Hahaa.. RTFM backwards that is.
On Wednesday, 17 September 2014, lucas oketch via skunkworks <skunkworks@lists.my.co.ke> wrote:Try changing http_port x.x.x.x:3128 intercept to
http_port x.x.x.x:3128 transparentThanks,
Lucas.On 17 Sep 2014 13:30, "Evon Wangari via skunkworks" <skunkworks@lists.my.co.ke> wrote:google, http://www.squid-cache.org/ hiyo mambo yote.On Mon, Sep 15, 2014 at 4:30 PM, Job Muriuki via skunkworks <skunkworks@lists.my.co.ke> wrote:Am using shorewall as the firewall.Regards,
Job Muriuki,
Phone: (+254) - 722906324 | 736333075
Skype: heviejob | Yahoo: heviejob
Address: 42665 00100 NrbOn Mon, Sep 15, 2014 at 4:23 PM, Patrick Kariuki <patrick.kariuki@gmail.com> wrote:Are you using iptables?On Mon, Sep 15, 2014 at 4:07 PM, Job Muriuki <muriukin@gmail.com> wrote:This is the stripped squid.confacl localnet src 172.16.0.0/16 # RFC1918 possible internal networkacl localnet src 192.168.0.0/16 # RFC1918 possible internal networkacl SSL_ports port 443acl Safe_ports port 80 # httpacl Safe_ports port 21 # ftpacl Safe_ports port 443 # httpsacl Safe_ports port 70 # gopheracl Safe_ports port 210 # waisacl Safe_ports port 1025-65535 # unregistered portsacl Safe_ports port 280 # http-mgmtacl Safe_ports port 488 # gss-httpacl Safe_ports port 591 # filemakeracl Safe_ports port 777 # multiling httpacl CONNECT method CONNECTacl localnet src 10.10.23.1-10.10.23.254http_access deny !Safe_portshttp_access deny CONNECT !SSL_portshttp_access allow localhost managerhttp_access allow localnethttp_access allow localhosthttp_access allow localnethttp_access deny managerhttp_access allow localnethttp_access deny allhtcp_access allow localnethttp_port 3128 interceptcache_mem 256 MBmaximum_object_size_in_memory 512 KBmemory_replacement_policy lrucache_replacement_policy lrucache_dir ufs /var/spool/squid3 51200 16 256#no limitmaximum_object_size 512 MBcache_swap_low 90cache_swap_high 95access_log daemon:/var/log/squid3/access.log squidlogfile_rotate 5cache_log /var/log/squid3/cache.logcoredump_dir /var/spool/squid3refresh_pattern -i \.(3gp|7z|ace|asx|bin|deb|divx|dvr-ms|ram|rpm|exe|inc|cab|qt) 20160 80% 20160 ignore-no-cache override-expire override-lastmod reload-into-imsrefresh_pattern -i \.(rar|jar|gz|tgz|bz2|iso|m1v|m2(v|p)|mo(d|v)|arj|lha|lzh|zip|tar) 20160 80% 20160 ignore-no-cache override-expire override-lastmod reload-into-imsrefresh_pattern -i \.(jp(e?g|e|2)|gif|pn[pg]|bm?|tiff?|ico|swf|dat|ad|txt|dll) 20160 80% 20160 ignore-no-cache override-expire override-lastmod reload-into-imsrefresh_pattern -i \.(avi|ac4|mp(e?g|a|e|1|2|3|4)|mk(a|v)|ms(i|u|p)|og(x|v|a|g)|rm|r(a|p)m|snd|vob) 20160 80% 20160 ignore-no-cache override-expire override-lastmod reload-into-imsrefresh_pattern -i \.(pp(t?x)|s|t)|pdf|rtf|wax|wm(a|v)|wmx|wpl|cb(r|z|t)|xl(s?x)|do(c?x)|flv|x-flv) 20160 80% 20160 ignore-no-cache override-expire override-lastmod reload-into-imsrefresh_pattern ^ftp: 1440 20% 10080refresh_pattern ^gopher: 1440 0% 1440refresh_pattern -i (/cgi-bin/|\?) 0 0% 0refresh_pattern (Release|Packages(.gz)*)$ 0 20% 2880refresh_pattern (\.deb|\.udeb)$ 129600 100% 129600refresh_pattern . 0 20% 4320quick_abort_min 16 KBquick_abort_max 16 KBquick_abort_pct 95half_closed_clients offshutdown_lifetime 0 secondscache_effective_user proxymemory_pools onclient_db onpipeline_prefetch oncache_effective_group proxyRegards,
Job Muriuki,
Phone: (+254) - 722906324 | 736333075
Skype: heviejob | Yahoo: heviejob
Address: 42665 00100 NrbOn Mon, Sep 15, 2014 at 4:00 PM, Patrick Kariuki <patrick.kariuki@gmail.com> wrote:Post your current squid.confOn Mon, Sep 15, 2014 at 2:42 PM, Job Muriuki via skunkworks <skunkworks@lists.my.co.ke> wrote:_______________________________________________This is my network configurationI have even tried connecting the proxy server using 2 networks one for receive the users connectionsand the other as the internet gateway to no avail.Regards,
Job Muriuki,
Phone: (+254) - 722906324 | 736333075
Skype: heviejob | Yahoo: heviejob
Address: 42665 00100 NrbOn Mon, Sep 15, 2014 at 1:16 PM, Job Muriuki <muriukin@gmail.com> wrote:Hello,Squid 3.3.8 is now working as the earlier versions I have used before in transparent mode.Its giving me "warning forwarding loop detected for" in cacge.log and "Access Denied." on the browser.Anyone with any pointers on how t use it in transparent mode?Regards,
Job Muriuki,
Phone: (+254) - 722906324 | 736333075
Skype: heviejob | Yahoo: heviejob
Address: 42665 00100 Nrb
skunkworks mailing list
skunkworks@lists.my.co.ke
------------
List info, subscribe/unsubscribe
http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks
------------
Skunkworks Rules
http://my.co.ke/phpbb/viewtopic.php?f=24&t=94
------------
Other services @ http://my.co.ke
_______________________________________________
skunkworks mailing list
skunkworks@lists.my.co.ke
------------
List info, subscribe/unsubscribe
http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks
------------
Skunkworks Rules
http://my.co.ke/phpbb/viewtopic.php?f=24&t=94
------------
Other services @ http://my.co.ke
_______________________________________________
skunkworks mailing list
skunkworks@lists.my.co.ke
------------
List info, subscribe/unsubscribe
http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks
------------
Skunkworks Rules
http://my.co.ke/phpbb/viewtopic.php?f=24&t=94
------------
Other services @ http://my.co.ke--
Best regards,
Odhiambo WASHINGTON,
Nairobi,KE
+254733744121/+254722743223
"I can't hear you -- I'm using the scrambler."
_______________________________________________
skunkworks mailing list
skunkworks@lists.my.co.ke
------------
List info, subscribe/unsubscribe
http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks
------------
Skunkworks Rules
http://my.co.ke/phpbb/viewtopic.php?f=24&t=94
------------
Other services @ http://my.co.ke