for month so what changes i need to make in my configurati