[squid-users] chrooting squid - Howto?

From: Joseph Erlewein <jerlewein@dont-contact.us>
Date: Fri, 18 Jan 2002 14:07:22 -0500

Hm..
I'm all googled-out on this one, and all I found in the mailng list archives was someone flaming someone else for posting his entire squid.conf while attempting to ask how to chroot squid, and the question remained unanswered. So I'll re-ask the question (yay!) and NOT include an entire file.

I'm using Squid 2.4.STABLE3

From ChangeLog:
- Added chroot feature. The 'chroot_dir' config option enables it and specifies the directory.

From squid.conf:
TAG: chroot
    Use this to have Squid do a chroot() while initializing. This also causes Squid to fully drop privelages agter initializing. This means, for example, that if you use a HTTP port less than 1024 and try to reconfigure, you will get an error.
Default: none

So - is it "chroot <chroot directory>" or "chroot_dir <chroot directory>" or what?? I've tried both and squid just bombs out.

I haven't been able to locate any good documentation on this, is there any? I even checked wronganswers.com...
(j/k)

Also is there anyone else who's done this who has successfully done it and documented the requirements of squid while chrooted? I'm seeing a DNS error in the logfiles that I didn't see before I was trying to chroot it.
Thanks-
-jre

Joseph R. Erlewein
Information Center Specialist
Munson Healthcare
jerlewein@mhc.net
Received on Fri Jan 18 2002 - 12:08:07 MST

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 17:05:53 MST