Hey Gabriel,

 

The thread seems to me as a milestone in this mailing list and in Squid-Cache 
history.

>From what I understood there is an issue when SquidGuard receives a specific 
>line from Squid.

In this whole long thread I have not seen any debug logs of what SquidGuard 
receives from Squid.

It’s crucial to understand what the issue is and why it happens regardless to 
whether SquidGuard is old or not.

Also it’s not related to an ICAP service or URL rewrite or external acl…

I do not remember by heart what debug log section is relevant but Amos and Alex 
should be able to direct us towards these.

When you will have the exact line that the url_rewrite helper receives we would 
be able to know and maybe understand some details.

For some admins this kind of setup is easy but.. any LDAP\NTLM\Kerberos related 
setup needs to be tested and I believe this is where you are at.

There is a possibility that SquidGuard as a url_rewrite helper doesn’t receive 
the relevant details it expects such as username or group.

The above can cause this issue.

 

If you can share with us the relevant line that SquidGuard receives and crashes 
it would help other admins who have yet to encounter it.

 

Eliezer

·         I have a setup of above 800 users but… the cache features are tuned 
off and it’s only working for ACL checking.

 

 

----

 <http://ngtech.co.il/lmgtfy/> Eliezer Croitoru
Linux System Administrator
Mobile: +972-5-28704261
Email: elie...@ngtech.co.il



 

From: squid-users [mailto:squid-users-boun...@lists.squid-cache.org] On Behalf 
Of Service MV
Sent: Monday, September 17, 2018 18:38
To: squid-users@lists.squid-cache.org
Subject: [squid-users] Help: squid restarts and squidGuard die

 

Dear Ones, I draw on your experience in seeking help to determine whether or 
not it is possible to achieve the configuration I am looking for, due to a 
strange error I am having.

 

Before commenting on the bug I describe my testing environment:

- A VM CentOS 7 Core over VirtualBox 5.2, 1 NIC.

- My VM is attached to my domain W2012R2 (following this post 
https://www.rootusers.com/how-to-join-centos-linux-to-an-active-directory-domain/)
 to achieve kerberos authentication transparent to the user. SElinux disabled. 
Owner permissions to user squid in all folders/files involved.

- squid 3.5.20 installed and working great with kerberos, NTLM and basic 
authentication. All authentication mechanisms tested and working great.

- SquidGuard: 1.4 Berkeley DB 5.3.21 installed and working great with 
blacklists and acl default.

 

My problem starts when I try to use source acl using ldapusersearch in 
squidGuard... 

 

systemctl status squid:

(squid-1)[12627]: The redirector helpers are crashing too rapidly, need help!

<SNIP>

 

_______________________________________________
squid-users mailing list
squid-users@lists.squid-cache.org
http://lists.squid-cache.org/listinfo/squid-users

Reply via email to