<html><head></head><body><div style="color:#000; background-color:#fff; font-family:HelveticaNeue, Helvetica Neue, Helvetica, Arial, Lucida Grande, Sans-Serif;font-size:16px"><div id="yui_3_16_0_1_1456784249315_13044"><span id="yui_3_16_0_1_1456784249315_13043">Hi this is not an SSL site.</span></div><div id="yui_3_16_0_1_1456784249315_13045"><span><br></span></div><div id="yui_3_16_0_1_1456784249315_13047"><span id="yui_3_16_0_1_1456784249315_13046">Here is the config (I have stripped out the ACL's)</span></div><div id="yui_3_16_0_1_1456784249315_13050"><span><br></span></div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14303" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14306">   </span>WELCOME TO SQUID 2</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14309">       </span>------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14312" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># NETWORK OPTIONS</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># -----------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14317" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14320" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># OPTIONS WHICH AFFECT THE NEIGHBOR SELECTION ALGORITHM</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># -----------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14325" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: cache_peer</div><div id="yui_3_16_0_1_1456784249315_13051" class="">  cache_peer proxy1.ap.webscanningservice.com parent 3128 0000 default no-query no-digest</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># cache_peer proxy1.eu.webscanningservice.com parent 3128 0000 default no-query no-digest</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># cache_peer proxy1.us.webscanningservice.com parent 3128 0000 default no-query no-digest</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># cache_peer proxy1.hk.webscanningservice.com parent 3128 0000 default no-query no-digest</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># cache_peer proxy1.eu.webscanningservice.com parent 3128 0000 default no-query no-digest</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14334" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14337" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># disable local cache digest generation</div><div id="yui_3_16_0_1_1456784249315_13051" class="">digest_generation off</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14342" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: hierarchy_stoplist</div><div id="yui_3_16_0_1_1456784249315_13051" class="">hierarchy_stoplist cgi-bin ?</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14347" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#define the all here as it will be used by the no_cache</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl all src 0.0.0.0/0.0.0.0</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: no_cache</div><div id="yui_3_16_0_1_1456784249315_13051" class="">cache deny all</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14354" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># OPTIONS WHICH AFFECT THE CACHE SIZE</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># -----------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14359" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14362" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: maximum_object_size<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14365">    </span>(bytes)</div><div id="yui_3_16_0_1_1456784249315_13051" class="">maximum_object_size 0 KB</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14369" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># LOGFILE PATHNAMES AND CACHE DIRECTORIES</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># -----------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14374" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">log_uses_indirect_client on</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14378" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># Enable Log Rotation</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14382" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">logfile_rotate 7</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14386" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: emulate_httpd_log<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14389">      </span>on|off</div><div id="yui_3_16_0_1_1456784249315_13051" class="">emulate_httpd_log on</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14393" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: debug_options</div><div id="yui_3_16_0_1_1456784249315_13051" class="">debug_options ALL,1</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#debug_options ALL,9</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14399" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  By default, the store and access log is disabled to avoid large size log files</div><div id="yui_3_16_0_1_1456784249315_13051" class="">cache_store_log none</div><div id="yui_3_16_0_1_1456784249315_13051" class="">access_log none</div><div id="yui_3_16_0_1_1456784249315_13051" class="">useragent_log none</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#cache_log c:/ClientSiteProxy/var/logs/cache.log</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#access_log C:/ClientSiteProxy/var/logs/access.log</div><div id="yui_3_16_0_1_1456784249315_13051" class="">cache_log D:/SquidDefinitions/logs/cache.log</div><div id="yui_3_16_0_1_1456784249315_13051" class="">access_log D:/SquidDefinitions/logs/access.log</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#useragent_log c:/ClientSiteProxy/var/logs/useragent.log</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14411" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># IGNORE EXPECT 100 HTTP HEADER</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># -----------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class="">ignore_expect_100 on</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14417" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># OPTIONS FOR EXTERNAL SUPPORT PROGRAMS</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># -----------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14422" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: auth_param</div><div id="yui_3_16_0_1_1456784249315_13051" class="">auth_param ntlm program c:/clientsiteproxy/libexec/mswin_ntlm_auth.exe</div><div id="yui_3_16_0_1_1456784249315_13051" class="">auth_param ntlm children 80</div><div id="yui_3_16_0_1_1456784249315_13051" class="">auth_param ntlm keep_alive on</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14429" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># auth_param negotiate program c:/clientsiteproxy/libexec/mswin_negotiate_auth.exe</div><div id="yui_3_16_0_1_1456784249315_13051" class="">auth_param negotiate children 80</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14434" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">auth_param basic program c:/clientsiteproxy/libexec/ncsa_auth.exe C:/clientsiteproxy/etc/passwd.txt </div><div id="yui_3_16_0_1_1456784249315_13051" class="">auth_param basic children 5</div><div id="yui_3_16_0_1_1456784249315_13051" class="">auth_param basic realm Squid proxy-caching web server</div><div id="yui_3_16_0_1_1456784249315_13051" class="">auth_param basic credentialsttl 2 hours</div><div id="yui_3_16_0_1_1456784249315_13051" class="">auth_param basic casesensitive off</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14442" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  Use this tag to specify how long the IP authentication credentials will be cached</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  If multiple users connect from a single IP (ie: terminal services) comment out the</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  following line and uncomment the next.</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#authenticate_ip_shortcircuit_ttl 30 seconds</div><div id="yui_3_16_0_1_1456784249315_13051" class="">authenticate_ip_shortcircuit_access none</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14450" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># OPTIONS FOR TUNING THE CACHE</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># -----------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14455" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: refresh_pattern</div><div id="yui_3_16_0_1_1456784249315_13051" class="">refresh_pattern ^ftp:<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14459">            </span>1440<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14461">        </span>20%<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14463"> </span>10080</div><div id="yui_3_16_0_1_1456784249315_13051" class="">refresh_pattern ^gopher:<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14466">     </span>1440<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14468">        </span>0%<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14470">  </span>1440</div><div id="yui_3_16_0_1_1456784249315_13051" class="">refresh_pattern .<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14473">             </span>0<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14475">   </span>20%<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14477"> </span>4320</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14480" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># TIMEOUTS</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># -----------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14485" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">read_timeout 15 minutes</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14489" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># X-Saucer</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># ------------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14494" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># TAG: fqdn_xsaucer</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># Turn this on if you wish to use fully qualified domain names instead of </div><div id="yui_3_16_0_1_1456784249315_13051" class=""># user names in X-Saucer. To do this Squid does a DNS lookup of all</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># IP's connecting to it. This can (in some situations) increase</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># latency, which makes your cache seem slower for interactive</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># browsing. By default, it is off.</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># The FQDN will be prepended with a backslash and converted to lower case since</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># ClientNet only accepts custom user name with backslash. If log_fqdn is</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># also enabled, the FQDN will be logged in access.log.</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># For example, an FQDN of www.XYz.com in access.log will require specifying</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># a custom user "\www.xyz.com" (no quotes) in ClientNet. </div><div id="yui_3_16_0_1_1456784249315_13051" class="">#</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># fqdn_xsaucer off</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14510" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14513" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># TAG: hash_username_xsaucer</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14517"> </span>Turn this on if you wish to apply hex representative of hashed(SHA-1) </div><div id="yui_3_16_0_1_1456784249315_13051" class="">#<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14520">      </span>to domain name\user name (before encryption) in X-Saucer instead.</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># hash_username_xsaucer off</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14525" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14528" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># ACCESS CONTROLS</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># -----------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14533" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: acl</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># TAG: disable password on conf file</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#cachemgr_passwd none config</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl SSL_ports port 443 563 5443</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl Safe_ports port 80<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14540">           </span># http</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl Safe_ports port 21<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14543">              </span># ftp</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl Safe_ports port 443 563 5443<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14546">     </span># https, snews, medicare</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl Safe_ports port 70<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14549">            </span># gopher</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl Safe_ports port 210<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14552">           </span># wais</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl Safe_ports port 1025-65535<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14555">      </span># unregistered ports</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl Safe_ports port 280<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14558">               </span># http-mgmt</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl Safe_ports port 488<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14561">                </span># gss-http</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl Safe_ports port 591<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14564">         </span># filemaker</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl Safe_ports port 777<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14567">                </span># multiling http</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14570" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl_uses_indirect_client on</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl CONNECT method CONNECT</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl authproxy proxy_auth REQUIRED</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># the IP list of "acl our_networks src" may potentially be long while the maximum number of characters supported by squid is around 500.</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># therefore, you should try to splite long ip list to multiple lines for readabilty and maintenability, see the following lines as an example:</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># acl our_networks src x.x.x.x/z x.x.x.x/x x.x.x.x/z ....</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># acl our_networks src y.y.y.y/z y.y.y.y/y y.y.y.y/z ....</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl our_networks src 192.168.0.0/16 172.16.0.0/12 10.0.0.0/8 169.254.0.0/16</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14581" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14584" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14587" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># __________________________________________________________________________</div><div id="yui_3_16_0_1_1456784249315_13051" class="">acl HEAD method HEAD</div><div id="yui_3_16_0_1_1456784249315_13051" class="">follow_x_forwarded_for allow f5lb_prxy</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: http_access</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14594" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">http_access allow manager localhost</div><div id="yui_3_16_0_1_1456784249315_13051" class="">http_access deny manager</div><div id="yui_3_16_0_1_1456784249315_13051" class="">http_access deny !Safe_ports</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># __________________________________________________________________________</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#http_access allow CONNECT SSL_ports</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># __________________________________________________________________________</div><div id="yui_3_16_0_1_1456784249315_13051" class="">http_access deny CONNECT !SSL_ports</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#Allow the header as IE does not process the Head authentication</div><div id="yui_3_16_0_1_1456784249315_13051" class="">http_access allow HEAD</div><div id="yui_3_16_0_1_1456784249315_13051" class="">http_access deny !our_networks</div><div id="yui_3_16_0_1_1456784249315_13051" class="">http_access allow Smartconnect</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># __________________________________________________________________________</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14609" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14612" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14615" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># __________________________________________________________________________</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># NTLM bypasses and specific domain bypass come after this comment block.</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># http_access = NTLM bypass. always_direct = bypasses the MessageLabs proxy </div><div id="yui_3_16_0_1_1456784249315_13051" class=""># and sends the connection directly. The first sample below creates a bypass </div><div id="yui_3_16_0_1_1456784249315_13051" class=""># named 'uniqueBypass1' which bypasses NTLM and sends the connection directly</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># for sample.com. The second sample will bypass NTLM authentication for </div><div id="yui_3_16_0_1_1456784249315_13051" class=""># connections to sample.com.</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># Begin Sample 1:</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#acl uniqueBypass1 dstdomain sample.com</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># http_access allow uniqueBypass1 </div><div id="yui_3_16_0_1_1456784249315_13051" class=""># always_direct allow uniqueBypass1</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># Begin Sample 2:</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#acl NTLMBypass dstdomain sample.com</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#http_access allow NTLMBypass</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14632" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">http_access allow authproxy</div><div id="yui_3_16_0_1_1456784249315_13051" class="">http_access deny all</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14637" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14640" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: icp_access</div><div id="yui_3_16_0_1_1456784249315_13051" class="">icp_access allow all</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14645" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: httpd_suppress_version_string<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14648">       </span>on|off</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#<span class="" style="white-space:pre-wrap;" id="yui_3_16_0_1_1456784249315_14651">   </span>Suppress Squid version string info in HTTP headers and HTML error pages.</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#</div><div id="yui_3_16_0_1_1456784249315_13051" class="">httpd_suppress_version_string on</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14656" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14659" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># ADMINISTRATIVE PARAMETERS</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># -----------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14664" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: visible_hostname</div><div id="yui_3_16_0_1_1456784249315_13051" class="">visible_hostname ClientSiteProxy</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14669" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># OPTIONS FOR THE CACHE REGISTRATION SERVICE</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># -----------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14674" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14677" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># HTTPD-ACCELERATOR OPTIONS</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># -----------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14682" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14685" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># MISCELLANEOUS</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># -----------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14690" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># Forwarding proxy client IP addresses in X-Forwarded-For header. </div><div id="yui_3_16_0_1_1456784249315_13051" class=""># Disabled to prevent leakage of internal network configuration details.</div><div id="yui_3_16_0_1_1456784249315_13051" class="">forwarded_for truncate</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14696" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># Do not reveal CSP version in "Via" HTTP header</div><div id="yui_3_16_0_1_1456784249315_13051" class="">header_access Via deny all</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14701" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: never_direct</div><div id="yui_3_16_0_1_1456784249315_13051" class="">never_direct allow all</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14706" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class=""># DELAY POOL PARAMETERS (all require DELAY_POOLS compilation option)</div><div id="yui_3_16_0_1_1456784249315_13051" class=""># -----------------------------------------------------------------------------</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14711" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  TAG: coredump_dir</div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  completely disable checks for cache consistency (and/or garbage collection) and </div><div id="yui_3_16_0_1_1456784249315_13051" class="">#  there will be no need to initialize cache dirs which amount to be over 2000 dir.</div><div id="yui_3_16_0_1_1456784249315_13051" class="">cache_dir null c:/ClientSiteProxy</div><div id="yui_3_16_0_1_1456784249315_13051" class="">coredump_dir c:/clientsiteproxy/var/cache</div><div id="yui_3_16_0_1_1456784249315_13051" class=""><br id="yui_3_16_0_1_1456784249315_14719" class=""></div><div id="yui_3_16_0_1_1456784249315_13051" class="">http_port 80</div><div id="yui_3_16_0_1_1456784249315_13051"></div><div id="yui_3_16_0_1_1456784249315_13051" class="">http_port 8080</div><div dir="ltr" id="yui_3_16_0_1_1456784249315_14723" class=""><br id="yui_3_16_0_1_1456784249315_14725" class=""></div> <div class="qtdSeparateBR"><br><br></div><div class="yahoo_quoted" style="display: block;"> <div style="font-family: HelveticaNeue, Helvetica Neue, Helvetica, Arial, Lucida Grande, Sans-Serif; font-size: 16px;"> <div style="font-family: HelveticaNeue, Helvetica Neue, Helvetica, Arial, Lucida Grande, Sans-Serif; font-size: 16px;"> <div dir="ltr"><font size="2" face="Arial"> On Tuesday, 1 March 2016 11:49 AM, Eliezer Croitoru <eliezer@ngtech.co.il> wrote:<br></font></div>  <br><br> <div class="y_msg_container">Can you send me or the list your squid.conf?<br clear="none">Also are you using SSl-BUMP? is this a https site?<br clear="none"><br clear="none">Eliezer<br clear="none"><br clear="none">On 01/03/2016 00:36, Ryan Slick wrote:<br clear="none">> Hi Guys,<br clear="none">><br clear="none">> So here is an issue I am having,<br clear="none">><br clear="none">> there is a external website some of our users need to access. When<br clear="none">> accessing via the Squid proxy, the site throws this error on the page:<br clear="none">><br clear="none">> iisnode encountered an error when processing the request.<br clear="none">> HRESULT: 0xb<br clear="none">> HTTP status: 500<br clear="none">> HTTP reason: Internal Server Error<br clear="none">> You are receiving this HTTP 200 response because<br clear="none">> system.webServer/iisnode/@devErrorsEnabled<br clear="none">> <mailto:system.webServer/iisnode/@devErrorsEnabled> configuration<br clear="none">> setting is 'true'.<br clear="none">><br clear="none">> We configured on a pc that goes directly to the internet the page loads<br clear="none">> fine, when going via a bluecoat proxy on a different network it loads<br clear="none">> fine, When I put in a direct access rule on squid the error is still thrown.<br clear="none">><br clear="none">> I am convinced the issue is on the external webserver, however it would<br clear="none">> appear squid is not playing nice with it, is there anything I can do to<br clear="none">> attempt to fix it? Now the users have tested on their remote devices and<br clear="none">> from home they are convinced the issue lies on the proxy.<br clear="none">><br clear="none">> regards<br clear="none">><br clear="none">><br clear="none">><br clear="none">><br clear="none">><br clear="none">> _______________________________________________<br clear="none">> squid-users mailing list<br clear="none">> <a shape="rect" ymailto="mailto:squid-users@lists.squid-cache.org" href="mailto:squid-users@lists.squid-cache.org">squid-users@lists.squid-cache.org</a><br clear="none">> <a shape="rect" href="http://lists.squid-cache.org/listinfo/squid-users" target="_blank">http://lists.squid-cache.org/listinfo/squid-users</a><div class="yqt5970158597" id="yqtfd87554"><br clear="none">><br clear="none"><br clear="none">_______________________________________________<br clear="none">squid-users mailing list<br clear="none"><a shape="rect" ymailto="mailto:squid-users@lists.squid-cache.org" href="mailto:squid-users@lists.squid-cache.org">squid-users@lists.squid-cache.org</a><br clear="none"><a shape="rect" href="http://lists.squid-cache.org/listinfo/squid-users" target="_blank">http://lists.squid-cache.org/listinfo/squid-users</a><br clear="none"></div><br><br></div>  </div> </div>  </div></div></body></html>