Re: [squid-users] Does Squid proxy passes client/server MIME type such as application/x-protobuf?

2020-01-10 Thread Amos Jeffries
On 11/01/20 5:30 pm, GeorgeShen wrote: > > Thanks Amos, > > Good to know the MIME types are forwarded if the payload is being relayed. > > What will be the expectation on the http custom headers, such as > 'X-Request-ID', or 'X-Serial-Number' if they are set from client, during the > proxy relay

Re: [squid-users] Does Squid proxy passes client/server MIME type such as application/x-protobuf?

2020-01-10 Thread GeorgeShen
Thanks Amos, Good to know the MIME types are forwarded if the payload is being relayed. What will be the expectation on the http custom headers, such as 'X-Request-ID', or 'X-Serial-Number' if they are set from client, during the proxy relay process, will those also be forwarded unchanged or is

Re: [squid-users] squid to only allow office activation and not windows updates

2020-01-10 Thread Amos Jeffries
On 11/01/20 11:46 am, robert k Wild wrote: > hi all, > > i have added all these lines to my squid config as it wasnt allowing > office activation > > https://wiki.squid-cache.org/SquidFaq/WindowsUpdate > > but now its allowing office activation and now windows updates but i > dont want it to do

Re: [squid-users] Does Squid proxy passes client/server MIME type such as application/x-protobuf?

2020-01-10 Thread Amos Jeffries
On 11/01/20 11:27 am, GeorgeShen wrote: > > I would like to know in the case of proxy, can be ssl-bump, does the squid > proxy passes the http MIME type to the other side of the connection? SSL-Bump is about the TLS protocol. It has nothing to do with HTTP messages or headers. The standard rules

Re: [squid-users] icap SOPHOS SAVDI and custom errorpage

2020-01-10 Thread Amos Jeffries
On 11/01/20 7:43 am, netadmin wrote: > I also tried with the settings from David Webb's post ie: > acl http_status_403 http_status 403 > acl virus_found rep_header X-Blocked -i \Virus found during virus scan\. > > I tried both options: > http_reply_access deny http_status_403 virus_found > and > a

[squid-users] squid to only allow office activation and not windows updates

2020-01-10 Thread robert k Wild
hi all, i have added all these lines to my squid config as it wasnt allowing office activation https://wiki.squid-cache.org/SquidFaq/WindowsUpdate but now its allowing office activation and now windows updates but i dont want it to do windows updates as this is managed by our WSUS server what a

[squid-users] Does Squid proxy passes client/server MIME type such as application/x-protobuf?

2020-01-10 Thread GeorgeShen
I would like to know in the case of proxy, can be ssl-bump, does the squid proxy passes the http MIME type to the other side of the connection? such as application/x-protobuf, application/json, text/plain, etc. What is the expectation on this for the other HTTP header information? thanks. - Georg

Re: [squid-users] icap SOPHOS SAVDI and custom errorpage

2020-01-10 Thread netadmin
I also tried with the settings from David Webb's post ie: acl http_status_403 http_status 403 acl virus_found rep_header X-Blocked -i \Virus found during virus scan\. I tried both options: http_reply_access deny http_status_403 virus_found and adapted_http_access deny http_status_403 virus_found

Re: [squid-users] icap SOPHOS SAVDI and custom errorpage

2020-01-10 Thread Amos Jeffries
On 10/01/20 11:37 pm, netadmin wrote: > squid.conf > Okay, so you have taken the part of David's config which sends traffic to ICAP, but not the part which generates a custom 403 message for the client. That means whatev

Re: [squid-users] icap SOPHOS SAVDI and custom errorpage

2020-01-10 Thread netadmin
squid.conf access.log icap.log Sophos_SAVDI.log