Re: [squid-users] Auth conf help

2015-04-13 Thread Amos Jeffries
On 14/04/2015 11:26 a.m., Balázs Szabados wrote: > Hi, > > I'd like to ask your help regarding configuring authentication with Squid. > > My auth related conf: > > auth_param digest program /usr/lib/squid/digest_pw_auth -c /etc/squid/passwd Possile Problem #1: digest_pw_auth has not existed in

Re: [squid-users] does http_port sssl-bump work require-proxy-header?

2015-04-13 Thread Amos Jeffries
On 14/04/2015 4:47 a.m., Yuhua Wu wrote: > For example, is this configuration supported? > > http_port 3129 require-proxy-header ssl-bump …… > > By the way, we added acl rules: > > acl frontend src 10.0.0.0/8 > proxy_protocol_access allow frontend > > Alex > Yes that should work.

[squid-users] Auth conf help

2015-04-13 Thread Balázs Szabados
Hi, I'd like to ask your help regarding configuring authentication with Squid. My auth related conf: auth_param digest program /usr/lib/squid/digest_pw_auth -c /etc/squid/passwd auth_param digest children 5 auth_param digest realm squid auth_param digest nonce_garbage_interval 5 minutes auth_par

[squid-users] does http_port sssl-bump work require-proxy-header?

2015-04-13 Thread Yuhua Wu
For example, is this configuration supported? http_port 3129 require-proxy-header ssl-bump …… By the way, we added acl rules: acl frontend src 10.0.0.0/8 proxy_protocol_access allow frontend Alex ___ squid-users mailing list squid-users@lists.squid-ca

Re: [squid-users] Server FQDN for each request

2015-04-13 Thread Amos Jeffries
On 13/04/2015 9:58 p.m., Roman Suvorov wrote: > Dear colleagues, > > Is the setup as following possible? > > A server 99.99.99.99 hosts a single Squid with ICAP plugged in. There > two DNS records point to this server: > first.example.com -> 99.99.99.99 > second.example.com -> 99.99.99.99 > > If

Re: [squid-users] ***SPAM*** Re: Random SSL bump DB corruption

2015-04-13 Thread Stakres
Hi Amos, All, We have done as you indicate, but the index.tx is still corrupted, have a look: *V 250406120057Z 2C564651B40D1F4F6CAFFF06EA8B201580E3B678 unknown /CN=173.194.65.84+Sign=signTrusted+SignHash=SHA256 V 250406120057Z 71664F2E27C4E321B2A4F59EA3971D70

[squid-users] Server FQDN for each request

2015-04-13 Thread Roman Suvorov
Dear colleagues, Is the setup as following possible? A server 99.99.99.99 hosts a single Squid with ICAP plugged in. There two DNS records point to this server: first.example.com -> 99.99.99.99 second.example.com -> 99.99.99.99 If I put first.example.com in browser proxy settings for the first g

Re: [squid-users] Increase number of ext_ldap_group_acl processes

2015-04-13 Thread Rich549
Hi, Thanks for the response, I'd already tried that and got it working. Completely forgot to post that I'd sorted it, sorry! Thanks, Rich -- View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/Increase-number-of-ext-ldap-group-acl-processes-tp4670484p4670706.htm

Re: [squid-users] growing number of ntlm_auth helpers (was 100% cpu usage with ext auth/Excessive NTLM or Negotiate auth helper annotations)

2015-04-13 Thread Rietzler, Markus (RZF, SG 324 / )
hello, we are using squid version 3.5.3. at the moment we see a growing number of ntlm_auth helpers until they reach the much number configured with auth_param ntlm /usr/bin/ntlm_auth --helper-protocol=squid-2.5-ntlmssp auth_param ntlm realm auth_param ntlm children 192 startup=24 idle=12 conc

[squid-users] growing number of ntlm_auth helpers (was 100% cpu usage with ext auth/Excessive NTLM or Negotiate auth helper annotations)

2015-04-13 Thread Rietzler, Markus (RZF, SG 324 / )
hello, we are using squid version 3.5.3. at the moment we see a growing number of ntlm_auth helpers until they reach the much number configured with auth_param ntlm /usr/bin/ntlm_auth --helper-protocol=squid-2.5-ntlmssp auth_param ntlm realm auth_param ntlm children 192 startup=24 idle=12 concu

Re: [squid-users] Client delay pools ...doesn't work

2015-04-13 Thread Fiorenza Meini
Il 12/04/2015 16:37, Kinkie ha scritto: Hi Fiorenza, does your browser display the same error when you remove that config line and reconfigure squid? Hi, if I remove lines of squid client_delay section, browser works Regards Fiorenza -- Spazio Web S.r.l. V. Dante, 10 13900 Biella Tel.: +