[squid-users] cache peer problem with two squid one Tproxy --->normal Porxy

Ahmed Allzaeem ahmed.zaeem at netstream.ps
Thu Nov 13 06:39:11 UTC 2014


Hi amos 

I have changed the both hostnames on two servers :

[root at tproxy ~]# hostname
tproxy.com


[root at parent ~]# hostname
parent.com


but , as I told u last time
I can see traffic "miss" on the normal proxy , and "miss" on the tproxy server.

But it says access denied  from normal proxy 

I mean on the normal proxy "parent" there is only miss and no Denied hits , but it give me error access denid.

Also I made sure that the ip of tproxy is allowed by acl on the normal proxy"parent"


Again , here is the  cache log @ the parent proxy , still says a loop occurring :

2014/11/12 23:33:24 kid1| WARNING: Forwarding loop detected for:
GET / HTTP/1.1
Host: abc.com
User-Agent: Mozilla/5.0 (Windows NT 6.3; WOW64; rv:33.0) Gecko/20100101 Firefox/33.0
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-US,en;q=0.5
Accept-Encoding: gzip, deflate
Via: 1.1 squid (squid/3.4.3)
X-Forwarded-For: 176.58.79.248
Cache-Control: max-age=259200
Connection: keep-alive


2014/11/12 23:33:24 kid1| WARNING: Forwarding loop detected for:
GET /Artwork/SN.png HTTP/1.1
Host: www.squid-cache.org
User-Agent: Mozilla/5.0 (Windows NT 6.3; WOW64; rv:33.0) Gecko/20100101 Firefox/33.0
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-US,en;q=0.5
Accept-Encoding: gzip, deflate
Referer: http://abc.com/
Via: 1.1 squid (squid/3.4.3)
X-Forwarded-For: 176.58.79.248
Cache-Control: max-age=259200
Connection: keep-alive


Why there is a loop still ???








-----Original Message-----
From: Amos Jeffries [mailto:squid3 at treenet.co.nz] 
Sent: Wednesday, November 12, 2014 6:37 AM
To: Ahmed Allzaeem; squid-users at lists.squid-cache.org
Subject: Re: [squid-users] cache peer problem with two squid one Tproxy --->normal Porxy

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 13/11/2014 1:02 p.m., Ahmed Allzaeem wrote:
> Thanks amos
> 
> I have added option notproxy on the tproxy one It became : 
> cache_peer 77.221.104.97  parent 3127 0 no-tproxy
> 
> 
> also I changed hostnames in /etc.hosts for both servers and added 
> visible hostname  squid for both

/etc/hosts is for resolving *other* machines IPs/names.

/etc/hostname is where the server host name is configured. Or if you are using a GUI it may need to be done via one of the control panels to ensure it gets set properly.


> 
> now on the normal proxy I can see the logs access
> 
> but still not traffic it give me access denied from the parent proxy 
> ?!! any help ?

Find out why the denial. It could be the hostname still, or the first proxies outbound IP vs. your second proxies http_access rules, or it could even be coming from the origin server out on the Internet.

Amos
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.22 (MingW32)

iQEcBAEBAgAGBQJUY3BzAAoJELJo5wb/XPRjhvYH/1T5cl+N8CSRzFTvcDyW7gmZ
mIohmmQJUOS1seudbO0NrMjOuwHkaWZKNz2Obrwyk3vLTeV2OYPaM9CB4XlYOuDM
XrwyPAdSexKvtimrSVO2sGjpYy4tx2vZ58cTIgkS0LPqVDCY4+QTCRgX1UbDrUQ+
SALieUD1JTJDcE9L7l/xA/oRndINTeT3/J3aeNRvx32l5gOsMRmreGgmHiCLZo/1
N2Dfl2xDxzD+1Z1OMY5DaV/zh7kA5jpKUgOz3W7kMSq6kdKtmZSzcXz8tlyoKsP8
/WjQqr/eIfV4kFuLj2Ymw4euAZPUJfL926uFoEqhBdz24RgS/g9T1KW7mp0deeI=
=IJ+G
-----END PGP SIGNATURE-----



More information about the squid-users mailing list