I am finding that some websites do not respond when queried through squid. I looked at this page, which suggests some solutions: http://squidproxy.wordpress.com/2007/06/05/thinsg-to-look-at-if-websites-are-hanging but I don't think it gives any useful suggestions. I tried setting the mss to 1200 without success. The basic reason that I don't think these suggestions are appropriate for the problems I am seeing is simply that queries from the same machine using telnet or wget (but not from squid) do get responses, so the problem appears to be related to squid, rather than the networking setup. Also, I don't see any relevant icmp packets being dropped by the iptables rules (all on the same machine -- it is a firewall/proxy in one) and, being a Linux firewall, I think that it should be able to deal with ECN bits in packets. Are there any other suggestions, other settings to try? I am running squid 3.1.19 on Gentoo Linux Regards, Simon