[squid-users] dynamic group using URI as group name on external acl with ext_ldap_group_acl

2016-08-21 Thread Diogenes S. Jesus
Hi everyone. I've the following use case to be accomplished using ACL: - Allow any authenticated user who is member of a group named after the URI To construct this I've built the following squid.conf (snippet): - auth_param negotiate program /usr/lib/squid3/negotiate_kerberos_auth -d -

Re: [squid-users] Viber + squid = no images

2016-08-21 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Show your logs and config. 21.08.2016 23:31, Yan Seiner пишет: > > I'm struggling with a strange problem. I have squid 2.4 set up as a transparent proxy. Everything works fine, except that Viber will not download images. > > Has anyone run acros

[squid-users] Viber + squid = no images

2016-08-21 Thread Yan Seiner
I'm struggling with a strange problem. I have squid 2.4 set up as a transparent proxy.  Everything works fine, except that Viber will not download images. Has anyone run across this?  I don't even know where to start, as nothing else seems broken and viber, alas, does not provide any diagnostics. M

Re: [squid-users] Yet another store_id question HIT MISS

2016-08-21 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 21.08.2016 19:23, Eliezer Croitoru пишет: > Well it's pretty simple, I have used squd 4.0.13 with default settings and > the rules you provided ie: > squid.conf: > store_id_program /usr/lib64/squid/storeid_file_rewrite /etc/squid/storeid-rules >

Re: [squid-users] Yet another store_id question HIT MISS

2016-08-21 Thread Eliezer Croitoru
Well it's pretty simple, I have used squd 4.0.13 with default settings and the rules you provided ie: squid.conf: store_id_program /usr/lib64/squid/storeid_file_rewrite /etc/squid/storeid-rules store_id_children 40 startup=10 idle=5 concurrency=0 store_id_access allow GET store_id_access deny all

Re: [squid-users] Yet another store_id question HIT MISS

2016-08-21 Thread Amos Jeffries
On 21/08/2016 2:10 a.m., Omid Kosari wrote: > Amos Jeffries wrote >> On 19/08/2016 2:15 a.m., Omid Kosari wrote: >>> I was correct . >>> >>> If one of following conditions happens then the mentioned urls will not >>> cache . >>> >>> 1-in squid.conf have this line >>> acl storeiddomainregex dstdom_r

Re: [squid-users] Squid Samba 4 and ntlm_auth concurrency question

2016-08-21 Thread Amos Jeffries
On 21/08/2016 1:34 a.m., David Webb wrote: > > I'm currently using the binary version of squid provided by yum with > RHEL 7.2 (3.3.8) with Samba 4's winbind ntlm_auth to authenticate > against AD which is working fine > > auth_param negotiate program /usr/bin/ntlm_auth > --helper-protocol=gss-

[squid-users] clarifying Features/SslPeekAndSplice on wiki + fake CONNECT

2016-08-21 Thread Marcus Kool
The ssl-bump peek/splice/bump feature is now maturing and many are using it but there are still some issues with the wiki page that I like to clarify. wiki: http://wiki.squid-cache.org/Features/SslPeekAndSplice section "processing steps" Can action "none" be removed from step 1? Step 1. what i