[squid-users] Documentation for squidclient?
erdosain9
erdosain9 at gmail.com
Fri May 19 18:46:32 UTC 2017
Hi again.
Just boot up
11:43
number active: 14 of 25 (0 shutting down)
requests sent: 166348
replies received: 166348
queue length: 0
avg service time: 34 msec
ID # FD PID # Requests # Replies Flags Time Offset
Request
366 97 13237 510 510 0.040 0 (none)
367 107 13238 225 225 0.243 0 (none)
368 135 13239 119 119 0.069 0 (none)
369 94 13240 77 77 0.072 0 (none)
370 109 13242 51 51 0.228 0 (none)
371 131 13243 41 41 0.228 0 (none)
372 301 13244 28 28 0.276 0 (none)
373 212 13245 23 23 0.276 0 (none)
374 261 13246 15 15 0.276 0 (none)
375 427 13249 9 9 0.276 0 (none)
376 429 13250 6 6 0.276 0 (none)
377 431 13251 5 5 0.276 0 (none)
381 332 13293 2 2 0.276 0 (none)
382 496 13359 1 1 0.276 0 (none)
12:00
---------------------------------------------------------------------------------------------
number active: 25 of 25 (0 shutting down)
requests sent: 173579
replies received: 173579
queue length: 0
avg service time: 42 msec
ID # FD PID # Requests # Replies Flags Time Offset
Request
366 97 13237 3561 3561 0.130 0 (none)
367 107 13238 1622 1622 0.059 0 (none)
368 135 13239 910 910 0.128 0 (none)
369 94 13240 599 599 0.142 0 (none)
370 109 13242 411 411 0.153 0 (none)
371 131 13243 308 308 0.215 0 (none)
372 301 13244 230 230 0.167 0 (none)
373 212 13245 172 172 0.136 0 (none)
374 261 13246 120 120 0.167 0 (none)
375 427 13249 98 98 0.173 0 (none)
376 429 13250 71 71 0.120 0 (none)
377 431 13251 50 50 0.180 0 (none)
381 332 13293 41 41 0.294 0 (none)
382 496 13359 32 32 0.312 0 (none)
383 374 13361 25 25 0.192 0 (none)
384 377 13362 21 21 0.309 0 (none)
385 373 13430 16 16 0.198 0 (none)
386 392 13431 13 13 1.044 0 (none)
387 399 13432 10 10 0.960 0 (none)
388 403 13433 8 8 1.006 0 (none)
389 448 13434 6 6 0.930 0 (none)
390 450 13435 7 7 0.994 0 (none)
391 452 13436 5 5 0.927 0 (none)
392 455 13437 4 4 0.829 0 (none)
393 457 13438 3 3 0.253 0 (none)
12:30
--------------------------------------------------------------------------------------------
number active: 25 of 25 (0 shutting down)
requests sent: 182608
replies received: 182608
queue length: 0
avg service time: 36 msec
ID # FD PID # Requests # Replies Flags Time Offset
Request
366 97 13237 7458 7458 0.085 0 (none)
367 107 13238 3401 3401 0.128 0 (none)
368 135 13239 1862 1862 0.108 0 (none)
369 94 13240 1235 1235 0.534 0 (none)
370 109 13242 862 862 0.115 0 (none)
371 131 13243 641 641 0.118 0 (none)
372 301 13244 466 466 0.118 0 (none)
373 212 13245 335 335 0.568 0 (none)
374 261 13246 249 249 0.568 0 (none)
375 427 13249 202 202 0.605 0 (none)
376 429 13250 156 156 0.451 0 (none)
377 431 13251 109 109 0.605 0 (none)
381 332 13293 88 88 0.509 0 (none)
382 496 13359 69 69 0.568 0 (none)
383 374 13361 54 54 0.803 0 (none)
384 377 13362 46 46 0.689 0 (none)
385 373 13430 32 32 0.743 0 (none)
386 392 13431 26 26 0.778 0 (none)
387 399 13432 20 20 0.772 0 (none)
388 403 13433 16 16 0.976 0 (none)
389 448 13434 12 12 0.599 0 (none)
390 450 13435 11 11 0.598 0 (none)
391 452 13436 10 10 0.519 0 (none)
392 455 13437 7 7 0.519 0 (none)
393 457 13438 5 5 0.451 0 (none)
12:46
-------------------------------------------------------------------------------------------
number active: 25 of 25 (0 shutting down)
requests sent: 189038
replies received: 189038
queue length: 0
avg service time: 37 msec
ID # FD PID # Requests # Replies Flags Time Offset
Request
366 97 13237 10231 10231 0.050 0 (none)
367 107 13238 4662 4662 0.052 0 (none)
368 135 13239 2537 2537 0.103 0 (none)
369 94 13240 1693 1693 0.104 0 (none)
370 109 13242 1194 1194 0.104 0 (none)
371 131 13243 875 875 0.074 0 (none)
372 301 13244 637 637 0.619 0 (none)
373 212 13245 462 462 0.648 0 (none)
374 261 13246 346 346 0.648 0 (none)
375 427 13249 277 277 0.663 0 (none)
376 429 13250 207 207 0.078 0 (none)
377 431 13251 150 150 0.503 0 (none)
381 332 13293 121 121 0.501 0 (none)
382 496 13359 96 96 0.401 0 (none)
383 374 13361 73 73 0.354 0 (none)
384 377 13362 61 61 0.288 0 (none)
385 373 13430 43 43 0.200 0 (none)
386 392 13431 34 34 0.360 0 (none)
387 399 13432 27 27 0.390 0 (none)
388 403 13433 23 23 0.390 0 (none)
389 448 13434 16 16 0.363 0 (none)
390 450 13435 12 12 1.525 0 (none)
391 452 13436 11 11 1.619 0 (none)
392 455 13437 8 8 1.578 0 (none)
393 457 13438 6 6 1.611 0 (none)
TIME FOR LUNCH
----------------------------------------------------------------------------------------
number active: 25 of 25 (0 shutting down)
requests sent: 199622
replies received: 199622
queue length: 0
avg service time: 27 msec
ID # FD PID # Requests # Replies Flags Time Offset
Request
366 97 13237 15368 15368 0.051 0 (none)
367 107 13238 6711 6711 0.047 0 (none)
368 135 13239 3571 3571 0.089 0 (none)
369 94 13240 2342 2342 0.066 0 (none)
370 109 13242 1650 1650 0.068 0 (none)
371 131 13243 1185 1185 0.186 0 (none)
372 301 13244 866 866 0.103 0 (none)
373 212 13245 638 638 0.153 0 (none)
374 261 13246 482 482 0.092 0 (none)
375 427 13249 378 378 0.402 0 (none)
376 429 13250 273 273 0.495 0 (none)
377 431 13251 201 201 0.234 0 (none)
381 332 13293 162 162 0.428 0 (none)
382 496 13359 127 127 0.447 0 (none)
383 374 13361 99 99 0.492 0 (none)
384 377 13362 82 82 0.392 0 (none)
385 373 13430 62 62 0.471 0 (none)
386 392 13431 49 49 0.434 0 (none)
387 399 13432 39 39 0.346 0 (none)
388 403 13433 31 31 0.287 0 (none)
389 448 13434 20 20 0.292 0 (none)
390 450 13435 16 16 0.451 0 (none)
391 452 13436 15 15 0.322 0 (none)
392 455 13437 11 11 0.466 0 (none)
393 457 13438 8 8 0.505 0 (none)
14:53
--------------------------------------------------------------------------------------
number active: 25 of 25 (0 shutting down)
requests sent: 226841
replies received: 226841
queue length: 0
avg service time: 26 msec
ID # FD PID # Requests # Replies Flags Time Offset
Request
366 97 13237 27933 27933 0.178 0 (none)
367 107 13238 11866 11866 0.450 0 (none)
368 135 13239 6397 6397 0.447 0 (none)
369 94 13240 4165 4165 0.456 0 (none)
370 109 13242 2946 2946 0.374 0 (none)
371 131 13243 2146 2146 0.389 0 (none)
372 301 13244 1541 1541 0.387 0 (none)
373 212 13245 1121 1121 0.366 0 (none)
374 261 13246 835 835 0.376 0 (none)
375 427 13249 651 651 0.376 0 (none)
376 429 13250 471 471 0.376 0 (none)
377 431 13251 341 341 0.376 0 (none)
381 332 13293 263 263 0.199 0 (none)
382 496 13359 200 200 0.273 0 (none)
383 374 13361 160 160 0.135 0 (none)
384 377 13362 131 131 0.216 0 (none)
385 373 13430 101 101 0.608 0 (none)
386 392 13431 81 81 0.541 0 (none)
387 399 13432 67 67 0.269 0 (none)
388 403 13433 54 54 0.249 0 (none)
389 448 13434 37 37 0.137 0 (none)
390 450 13435 30 30 0.153 0 (none)
391 452 13436 28 28 0.996 0 (none)
392 455 13437 23 23 0.996 0 (none)
393 457 13438 17 17 0.867 0 (none)
15:52
--------------------------------------------------------------------------------------
number active: 25 of 25 (0 shutting down)
requests sent: 239806
replies received: 239806
queue length: 0
avg service time: 26 msec
ID # FD PID # Requests # Replies Flags Time Offset
Request
366 97 13237 34695 34695 0.045 0 (none)
367 107 13238 14219 14219 0.102 0 (none)
368 135 13239 7622 7622 0.091 0 (none)
369 94 13240 4912 4912 0.091 0 (none)
370 109 13242 3440 3440 0.065 0 (none)
371 131 13243 2499 2499 0.096 0 (none)
372 301 13244 1775 1775 0.134 0 (none)
373 212 13245 1305 1305 0.062 0 (none)
374 261 13246 974 974 0.190 0 (none)
375 427 13249 760 760 0.551 0 (none)
376 429 13250 545 545 0.659 0 (none)
377 431 13251 393 393 0.531 0 (none)
381 332 13293 303 303 0.515 0 (none)
382 496 13359 235 235 0.500 0 (none)
383 374 13361 188 188 0.529 0 (none)
384 377 13362 156 156 0.498 0 (none)
385 373 13430 122 122 0.606 0 (none)
386 392 13431 99 99 0.498 0 (none)
387 399 13432 81 81 0.467 0 (none)
388 403 13433 68 68 0.482 0 (none)
389 448 13434 48 48 0.467 0 (none)
390 450 13435 38 38 0.573 0 (none)
391 452 13436 37 37 0.470 0 (none)
392 455 13437 32 32 0.485 0 (none)
393 457 13438 24 24 0.449 0 (none)
This values are fine?? probably yes, but how can i tune for better??
###Kerberos Auth with ActiveDirectory###
auth_param negotiate program /lib64/squid/negotiate_kerberos_auth -s
HTTP/squid.xxxxxxx.lan at xxxxxxx.LAN
auth_param negotiate children 25 startup=0 idle=1
auth_param negotiate keep_alive on
external_acl_type i-full %LOGIN /usr/lib64/squid/ext_kerberos_ldap_group_acl
-g i-full at xxxxxxx.LAN
external_acl_type i-limitado %LOGIN
/usr/lib64/squid/ext_kerberos_ldap_group_acl -g i-limitado at xxxxxxx.LAN
#GRUPOS
acl i-full external i-full
acl i-limitado external i-limitado
####Bloquea Publicidad ( http://pgl.yoyo.org/adservers/ )
acl ads dstdom_regex "/etc/squid/listas/ad_block.lst"
http_access deny ads
#deny_info TCP_RESET ads
####Streaming
acl youtube url_regex -i \.flv$
acl youtube url_regex -i \.mp4$
acl youtube url_regex -i watch?
acl youtube url_regex -i youtube
acl facebook url_regex -i facebook
acl facebook url_regex -i fbcdn\.net\/v\/(.*\.mp4)\?
acl facebook url_regex -i fbcdn\.net\/v\/(.*\.jpg)\?
acl facebook url_regex -i akamaihd\.net\/v\/(.*\.mp4)\?
acl facebook url_regex -i akamaihd\.net\/v\/(.*\.jpg)\?
##Dominios denegados
acl dominios_denegados dstdomain "/etc/squid/listas/dominios_denegados.lst"
#Puertos
acl SSL_ports port 443
acl SSL_ports port 8443
acl SSL_ports port 8080
acl SSL_ports port 20000
acl SSL_ports port 10000
acl SSL_ports port 2083
acl Safe_ports port 631 # httpCUPS
acl Safe_ports port 85
acl Safe_ports port 80 # http
acl Safe_ports port 21 # ftp
acl Safe_ports port 443 # https
acl Safe_ports port 70 # gopher
acl Safe_ports port 210 # wais
acl Safe_ports port 8443 # httpsalt
acl Safe_ports port 1025-65535 # unregistered ports
acl Safe_ports port 280 # http-mgmt
acl Safe_ports port 488 # gss-http
acl Safe_ports port 591 # filemaker
acl Safe_ports port 777 # multiling http
acl Safe_ports port 8080 # edesur y otros
acl Safe_ports port 2199 # radio
acl CONNECT method CONNECT
#
# Deny requests to certain unsafe ports
http_access deny !Safe_ports
# Deny CONNECT to other than secure SSL ports
http_access deny CONNECT !SSL_ports
# Only allow cachemgr access from localhost
http_access allow localhost manager
http_access deny manager
#
# INSERT YOUR OWN RULE(S) HERE TO ALLOW ACCESS FROM YOUR CLIENTS
#
# Example rule allowing access from your local networks.
# Adapt localnet in the ACL section to list your (internal) IP networks
# from where browsing should be allowed
http_access allow i-limitado !dominios_denegados
http_access allow i-full !dominios_denegados
http_access allow localhost
# And finally deny all other access to this proxy
http_access deny all
# Squid normally listens to port 3128
http_port 127.0.0.1:3128
http_port 192.168.1.215:3128 ssl-bump generate-host-certificates=on
dynamic_cert_mem_cache_size=4MB cert=/etc/squid/ssl_cert/myca.pem
key=/etc/squid/ssl_cert/myca.pem
acl step1 at_step SslBump1
acl excludeSSL ssl::server_name_regex "/etc/squid/listas/excluidosSSL.lst"
ssl_bump peek step1
ssl_bump splice excludeSSL
ssl_bump bump all
# Uncomment and adjust the following to add a disk cache directory.
cache_dir diskd /var/spool/squid 15000 16 256
cache_mem 758 MB
cache_swap_low 90
cache_swap_high 95
# Leave coredumps in the first cache dir
coredump_dir /var/spool/squid
#Your refresh_pattern
refresh_pattern -i \.jpg$ 30 0% 30 ignore-no-cache ignore-no-store
ignore-private
#
# Add any of your own refresh_pattern entries above these.
#
refresh_pattern ^ftp: 1440 20% 10080
refresh_pattern ^gopher: 1440 0% 1440
refresh_pattern -i (/cgi-bin/|\?) 0 0% 0
refresh_pattern . 0 20% 4320
###ACTIVAR EN CASO DE "Connection reset by peer" EN MUCHOS HOST
via off
forwarded_for delete
###
#Pools para ancho de banda
delay_pools 5
#Ancho de Youtube
delay_class 1 2
delay_parameters 1 1000000/1000000 50000/256000
delay_access 1 allow i-limitado youtube !facebook
delay_access 1 deny all
#Ancho de Facebook
delay_class 2 2
delay_parameters 2 1000000/1000000 50000/256000
delay_access 2 allow i-limitado facebook !youtube
delay_access 2 deny all
#Ancho de banda YOUTUBE FULL
delay_class 3 1
delay_parameters 3 1000000/1000000
delay_access 3 allow i-full youtube !facebook
delay_access 3 deny all
#Ancho de banda LIMITADO
delay_class 4 3
delay_parameters 4 3000000/3000000 1000000/1000000 256000/512000
delay_access 4 allow i-limitado !youtube !facebook
delay_access 4 deny all
#Ancho de banda FULL
delay_class 5 3
delay_parameters 5 1500000/1500000 750000/750000 256000/512000
delay_access 5 allow i-full !youtube !facebook
delay_access 5 deny all
dns_nameservers 192.168.1.222 8.8.8.8
#dns_nameservers 8.8.8.8 8.8.4.4
visible_hostname squid.xxxxxxx.lan
# try connecting to first 25 ips of a domain name
forward_max_tries 25
# fix some ipv6 errors (recommended to comment out)
dns_v4_first on
# c-icap integration
# -------------------------------------
# Adaptation parameters
# -------------------------------------
icap_enable on
icap_send_client_ip on
icap_send_client_username on
icap_client_username_header X-Authenticated-User
icap_preview_enable on
icap_preview_size 1024
icap_service service_avi_req reqmod_precache
icap://127.0.0.1:1344/squidclamav bypass=on
adaptation_access service_avi_req allow all
icap_service service_avi_resp respmod_precache
icap://127.0.0.1:1344/squidclamav bypass=off
adaptation_access service_avi_resp allow all
# end integration
THANKSSSSSSSSSSSSSSSS!
--
View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/Documentation-for-squidclient-tp4682457p4682491.html
Sent from the Squid - Users mailing list archive at Nabble.com.
More information about the squid-users
mailing list