[squid-users] Problem with http upload through squid

From: Eric <rubuntu_at_laposte.net>
Date: Sat, 13 Mar 2010 17:30:02 +0100

Hi,

I'm using Squid v. 2.7.STABLE7 in an ipcop server (v.1.4.21). I'm facing
problem with http upload through squid.
I often get 2 error's messages when i try to upload a file on my website
using an amazing upload script (OpenUpload) :

1- (104) Connection reset by peer

2- Zero Sized Reply

Every thing works fine if i try to upload the same files bypassing squid.

Here's my squid.conf :

> # Do not modify '/var/ipcop/proxy/squid.conf' directly since any changes
> # you make will be overwritten whenever you resave proxy settings
> using the
> # web interface!
> #
> # Instead, modify the file
> '/var/ipcop/proxy/advanced/acls/include.acl' and
> # then restart the proxy service using the web interface. Changes made
> to the
> # 'include.acl' file will propagate to the 'squid.conf' file at that time.
>
> shutdown_lifetime 5 seconds
> icp_port 0
>
> http_port 192.168.2.1:800 transparent
> http_port 192.168.3.1:800 transparent
>
>
> cache_effective_user squid
> cache_effective_group squid
> umask 022
>
> pid_filename /var/run/squid.pid
>
> cache_mem 50 MB
> cache_dir aufs /var/log/cache 500 16 256
>
> error_directory /usr/lib/squid/advproxy/errors/French
>
> access_log /var/log/squid/access.log
> cache_log /var/log/squid/cache.log
> cache_store_log none
> useragent_log /var/log/squid/user_agent.log
>
> strip_query_terms off
>
> log_mime_hdrs off
> forwarded_for off
> via off
>
> acl within_timeframe time MTWHFAS 00:00-24:00
>
> acl all src 0.0.0.0/0.0.0.0
> acl localhost src 127.0.0.1/255.255.255.255
> acl SSL_ports port 443 # https
> acl SSL_ports port 563 # snews
> acl Safe_ports port 80 # http
> acl Safe_ports port 21 # ftp
> acl Safe_ports port 443 # https
> acl Safe_ports port 563 # snews
> acl Safe_ports port 70 # gopher
> acl Safe_ports port 210 # wais
> acl Safe_ports port 1025-65535 # unregistered ports
> acl Safe_ports port 280 # http-mgmt
> acl Safe_ports port 488 # gss-http
> acl Safe_ports port 591 # filemaker
> acl Safe_ports port 777 # multiling http
> acl Safe_ports port 800 # Squids port (for icons)
>
> acl IPCop_http port 81
> acl IPCop_https port 445
> acl IPCop_ips dst 192.168.2.1
> acl IPCop_networks src
> "/var/ipcop/proxy/advanced/acls/src_subnets.acl"
> acl IPCop_servers dst
> "/var/ipcop/proxy/advanced/acls/src_subnets.acl"
> acl IPCop_green_network src 192.168.2.0/255.255.255.0
> acl IPCop_green_servers dst 192.168.2.0/255.255.255.0
> acl IPCop_blue_network src 192.168.3.0/255.255.255.0
> acl IPCop_blue_servers dst 192.168.3.0/255.255.255.0
> acl CONNECT method CONNECT
>
> #Access to squid:
> #local machine, no restriction
> http_access allow localhost
>
> #GUI admin if local machine connects
> http_access allow IPCop_ips IPCop_networks IPCop_http
> http_access allow CONNECT IPCop_ips IPCop_networks IPCop_https
>
> #Deny not web services
> http_access deny !Safe_ports
> http_access deny CONNECT !SSL_ports
>
> #Set custom configured ACLs
> http_access allow IPCop_networks within_timeframe
> http_access deny all
>
> #Strip HTTP Header
> header_access X-Forwarded-For deny all
> header_access Via deny all
>
> httpd_suppress_version_string on
>
> maximum_object_size 10096 KB
> minimum_object_size 0 KB
>
> request_body_max_size 0 KB
> reply_body_max_size 0 deny all
>
> visible_hostname ipcop.localdomain
>
> url_rewrite_program /usr/sbin/squidGuard
> url_rewrite_children 5

(the include.acl file is empty)

How to solve this upload problem ?

Thanks for your help !

Eric
Received on Sat Mar 13 2010 - 16:30:09 MST

This archive was generated by hypermail 2.2.0 : Sat Mar 13 2010 - 12:00:03 MST