Search squid archive

Upstream Proxy

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hello,

 

I’ve been trying to hand off credentials to our upstream proxy GoGuardian and have been facing many issues. GG is not very helpful and keeps pushing to use their Windows client, however if they support MDMs for mobile devices why wouldn’t Squid work?

 

Has anyone gotten Squid to successfully hand off to GoGuardian as their upstream proxy?

 

Advanced ACLs:
cache_peer gateway.goguardian.com parent 443 0 no-query no-digest no-netdb-exchange connect-timeout=60 default tls login=NEGOTIATE:principal_name sslcapath=/usr/local/share/ca-certificates/

cache_peer_access gateway.goguardian.com allow all

never_direct allow all

 

 

Log snipit:
2022/06/30 15:22:49.198 kid1| 5,3| IoCallback.cc(112) finish: called for conn2126 local=10.56.1.3:59674 remote=18.213.126.143:443 FIRSTUP_PARENT FD 24 flags=1 (0, 0)

2022/06/30 15:22:49.198 kid1| 93,3| AsyncCall.cc(96) ScheduleCall: IoCallback.cc(131) will call Http::Tunneler::handleReadyRead(conn2126 local=10.56.1.3:59674 remote=18.213.126.143:443 FIRSTUP_PARENT FD 24 flags=1, data="" [call548666]

2022/06/30 15:22:49.198 kid1| 93,3| AsyncCallQueue.cc(59) fireNext: entering Http::Tunneler::handleReadyRead(conn2126 local=10.56.1.3:59674 remote=18.213.126.143:443 FIRSTUP_PARENT FD 24 flags=1, data="">

2022/06/30 15:22:49.198 kid1| 93,3| AsyncCall.cc(41) make: make call Http::Tunneler::handleReadyRead [call548666]

2022/06/30 15:22:49.198 kid1| 93,3| AsyncJob.cc(123) callStart: Http::Tunneler status in: [state:w FD 24 job3836]

2022/06/30 15:22:49.198 kid1| 83,3| Session.cc(36) tls_read_method: started for session=0x55849f86d970

2022/06/30 15:22:49.198 kid1| 5,3| Read.cc(93) ReadNow: conn2126 local=10.56.1.3:59674 remote=18.213.126.143:443 FIRSTUP_PARENT FD 24 flags=1, size 65535, retval 172, errno 0

2022/06/30 15:22:49.198 kid1| 11,2| HttpTunneler.cc(328) handleResponse: Tunnel Server conn2126 local=10.56.1.3:59674 remote=18.213.126.143:443 FIRSTUP_PARENT FD 24 flags=1

2022/06/30 15:22:49.198 kid1| 11,2| HttpTunneler.cc(329) handleResponse: Tunnel Server RESPONSE:

---------

HTTP/1.1 407 Proxy Authentication Required

Proxy-Authenticate: Basic realm="Secure Browsing"

Date: Thu, 30 Jun 2022 15:22:49 GMT

Content-Length: 0

Connection: close

 

----------

2022/06/30 15:22:49.198 kid1| 83,3| HttpTunneler.cc(350) bailOnResponseError: unsupported CONNECT response status code [state:w FD 24 job3836]

2022/06/30 15:22:49.198 kid1| TCP connection to gateway.goguardian.com/443 failed

    current master transaction: master1228

2022/06/30 15:22:49.198 kid1| 15,2| neighbors.cc(1284) peerConnectFailedSilent: TCP connection to gateway.goguardian.com/443 dead

2022/06/30 15:22:49.198 kid1| 5,3| comm.cc(597) commUnsetConnTimeout: Remove timeout for conn2126 local=10.56.1.3:59674 remote=18.213.126.143:443 FIRSTUP_PARENT FD 24 flags=1

2022/06/30 15:22:49.198 kid1| 5,3| comm.cc(571) commSetConnTimeout: conn2126 local=10.56.1.3:59674 remote=18.213.126.143:443 FIRSTUP_PARENT FD 24 flags=1 timeout -1

2022/06/30 15:22:49.198 kid1| 5,3| comm.cc(877) _comm_close: start closing FD 24 by Connection.cc:108

2022/06/30 15:22:49.198 kid1| 5,3| comm.cc(558) commUnsetFdTimeout: Remove timeout for FD 24

 

 


Best Regards, 

Johnathan

 

_______________________________________________________ 

  

Johnathan Hasty 

Senior DevOps Engineer 

Uncommon Schools 

C: 989.366.1672 

  

Uncommon Schools | Change History 

Website | Facebook | Twitter | LinkedIn | Apply Now 

 

_______________________________________________
squid-users mailing list
squid-users@xxxxxxxxxxxxxxxxxxxxx
http://lists.squid-cache.org/listinfo/squid-users

[Index of Archives]     [Linux Audio Users]     [Samba]     [Big List of Linux Books]     [Linux USB]     [Yosemite News]

  Powered by Linux