On 13/08/2014 10:09 p.m., Warren Baker wrote: > HI all, > > I noticed this error message (multiple entries) for yesterday and > today on Squid 3.3.11 > > 2014/08/13 00:01:06 kid1| Logfile: > daemon:/util/var/squid/log/access.log: queue is too large; some log > messages have been lost. > > Its not a very high utilized proxy so I was a little surprised this > happened. I assume something may have caused a spike in traffic > resulting in the log buffer filling up but whats concerning is that it > never recovers until a -k reconfigure was issued, a -k rotate didnt > help. So all log entries for yesterday and today are gone. > > Any ideas on why it doesn't recover and possibly what could have > caused the issue? As looking at the access logs leading up to the > event there is nothing that stands out. Are you using the default Squid daemon or a custom one? Can you reproduce this problem with the current 3.4 stable release? Are you able to identify what the daemon helper is doing when it is loosing log lines? Amos