Re: [squid-users] HTTPS Disconnect with squid

From: Noc Phibee Telecom <noc_at_phibee-telecom.net>
Date: Mon, 26 Nov 2012 06:20:49 +0100

Le 22/11/2012 11:06, Amos Jeffries a écrit :
> On 22/11/2012 10:33 p.m., Noc Phibee Telecom wrote:
>> Hi
>>
>> we have a problems with squid. We have a lot of user use squid in
>> proxy for access
>> to a https site.
>>
>> The problems: We don't know why, but the session close on the https
>> site after ~20/30mn.
>> only on Squid 3;x, on a old squid 2.6 we don't have this problems
>>
>> Anyone know if they have a timeout or other that can close the https
>> connection ?
>>
>> best regards
>> jerome
>>
>
> This sounds like http://bugs.squid-cache.org/show_bug.cgi?id=3659
>
> The squid 3.2 latest daily update packages labeled r11700 or later
> include a fix.
>
> Amos
>
>
Hi

thans for your answer. We use the 3.1.15 version:

Squid Cache: Version 3.1.15
configure options: '--build=x86_64-mandriva-linux-gnu' '--prefix=/usr'
'--exec-prefix=/usr' '--bindir=/usr/sbin' '--sbindir=/usr/sbin'
'--sysconfdir=/etc/squid' '--datadir=/usr/share/squid'
'--includedir=/usr/include' '--libdir=/usr/lib64'
'--libexecdir=/usr/lib64/squid' '--localstatedir=/var'
'--sharedstatedir=/usr/com' '--mandir=/usr/share/man'
'--infodir=/usr/share/info' '--x-includes=/usr/include'
'--x-libraries=/usr/lib64' '--disable-strict-error-checking'
'--enable-shared=yes' '--enable-static=no' '--enable-xmalloc-statistics'
'--enable-carp' '--enable-async-io' '--enable-storeio=aufs,diskd,ufs'
'--enable-removal-policies=heap,lru' '--enable-icmp'
'--enable-delay-pools' '--disable-esi' '--enable-icap-client'
'--enable-ecap' '--enable-useragent-log' '--enable-referer-log'
'--enable-wccp' '--enable-wccpv2' '--disable-kill-parent-hack'
'--enable-snmp' '--enable-cachemgr-hostname=localhost'
'--enable-arp-acl' '--enable-htcp' '--enable-ssl' '--enable-forw-via-db'
'--enable-follow-x-forwarded-for' '--enable-cache-digests'
'--disable-poll' '--enable-epoll' '--enable-linux-netfilter'
'--disable-ident-lookups' '--enable-default-hostsfile=/etc/hosts'
'--enable-auth=basic,digest,negotiate,ntlm'
'--enable-basic-auth-helpers=getpwnam,LDAP,MSNT,multi-domain-NTLM,NCSA,PAM,SMB,YP,SASL,POP3,DB,squid_radius_auth'
'--enable-ntlm-auth-helpers=fakeauth,no_check,smb_lm'
'--enable-negotiate-auth-helpers=squid_kerb_auth'
'--enable-digest-auth-helpers=password,ldap,eDirectory'
'--enable-external-acl-helpers=ip_user,ldap_group,session,unix_group,wbinfo_group'
'--with-default-user=squid' '--with-pthreads' '--with-dl'
'--with-openssl=/usr' '--with-large-files'
'--with-build-environment=default' '--enable-mit=/usr'
'--with-logdir=/var/log/squid' '--enable-http-violations'
'--enable-zph-qos' '--with-filedescriptors=8192'
'build_alias=x86_64-mandriva-linux-gnu' 'CFLAGS=-O2 -g
-frecord-gcc-switches -Wstrict-aliasing=2 -pipe -Wformat
-Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -fstack-protector
--param=ssp-buffer-size=4 -fstack-protector-all -fPIC
-I/usr/include/db51 -D_LARGEFILE64_SOURCE -D_FILE_OFFSET_BITS=64'
'LDFLAGS= -Wl,--as-needed -Wl,--no-undefined -Wl,-z,relro -Wl,-O1
-Wl,--build-id -Wl,--enable-new-dtags' 'CPPFLAGS=-I/usr/include/openssl
-I/usr/include/db51 -O2 -g -frecord-gcc-switches -Wstrict-aliasing=2
-pipe -Wformat -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2
-fstack-protector --param=ssp-buffer-size=4 -fstack-protector-all -fPIC
' 'CXXFLAGS=-O2 -g -frecord-gcc-switches -Wstrict-aliasing=2 -pipe
-Wformat -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2
-fstack-protector --param=ssp-buffer-size=4 -fstack-protector-all -fPIC
-D_LARGEFILE64_SOURCE -D_FILE_OFFSET_BITS=64'
--with-squid=/home/qateam/rpm/BUILD/squid-3.1.15

The bug, is only on "3.2.x" ?

best regards
Jerome
Received on Mon Nov 26 2012 - 05:21:06 MST

This archive was generated by hypermail 2.2.0 : Mon Nov 26 2012 - 12:00:03 MST