Re: [squid-users] Squid Proxy timing out 500/503 errors

2024-03-06 Thread M, Anitha (CSS)
Hi , Thank you for the response. I cleaned up all the duplicates and updated the configuration file. And still seeing the errors. Pls note this issue is easily reproducible when squid is loaded up with more then 300+ requests at a time. === # Recom

[squid-users] Recommended squid settings when using IPS-based domain blocking

2024-03-06 Thread Jason Marshall
Good morning, We have been using squid (version squid-5.5-6.el9_3.5) under RHEL9 as a simple pass-through proxy without issue for the past month or so. Recently our security team implemented an IPS product that intercepts domain names known to be associated with malware and ransomware command and

Re: [squid-users] Recommended squid settings when using IPS-based domain blocking

2024-03-06 Thread Alex Rousskov
On 2024-03-06 09:48, Jason Marshall wrote: We have been using squid (version squid-5.5-6.el9_3.5) under RHEL9 as a simple pass-through proxy without issue for the past month or so. Recently our security team implemented an IPS product that intercepts domain names known to be associated with ma

Re: [squid-users] Recommended squid settings when using IPS-based domain blocking

2024-03-06 Thread brendan kearney
tell the team that is running the IPS to change their policy from DROP to something else, so you are not a captive audience to the timeout. By sending a RST, they can cause Squid to close the connection and fail faster. if they are intercepting the DNS request, have them leverage an RPZ and send a

[squid-users] Any Python ICAP server available

2024-03-06 Thread Arun Kumar
The ICAP-Server(Python) mentioned in this page, seems to be very old. Any other squid compatible ICAP server available?___ squid-users mailing list squid-users@lists.squid-cache.org https://lists.squid-cache.org/listinfo/squid-users

Re: [squid-users] Recommended squid settings when using IPS-based domain blocking

2024-03-06 Thread Grant Taylor
On 3/6/24 08:48, Jason Marshall wrote: We have been using squid (version squid-5.5-6.el9_3.5) under RHEL9 as a simple pass-through proxy without issue for the past month or so. Recently our security team implemented an IPS product that intercepts domain names known to be associated with malware