Hi again. Just boot up 11:43 number active: 14 of 25 (0 shutting down) requests sent: 166348 replies received: 166348 queue length: 0 avg service time: 34 msec ID # FD PID # Requests # Replies Flags Time Offset Request 366 97 13237 510 510 0.040 0 (none) 367 107 13238 225 225 0.243 0 (none) 368 135 13239 119 119 0.069 0 (none) 369 94 13240 77 77 0.072 0 (none) 370 109 13242 51 51 0.228 0 (none) 371 131 13243 41 41 0.228 0 (none) 372 301 13244 28 28 0.276 0 (none) 373 212 13245 23 23 0.276 0 (none) 374 261 13246 15 15 0.276 0 (none) 375 427 13249 9 9 0.276 0 (none) 376 429 13250 6 6 0.276 0 (none) 377 431 13251 5 5 0.276 0 (none) 381 332 13293 2 2 0.276 0 (none) 382 496 13359 1 1 0.276 0 (none) 12:00 --------------------------------------------------------------------------------------------- number active: 25 of 25 (0 shutting down) requests sent: 173579 replies received: 173579 queue length: 0 avg service time: 42 msec ID # FD PID # Requests # Replies Flags Time Offset Request 366 97 13237 3561 3561 0.130 0 (none) 367 107 13238 1622 1622 0.059 0 (none) 368 135 13239 910 910 0.128 0 (none) 369 94 13240 599 599 0.142 0 (none) 370 109 13242 411 411 0.153 0 (none) 371 131 13243 308 308 0.215 0 (none) 372 301 13244 230 230 0.167 0 (none) 373 212 13245 172 172 0.136 0 (none) 374 261 13246 120 120 0.167 0 (none) 375 427 13249 98 98 0.173 0 (none) 376 429 13250 71 71 0.120 0 (none) 377 431 13251 50 50 0.180 0 (none) 381 332 13293 41 41 0.294 0 (none) 382 496 13359 32 32 0.312 0 (none) 383 374 13361 25 25 0.192 0 (none) 384 377 13362 21 21 0.309 0 (none) 385 373 13430 16 16 0.198 0 (none) 386 392 13431 13 13 1.044 0 (none) 387 399 13432 10 10 0.960 0 (none) 388 403 13433 8 8 1.006 0 (none) 389 448 13434 6 6 0.930 0 (none) 390 450 13435 7 7 0.994 0 (none) 391 452 13436 5 5 0.927 0 (none) 392 455 13437 4 4 0.829 0 (none) 393 457 13438 3 3 0.253 0 (none) 12:30 -------------------------------------------------------------------------------------------- number active: 25 of 25 (0 shutting down) requests sent: 182608 replies received: 182608 queue length: 0 avg service time: 36 msec ID # FD PID # Requests # Replies Flags Time Offset Request 366 97 13237 7458 7458 0.085 0 (none) 367 107 13238 3401 3401 0.128 0 (none) 368 135 13239 1862 1862 0.108 0 (none) 369 94 13240 1235 1235 0.534 0 (none) 370 109 13242 862 862 0.115 0 (none) 371 131 13243 641 641 0.118 0 (none) 372 301 13244 466 466 0.118 0 (none) 373 212 13245 335 335 0.568 0 (none) 374 261 13246 249 249 0.568 0 (none) 375 427 13249 202 202 0.605 0 (none) 376 429 13250 156 156 0.451 0 (none) 377 431 13251 109 109 0.605 0 (none) 381 332 13293 88 88 0.509 0 (none) 382 496 13359 69 69 0.568 0 (none) 383 374 13361 54 54 0.803 0 (none) 384 377 13362 46 46 0.689 0 (none) 385 373 13430 32 32 0.743 0 (none) 386 392 13431 26 26 0.778 0 (none) 387 399 13432 20 20 0.772 0 (none) 388 403 13433 16 16 0.976 0 (none) 389 448 13434 12 12 0.599 0 (none) 390 450 13435 11 11 0.598 0 (none) 391 452 13436 10 10 0.519 0 (none) 392 455 13437 7 7 0.519 0 (none) 393 457 13438 5 5 0.451 0 (none) 12:46 ------------------------------------------------------------------------------------------- number active: 25 of 25 (0 shutting down) requests sent: 189038 replies received: 189038 queue length: 0 avg service time: 37 msec ID # FD PID # Requests # Replies Flags Time Offset Request 366 97 13237 10231 10231 0.050 0 (none) 367 107 13238 4662 4662 0.052 0 (none) 368 135 13239 2537 2537 0.103 0 (none) 369 94 13240 1693 1693 0.104 0 (none) 370 109 13242 1194 1194 0.104 0 (none) 371 131 13243 875 875 0.074 0 (none) 372 301 13244 637 637 0.619 0 (none) 373 212 13245 462 462 0.648 0 (none) 374 261 13246 346 346 0.648 0 (none) 375 427 13249 277 277 0.663 0 (none) 376 429 13250 207 207 0.078 0 (none) 377 431 13251 150 150 0.503 0 (none) 381 332 13293 121 121 0.501 0 (none) 382 496 13359 96 96 0.401 0 (none) 383 374 13361 73 73 0.354 0 (none) 384 377 13362 61 61 0.288 0 (none) 385 373 13430 43 43 0.200 0 (none) 386 392 13431 34 34 0.360 0 (none) 387 399 13432 27 27 0.390 0 (none) 388 403 13433 23 23 0.390 0 (none) 389 448 13434 16 16 0.363 0 (none) 390 450 13435 12 12 1.525 0 (none) 391 452 13436 11 11 1.619 0 (none) 392 455 13437 8 8 1.578 0 (none) 393 457 13438 6 6 1.611 0 (none) TIME FOR LUNCH ---------------------------------------------------------------------------------------- number active: 25 of 25 (0 shutting down) requests sent: 199622 replies received: 199622 queue length: 0 avg service time: 27 msec ID # FD PID # Requests # Replies Flags Time Offset Request 366 97 13237 15368 15368 0.051 0 (none) 367 107 13238 6711 6711 0.047 0 (none) 368 135 13239 3571 3571 0.089 0 (none) 369 94 13240 2342 2342 0.066 0 (none) 370 109 13242 1650 1650 0.068 0 (none) 371 131 13243 1185 1185 0.186 0 (none) 372 301 13244 866 866 0.103 0 (none) 373 212 13245 638 638 0.153 0 (none) 374 261 13246 482 482 0.092 0 (none) 375 427 13249 378 378 0.402 0 (none) 376 429 13250 273 273 0.495 0 (none) 377 431 13251 201 201 0.234 0 (none) 381 332 13293 162 162 0.428 0 (none) 382 496 13359 127 127 0.447 0 (none) 383 374 13361 99 99 0.492 0 (none) 384 377 13362 82 82 0.392 0 (none) 385 373 13430 62 62 0.471 0 (none) 386 392 13431 49 49 0.434 0 (none) 387 399 13432 39 39 0.346 0 (none) 388 403 13433 31 31 0.287 0 (none) 389 448 13434 20 20 0.292 0 (none) 390 450 13435 16 16 0.451 0 (none) 391 452 13436 15 15 0.322 0 (none) 392 455 13437 11 11 0.466 0 (none) 393 457 13438 8 8 0.505 0 (none) 14:53 -------------------------------------------------------------------------------------- number active: 25 of 25 (0 shutting down) requests sent: 226841 replies received: 226841 queue length: 0 avg service time: 26 msec ID # FD PID # Requests # Replies Flags Time Offset Request 366 97 13237 27933 27933 0.178 0 (none) 367 107 13238 11866 11866 0.450 0 (none) 368 135 13239 6397 6397 0.447 0 (none) 369 94 13240 4165 4165 0.456 0 (none) 370 109 13242 2946 2946 0.374 0 (none) 371 131 13243 2146 2146 0.389 0 (none) 372 301 13244 1541 1541 0.387 0 (none) 373 212 13245 1121 1121 0.366 0 (none) 374 261 13246 835 835 0.376 0 (none) 375 427 13249 651 651 0.376 0 (none) 376 429 13250 471 471 0.376 0 (none) 377 431 13251 341 341 0.376 0 (none) 381 332 13293 263 263 0.199 0 (none) 382 496 13359 200 200 0.273 0 (none) 383 374 13361 160 160 0.135 0 (none) 384 377 13362 131 131 0.216 0 (none) 385 373 13430 101 101 0.608 0 (none) 386 392 13431 81 81 0.541 0 (none) 387 399 13432 67 67 0.269 0 (none) 388 403 13433 54 54 0.249 0 (none) 389 448 13434 37 37 0.137 0 (none) 390 450 13435 30 30 0.153 0 (none) 391 452 13436 28 28 0.996 0 (none) 392 455 13437 23 23 0.996 0 (none) 393 457 13438 17 17 0.867 0 (none) 15:52 -------------------------------------------------------------------------------------- number active: 25 of 25 (0 shutting down) requests sent: 239806 replies received: 239806 queue length: 0 avg service time: 26 msec ID # FD PID # Requests # Replies Flags Time Offset Request 366 97 13237 34695 34695 0.045 0 (none) 367 107 13238 14219 14219 0.102 0 (none) 368 135 13239 7622 7622 0.091 0 (none) 369 94 13240 4912 4912 0.091 0 (none) 370 109 13242 3440 3440 0.065 0 (none) 371 131 13243 2499 2499 0.096 0 (none) 372 301 13244 1775 1775 0.134 0 (none) 373 212 13245 1305 1305 0.062 0 (none) 374 261 13246 974 974 0.190 0 (none) 375 427 13249 760 760 0.551 0 (none) 376 429 13250 545 545 0.659 0 (none) 377 431 13251 393 393 0.531 0 (none) 381 332 13293 303 303 0.515 0 (none) 382 496 13359 235 235 0.500 0 (none) 383 374 13361 188 188 0.529 0 (none) 384 377 13362 156 156 0.498 0 (none) 385 373 13430 122 122 0.606 0 (none) 386 392 13431 99 99 0.498 0 (none) 387 399 13432 81 81 0.467 0 (none) 388 403 13433 68 68 0.482 0 (none) 389 448 13434 48 48 0.467 0 (none) 390 450 13435 38 38 0.573 0 (none) 391 452 13436 37 37 0.470 0 (none) 392 455 13437 32 32 0.485 0 (none) 393 457 13438 24 24 0.449 0 (none) This values are fine?? probably yes, but how can i tune for better?? ###Kerberos Auth with ActiveDirectory### auth_param negotiate program /lib64/squid/negotiate_kerberos_auth -s HTTP/squid.xxxxxxx.lan@xxxxxxxxxxx auth_param negotiate children 25 startup=0 idle=1 auth_param negotiate keep_alive on external_acl_type i-full %LOGIN /usr/lib64/squid/ext_kerberos_ldap_group_acl -g i-full@xxxxxxxxxxx external_acl_type i-limitado %LOGIN /usr/lib64/squid/ext_kerberos_ldap_group_acl -g i-limitado@xxxxxxxxxxx #GRUPOS acl i-full external i-full acl i-limitado external i-limitado ####Bloquea Publicidad ( http://pgl.yoyo.org/adservers/ ) acl ads dstdom_regex "/etc/squid/listas/ad_block.lst" http_access deny ads #deny_info TCP_RESET ads ####Streaming acl youtube url_regex -i \.flv$ acl youtube url_regex -i \.mp4$ acl youtube url_regex -i watch? acl youtube url_regex -i youtube acl facebook url_regex -i facebook acl facebook url_regex -i fbcdn\.net\/v\/(.*\.mp4)\? acl facebook url_regex -i fbcdn\.net\/v\/(.*\.jpg)\? acl facebook url_regex -i akamaihd\.net\/v\/(.*\.mp4)\? acl facebook url_regex -i akamaihd\.net\/v\/(.*\.jpg)\? ##Dominios denegados acl dominios_denegados dstdomain "/etc/squid/listas/dominios_denegados.lst" #Puertos acl SSL_ports port 443 acl SSL_ports port 8443 acl SSL_ports port 8080 acl SSL_ports port 20000 acl SSL_ports port 10000 acl SSL_ports port 2083 acl Safe_ports port 631 # httpCUPS acl Safe_ports port 85 acl Safe_ports port 80 # http acl Safe_ports port 21 # ftp acl Safe_ports port 443 # https acl Safe_ports port 70 # gopher acl Safe_ports port 210 # wais acl Safe_ports port 8443 # httpsalt acl Safe_ports port 1025-65535 # unregistered ports acl Safe_ports port 280 # http-mgmt acl Safe_ports port 488 # gss-http acl Safe_ports port 591 # filemaker acl Safe_ports port 777 # multiling http acl Safe_ports port 8080 # edesur y otros acl Safe_ports port 2199 # radio acl CONNECT method CONNECT # # Deny requests to certain unsafe ports http_access deny !Safe_ports # Deny CONNECT to other than secure SSL ports http_access deny CONNECT !SSL_ports # Only allow cachemgr access from localhost http_access allow localhost manager http_access deny manager # # INSERT YOUR OWN RULE(S) HERE TO ALLOW ACCESS FROM YOUR CLIENTS # # Example rule allowing access from your local networks. # Adapt localnet in the ACL section to list your (internal) IP networks # from where browsing should be allowed http_access allow i-limitado !dominios_denegados http_access allow i-full !dominios_denegados http_access allow localhost # And finally deny all other access to this proxy http_access deny all # Squid normally listens to port 3128 http_port 127.0.0.1:3128 http_port 192.168.1.215:3128 ssl-bump generate-host-certificates=on dynamic_cert_mem_cache_size=4MB cert=/etc/squid/ssl_cert/myca.pem key=/etc/squid/ssl_cert/myca.pem acl step1 at_step SslBump1 acl excludeSSL ssl::server_name_regex "/etc/squid/listas/excluidosSSL.lst" ssl_bump peek step1 ssl_bump splice excludeSSL ssl_bump bump all # Uncomment and adjust the following to add a disk cache directory. cache_dir diskd /var/spool/squid 15000 16 256 cache_mem 758 MB cache_swap_low 90 cache_swap_high 95 # Leave coredumps in the first cache dir coredump_dir /var/spool/squid #Your refresh_pattern refresh_pattern -i \.jpg$ 30 0% 30 ignore-no-cache ignore-no-store ignore-private # # Add any of your own refresh_pattern entries above these. # refresh_pattern ^ftp: 1440 20% 10080 refresh_pattern ^gopher: 1440 0% 1440 refresh_pattern -i (/cgi-bin/|\?) 0 0% 0 refresh_pattern . 0 20% 4320 ###ACTIVAR EN CASO DE "Connection reset by peer" EN MUCHOS HOST via off forwarded_for delete ### #Pools para ancho de banda delay_pools 5 #Ancho de Youtube delay_class 1 2 delay_parameters 1 1000000/1000000 50000/256000 delay_access 1 allow i-limitado youtube !facebook delay_access 1 deny all #Ancho de Facebook delay_class 2 2 delay_parameters 2 1000000/1000000 50000/256000 delay_access 2 allow i-limitado facebook !youtube delay_access 2 deny all #Ancho de banda YOUTUBE FULL delay_class 3 1 delay_parameters 3 1000000/1000000 delay_access 3 allow i-full youtube !facebook delay_access 3 deny all #Ancho de banda LIMITADO delay_class 4 3 delay_parameters 4 3000000/3000000 1000000/1000000 256000/512000 delay_access 4 allow i-limitado !youtube !facebook delay_access 4 deny all #Ancho de banda FULL delay_class 5 3 delay_parameters 5 1500000/1500000 750000/750000 256000/512000 delay_access 5 allow i-full !youtube !facebook delay_access 5 deny all dns_nameservers 192.168.1.222 8.8.8.8 #dns_nameservers 8.8.8.8 8.8.4.4 visible_hostname squid.xxxxxxx.lan # try connecting to first 25 ips of a domain name forward_max_tries 25 # fix some ipv6 errors (recommended to comment out) dns_v4_first on # c-icap integration # ------------------------------------- # Adaptation parameters # ------------------------------------- icap_enable on icap_send_client_ip on icap_send_client_username on icap_client_username_header X-Authenticated-User icap_preview_enable on icap_preview_size 1024 icap_service service_avi_req reqmod_precache icap://127.0.0.1:1344/squidclamav bypass=on adaptation_access service_avi_req allow all icap_service service_avi_resp respmod_precache icap://127.0.0.1:1344/squidclamav bypass=off adaptation_access service_avi_resp allow all # end integration THANKSSSSSSSSSSSSSSSS! -- View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/Documentation-for-squidclient-tp4682457p4682491.html Sent from the Squid - Users mailing list archive at Nabble.com. _______________________________________________ squid-users mailing list squid-users@xxxxxxxxxxxxxxxxxxxxx http://lists.squid-cache.org/listinfo/squid-users