On 2024-12-23 21:59, Andrey K wrote:
in my opinion, the
ACL used in the policy is fast, as stated in the documentation
(https://www.squid-cache.org/Doc/config/acl/):
acl aclname dstdomain [-n] .foo.com ...
# Destination server from URL [fast]
That documentation is misleading: In s
Hello,
I am sorry to interrupt the conversation, but in my opinion, the ACL used in
the policy is fast, as stated in the documentation (
https://www.squid-cache.org/Doc/config/acl/):
acl aclname dstdomain [-n] .foo.com ...
# Destination server from URL [fast]
So the configuration is re
Unfortunately, there is no greater clarity in the practical application of
the techniques used in the topics you have provided.
I would be grateful for practice specifically in my case for a better
understanding of the work.
пн, 23 дек. 2024 г. в 00:42, Alex Rousskov :
> On 2024-12-22 15:13, A.
On 2024-12-22 15:13, A. Pechenin wrote:
could you please explain in more detail and in my case what needs to
be added to "strengthen and ensure" the operation of my solution?
Does Q2 and Q3 at [1] help? If not, I hope that others can guide you
through using a never-matching http_access rule an
Thank you for your clarification.
But could you please explain in more detail and in my case what needs to be
added to "strengthen and ensure" the operation of my solution?
The quote from the file squid.conf.documented is not very clear to me.
# # # First, mark transactions accepted afte
Great Job sorry I assumed this was related to ssl bump issues.
Sent from my iPhone
> On Dec 22, 2024, at 11:47, Alex Rousskov
> wrote:
>
> On 2024-12-22 08:13, A. Pechenin wrote:
>> The reason and solution were not simple and obvious at first glance.
>> I have two providers accessing the gatew
On 2024-12-22 08:13, A. Pechenin wrote:
The reason and solution were not simple and obvious at first glance.
I have two providers accessing the gateway, the main and backup
channels, and automatic switching is configured when the connection on
the main channel is lost.
To check, I switched the
The reason and solution were not simple and obvious at first glance.
I have two providers accessing the gateway, the main and backup channels,
and automatic switching is configured when the connection on the main
channel is lost.
To check, I switched the proxy server to the second channel and the p
.googleapis.com
>>
>> Make sure you follow the enterprise policy for Google Android based
>> products.
>>
>> Some sites simply can not and or should not be bumped and you only should
>> look at the get header.
>>
>> --
>&g
No, ssl_bump is not used in any form in Squid, I intentionally reproduced
the problem on the default configuration file.
In access.log i do not observe any questionable recordings when reproducing
the problem:
acl hasRequest has request
access_log daemon:/var/log/squid/access.log squid hasRequest
On 2024-12-21 12:26, A. Pechenin wrote:
This week, when connecting users through a proxy server, some Google
services became inaccessible, such as Calendar, Translator, user profile.
Do you use any ssl_bump directives? You have mentioned a test with
"default configuration file" below. That con
com>
Sent: Saturday, December 21, 2024 11:46
To: Jonathan Lee <jonathanlee...@gmail.com>
Cc: squid-users@lists.squid-cache.org <squid-users@lists.squid-cache.org>
Subject: Re: [squid-users] SQUID problem with unavailability of Google services
I apologize for the formatting of the t
m/>
>>
>> Make sure you follow the enterprise policy for Google Android based
>> products.
>>
>> Some sites simply can not and or should not be bumped and you only should
>> look at the get header.
>>
>> From: A. Pechenin mailto:alexm...@gm
--
> *From:* Jonathan Lee
> *Sent:* Saturday, December 21, 2024 11:57
> *To:* A. Pechenin
> *Cc:* squid-users@lists.squid-cache.org >
> *Subject:* Re: [squid-users] SQUID problem with unavailability of Google
> services
>
> You can use the followi
t; .googleapis.com
>
> Make sure you follow the enterprise policy for Google Android based
> products.
>
> Some sites simply can not and or should not be bumped and you only should
> look at the get header.
>
> --
> *From:* A. Pechenin
>
works.
support.apple.com
From: Jonathan Lee
Sent: Saturday, December 21, 2024 11:57
To: A. Pechenin
Cc: squid-users@lists.squid-cache.org
Subject: Re: [squid-users] SQUID problem with unavailability of Google services
You can use the following
acl NoSSLIntercept ssl::server_name_
Lee
Cc: squid-users@lists.squid-cache.org
Subject: Re: [squid-users] SQUID problem with unavailability of Google services
I apologize for the formatting of the text of the letter?
I will be incorrect if I do not say that there are entries in the cache.log,
although the IP does not resolv
I apologize for the formatting of the text of the letter?
I will be incorrect if I do not say that there are entries in the
cache.log, although the IP does not resolve directly to google subdomains,
but according to whois, this is the Google LLC farm.
2024/12/21 21:54:57 kid1| conn43356657 local
Have you created a splice only file with lists of items that must be spliced at
all times, Google mail ethically should be spliced just as an example. Some
know sites must be spliced.
Sent from my iPhone
> On Dec 21, 2024, at 09:32, A. Pechenin wrote:
>
>
> This week, when connecting users
This week, when connecting users through a proxy server, some Google
services became inaccessible, such as Calendar, Translator, user profile.
When clicking on the services section in the browser on the Google portal,
the page does not open and then a connection error is displayed. When
directly
Hi againthank you for your reply.
sorry but I didn't yell only asked for help!
Is any way to disable security checks or disable host header forgery check in
squid?If I use host_verify_strict or client_lifetime or client_dst_passthru ,
can I prevent this error to be happens?
you said TLS is not
HICOULD YOU PLEASE HELP ME?
IN INTERCEPTED TOPOLOGY WITH TPROXY I HAVE PROBLEM.
WHAT IS SQUID SOLUTION FOR SITES THAT HAVE MORE THAN ONE IP ADDRESSES? FOR
EXAMPLE SITE LIKE GOOGLE.COM RETURN DIFFERENT IP ADDRESS IN EVERY REQUEST AND
IF CLIENT GET IP ADDRESS FOR EXAMPLE 1.1.1.1 THAT IS POSSIBLE T
On Monday 11 May 2020 at 11:53:15, leomessi...@yahoo.com wrote:
> Hi againthank you for your reply.
> sorry but I didn't yell only asked for help!
Writing in all capital letters (see your Subject line, for example) in online
communications is generally interpreted as shouting.
Regards,
Anton
On 11/05/20 8:57 pm, leomessi...@yahoo.com wrote:
> HI
> COULD YOU PLEASE HELP ME?
Please don't yell.
> IN INTERCEPTED TOPOLOGY WITH TPROXY I HAVE PROBLEM.
>
> WHAT IS SQUID SOLUTION FOR SITES THAT HAVE MORE THAN ONE IP ADDRESSES?
> FOR EXAMPLE SITE LIKE GOOGLE.COM RETURN DIFFERENT IP ADDRESS IN
co.il
-Original Message-
From: squid-users [mailto:squid-users-boun...@lists.squid-cache.org] On Behalf
Of Amos Jeffries
Sent: Monday, November 7, 2016 16:41
To: squid-users@lists.squid-cache.org
Subject: Re: [squid-users] Squid Problem - Google
On 7/11/2016 10:59 p.m., Antony Stone
On Tuesday 08 November 2016 at 13:47:25, Jose Joaquin Ruiz Silva wrote:
> Good morning I am Cuban I have mounted squid 2.7 on debian wheezy
Why?
Debian Wheezy contains version 3.1.20 and Wheezy-backports contains the
version 3.4.8
Installing 2.7 in 2016 (that version is 8 years old and has not
Good morning I am Cuban I have mounted squid 2.7 on debian wheezy and
it works fine but I am looking for a page that will allow users to
change the password, see their quota, the user expire after 1 year,
the password expire in 2 months but That an email arrives to him on
the last 10 days telling h
On 7/11/2016 10:59 p.m., Antony Stone wrote:
> On Monday 07 November 2016 at 10:53:14, Bilal Mohamed wrote:
>
>> Hi,
>>
>> I am getting following error while accessing google. Rest all websites are
>> ok. There is no ACL to block google.com
The message is not "Access Denied" (ACLs).
It is "Netwo
On Monday 07 November 2016 at 10:53:14, Bilal Mohamed wrote:
> Hi,
>
> I am getting following error while accessing google. Rest all websites are
> ok. There is no ACL to block google.com
Is your machine properly configured for IPv6?
Try the following:
ping www.google.com
ping
Hi,
I am getting following error while accessing google. Rest all websites are
ok. There is no ACL to block google.com
*ERROR*
*The requested URL could not be retrieved*
--
The following error was encountered while trying to retrieve the URL:
http://www.google.com/
On Wednesday 02 November 2016 at 12:17:30, Bilal Mohamed wrote:
> so what i need to clear now? i am restarting squid every 5-10 mins
You have a root file system which is too small for the data you are trying to
store on it.
That is not a Squid-specific problem.
My recommendations, in order of
so what i need to clear now? i am restarting squid every 5-10 mins
Thanks and Regards
Bilal Mohamed
+9
66-559469043
On Wed, Nov 2, 2016 at 2:16 PM, Antony Stone <
antony.st...@squid.open.source.it> wrote:
> On Wednesday 02 November 2016 at 12:10:46, Bilal Mohamed wrote:
>
> > This is where the
On Wednesday 02 November 2016 at 12:10:46, Bilal Mohamed wrote:
> This is where the files are pointing to... can i delete the files dm-0 and
> dm-1 ?
NO!
> root@AG-HO-PRXY:/dev/mapper# ls -lrt
> total 0
> crw--- 1 root root 10, 236 2016-11-02 13:21 control
> lrwxrwxrwx 1 root root 7 20
How do I clear it?
Thanks and Regards
Bilal Mohamed
+9
66-559469043
On Wed, Nov 2, 2016 at 1:57 PM, Antony Stone <
antony.st...@squid.open.source.it> wrote:
> On Wednesday 02 November 2016 at 11:39:22, Bilal Mohamed wrote:
>
> > Please find the disk space status.
>
> > /dev/mapper/AG--HO--PRX
On Wednesday 02 November 2016 at 11:39:22, Bilal Mohamed wrote:
> Please find the disk space status.
> /dev/mapper/AG--HO--PRXY-root
> 12189696 12189695 1 100% /
And there's your problem - your root file system is full.
Antony.
--
I have an excellent memory.
I can
Please find the disk space status.
root@AG-HO-PRXY:/etc/squid3# df -h
FilesystemSize Used Avail Use% Mounted on
/dev/mapper/AG--HO--PRXY-root
184G 129G 46G 74% /
none 1.9G 220K 1.9G 1% /dev
none 1.9G 0 1.9G 0% /dev
as the message says,
No space left on device
On Wed, Nov 2, 2016 at 4:05 PM, Bilal Mohamed wrote:
> Hello,
>>
>> We are facing the following issue in squid. Please help.
>>
>> ==
>>
>> 2016/11/02 08:41:50| Starting Squid Cache version 3.1.11 for
>> i686-pc-lin
>
> Hello,
>
> We are facing the following issue in squid. Please help.
>
> ==
>
> 2016/11/02 08:41:50| Starting Squid Cache version 3.1.11 for
> i686-pc-linux-gnu...
> 2016/11/02 08:41:50| Process ID 4769
> 2016/11/02 08:41:50| With 65535 file descriptors availa
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
On 30/01/2015 4:40 a.m., Yuri Voinov wrote:
>
> I think, this is not Squid, but external auth system issue.
>
> 29.01.2015 21:34, 456mb пишет:
>> with the actually confi, only appear pop-up message to login, but
>> dont limit the conexion
>
>> i new
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
I think, this is not Squid, but external auth system issue.
29.01.2015 21:34, 456mb пишет:
> with the actually confi, only appear pop-up message to login, but dont limit
> the conexion
>
> i new in squid, dont existe a method more easy?
>
> only i w
with the actually confi, only appear pop-up message to login, but dont limit
the conexion
i new in squid, dont existe a method more easy?
only i want one user per session, but actually i can login 999 times with
the same user and pass
--
View this message in context:
http://squid-web-proxy-
On 29/01/2015 8:53 p.m., 456mb wrote:
> Hi i try disable multilogin of the same user (avoid share accounts), but not
> luck, i used that config
>
> *auth_param basic program /usr/lib64/squid/ncsa_auth /etc/squid/squid_passwd
> acl ncsa_users proxy_auth REQUIRED
> http_access allow ncsa_users
> aut
Hi i try disable multilogin of the same user (avoid share accounts), but not
luck, i used that config
*auth_param basic program /usr/lib64/squid/ncsa_auth /etc/squid/squid_passwd
acl ncsa_users proxy_auth REQUIRED
http_access allow ncsa_users
auth_param basic casesensitive off
authenticate_ip_ttl
43 matches
Mail list logo