Re: [squid-users] bungled squid.conf

From: Amos Jeffries <squid3_at_treenet.co.nz>
Date: Thu, 7 May 2009 11:39:18 +1200 (NZST)

> I've been running squid on two identical servers running the same
> squid configurations for months. Neither have had any problems with
> its current configuration. I recently added a new site to squid.conf,
> parsed it, and came out clean. Restarted squid using the new
> configuration and it works fine. I did the same on the second server,
> and it does not work! Below is the error along with the version
> information. Any ideas?

In order of likelihood:
 Is IP in rDNS of "websitehere" resolving an IP the local machine can bind
to?
 Cert and Key files in same place configured and readable by squid?
 Both squid identical versions?
 Both squid built with same options?

Amos

>
> sudo /usr/sbin/squid -k parse -f squid.conf.NEW
> FATAL: Bungled squid.conf.NEW line 122: https_port websitehere:443
> cert=/usr/local/etc/squid/ssl/certhere.crt
> key=/usr/local/etc/squid/ssl/keys/keyhere.key options=NO_SSLv2
> cipher=MEDIUM:HIGH vport no-connection-auth
> Squid Cache (Version 2.6.STABLE21): Terminated abnormally.
>
> sudo /usr/sbin/squid -v
> Squid Cache: Version 2.6.STABLE21
> configure options: '--build=i686-redhat-linux-gnu'
> '--host=i686-redhat-linux-gnu' '--target=i386-redhat-linux-gnu'
> '--program-prefix=' '--prefix=/usr' '--exec-prefix=/usr'
> '--bindir=/usr/bin' '--sbindir=/usr/sbin' '--sysconfdir=/etc'
> '--includedir=/usr/include' '--libdir=/usr/lib'
> '--libexecdir=/usr/libexec' '--sharedstatedir=/usr/com'
> '--mandir=/usr/share/man' '--infodir=/usr/share/info'
> '--exec_prefix=/usr' '--bindir=/usr/sbin'
> '--libexecdir=/usr/lib/squid' '--localstatedir=/var'
> '--datadir=/usr/share' '--sysconfdir=/etc/squid' '--enable-epoll'
> '--enable-snmp' '--enable-removal-policies=heap,lru'
> '--enable-storeio=aufs,coss,diskd,null,ufs' '--enable-ssl'
> '--with-openssl=/usr/kerberos' '--enable-delay-pools'
> '--enable-linux-netfilter' '--with-pthreads'
> '--enable-ntlm-auth-helpers=SMB,fakeauth'
> '--enable-external-acl-helpers=ip_user,ldap_group,unix_group,wbinfo_group'
> '--enable-auth=basic,digest,ntlm'
> '--enable-digest-auth-helpers=password'
> '--with-winbind-auth-challenge' '--enable-useragent-log'
> '--enable-referer-log' '--disable-dependency-tracking'
> '--enable-cachemgr-hostname=localhost' '--enable-underscores'
> '--enable-basic-auth-helpers=LDAP,MSNT,NCSA,PAM,SMB,YP,getpwnam,multi-domain-NTLM,SASL'
> '--enable-cache-digests' '--enable-ident-lookups' '--with-large-files'
> '--enable-follow-x-forwarded-for' '--enable-wccpv2'
> '--enable-fd-config' '--with-maxfd=16384'
> 'build_alias=i686-redhat-linux-gnu' 'host_alias=i686-redhat-linux-gnu'
> 'target_alias=i386-redhat-linux-gnu' 'CFLAGS=-D_FORTIFY_SOURCE=2 -fPIE
> -Os -g -pipe -fsigned-char' 'LDFLAGS=-pie'
>
Received on Wed May 06 2009 - 23:39:30 MDT

This archive was generated by hypermail 2.2.0 : Thu May 07 2009 - 12:00:02 MDT