Re: [squid-users] Transparent Squid Proxy Server

2015-06-23 Thread Reet Vyas
Hi Below is my squid file , I have configured squid 3.5.3 with ssl, but I cant filter https traffic and also in access log I cant see https in access logs. # # Recommended minimum configuration: # # Example rule allowing access from your local networks. # Adapt to list your (internal) IP networ

[squid-users] TCP_MISS/503

2015-06-23 Thread HackXBack
some times http pages give squid error page in access.log i see TCP_MISS/503 what should be the problem? i checked iptables and squid.conf but seems every thing look fine ..!! thanks. -- View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/TCP-MISS-503-tp4671863.html

Re: [squid-users] TCP_MISS/503

2015-06-23 Thread HackXBack
The requested URL could not be retrieved -- View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/TCP-MISS-503-tp4671863p4671864.html Sent from the Squid - Users mailing list archive at Nabble.com. ___ squid-users mailing li

[squid-users] acl for redirect

2015-06-23 Thread Mike
We have a server setup using squid 3.5 and e2guardian (newer branch of dansguardian), the issue is now google has changed a few things around and google is no longer filtered which is not acceptable. We already have the browser settings for SSL Proxy set to our server, and squid has ssl-bump en

Re: [squid-users] Time out where? TCP_MISS_TIMEDOUT

2015-06-23 Thread Amos Jeffries
On 24/06/2015 3:10 a.m., Sebastian Goicochea wrote: > I've found several of these in my access.log > > 1435009516.011 899906 10.60.3.221 TCP_MISS_TIMEDOUT/200 8790 GET > http://t4.kn3.net/taringa/7/5/4/5/0/5/blackz89/236x177_1F2.jpg - > ORIGINAL_DST/104.18.42.237 image/jpeg > 1435009516.011 899840

Re: [squid-users] Doubt about private ip "leaking"

2015-06-23 Thread Amos Jeffries
On 24/06/2015 9:42 a.m., Joao Paulo Monticelli Gaspar wrote: > Hello guys, > > Usually I check open ports using a site http://canyouseeme.org when I'm on > a client and need to do some kind of NAT etc. > > On one of my clients I'm running a SQUID v3.1.10 as a transparent proxy, > and when I open

[squid-users] Doubt about private ip "leaking"

2015-06-23 Thread Joao Paulo Monticelli Gaspar
Hello guys, Usually I check open ports using a site http://canyouseeme.org when I'm on a client and need to do some kind of NAT etc. On one of my clients I'm running a SQUID v3.1.10 as a transparent proxy, and when I open the page the browser shows my private IP, after a little test, I disabled t

Re: [squid-users] Squid 3.5.5 automatically reload itself in 2h rhythm

2015-06-23 Thread Tom Tom
...or something else I can configure to prevent restarting after every 2h? Thanks. Tom On Mon, Jun 22, 2015 at 7:16 AM, Tom Tom wrote: > Seems this is a well known problem? Is there a patch available? > > On Fri, Jun 19, 2015 at 12:06 PM, Amos Jeffries wrote: >> On 19/06/2015 5:23 a.m., Tom

[squid-users] Time out where? TCP_MISS_TIMEDOUT

2015-06-23 Thread Sebastian Goicochea
I've found several of these in my access.log 1435009516.011 899906 10.60.3.221 TCP_MISS_TIMEDOUT/200 8790 GET http://t4.kn3.net/taringa/7/5/4/5/0/5/blackz89/236x177_1F2.jpg - ORIGINAL_DST/104.18.42.237 image/jpeg 1435009516.011 899840 10.63.6.215 TCP_MISS_TIMEDOUT/200 8742 GET http://pagead2.g

Re: [squid-users] Reverse Proxy translate public domain to internal path

2015-06-23 Thread sqca
Hi Amos, thanks for the information. Do I need to rewrite all requests from "site1.example.com" to "site1.example.com/test" in this case? -- View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/Reverse-Proxy-translate-public-domain-to-internal-path-tp4671854p4671856

Re: [squid-users] Reverse Proxy translate public domain to internal path

2015-06-23 Thread Amos Jeffries
On 24/06/2015 12:32 a.m., sqca wrote: > Hi folks, > > I have started to use Squid 3.5.5 to implement a reverse proxy for multiple > webservers. Some of them are publishing multiple websites on the same port > so I need to do the following: > Publish "site1.example.com" via Squid which points at 19

[squid-users] Reverse Proxy translate public domain to internal path

2015-06-23 Thread sqca
Hi folks, I have started to use Squid 3.5.5 to implement a reverse proxy for multiple webservers. Some of them are publishing multiple websites on the same port so I need to do the following: Publish "site1.example.com" via Squid which points at 192.168.0.1:8080/test Publish "site.example.com" via

Re: [squid-users] Quick peek-splice clarification

2015-06-23 Thread James Lay
On Tue, 2015-06-23 at 09:11 +0200, Klavs Klavsen wrote: > Hi James, > > Did you ever find an answer for this? > > James Lay wrote on 06/11/2015 02:16 AM: > > All, > > > > From the docs at: > > > > http://wiki.squid-cache.org/Features/SslPeekAndSplice > > > > *peek* > > > > > > step1, step2

Re: [squid-users] tos miss-mask not working at all squid 3.5.5

2015-06-23 Thread mohammad
dear Amos, I didn't read the AFAIK part of your post just after replying, i guess i'm busy trying to make this work ;-). so, if I understand correctly, even marking will have same problems. !! strange. this is strange. this requirement to start; was issued due to the fact, that the parent squid

Re: [squid-users] tos miss-mask not working at all squid 3.5.5

2015-06-23 Thread mohammad
Dear Amos, thank you for replying; if I understand correctly from your reply; this can not be achieved by TOS. how about Marking and iptables, squid documentation refers to connmark, not mark. so, let's say if I mark the packet using iptables, on the INPUT, of the squid; will it retain it to t

Re: [squid-users] tos miss-mask not working at all squid 3.5.5

2015-06-23 Thread Amos Jeffries
On 23/06/2015 7:04 p.m., vivek singh wrote: > what is ZPH > This explains The squid parts were added to Squid-3.x as the qos_flows directive. BUT, copying a TOS flag from one TCP connection to another only works if one is using HTTP/1.0 non-persistent connections (HT

Re: [squid-users] Quick peek-splice clarification

2015-06-23 Thread Klavs Klavsen
Hi James, Did you ever find an answer for this? James Lay wrote on 06/11/2015 02:16 AM: All, From the docs at: http://wiki.squid-cache.org/Features/SslPeekAndSplice *peek* step1, step2 Receive SNI and client certificate (step1), or server certificate (step2) while preser

Re: [squid-users] tos miss-mask not working at all squid 3.5.5

2015-06-23 Thread vivek singh
what is ZPH Vivek Kumar Singh J.T.O./ITPC-KOL Mobile 08902000538 Landline 033-23211548 On Tue, Jun 23, 2015 at 8:49 AM, Dan Charlesworth wrote: > It's also worth pointing out that your messages are getting flagged as > Spam by Gmail, which probably isn't helping visibility. > > On 23 June