Solved

squid proxy

Posted on 2013-10-24
3
976 Views
Last Modified: 2013-11-16
I have squid proxy on suse enterprise linux 11.2, for some maintenance puposes i have to swap the proxy ip with Windows ISA server. after that my squid is not working,so i am getting the following error in my access log file and none of user is able to browse the internet.

1382609509.685 239818 172.16.225.203 TCP_CLIENT_REFRESH_MISS/504 0 GET http://dnl-07.geo.kaspersky.com/index/u0607g.xml.dif - DIRECT/130.117.190.137 text/html
1382609515.918   9913 172.16.225.203 TCP_MISS/000 0 CONNECT 62.213.110.174:443 - NONE/- -
one more thing i am getting the different dns records in nslookup query

while i checked in the dns server there is only one record against the proxy with the new ip but on the linux machine itself there are three records.I have cleared the cache uodated the dns record even restarted the proxy server but in vain.

40.0.16.172.in-addr.arpa        name = isa.abc.local
40.0.16.172.in-addr.arpa        name = proxy-web.abc.local.
40.0.16.172.in-addr.arpa        name = proxy-server.abc.local
0
Comment
Question by:kastro Abbasi
  • 2
3 Comments
 
LVL 13

Accepted Solution

by:
Daniel Helgenberger earned 500 total points
ID: 39599153
I am not sure if I get what you have done?
1 shutdown squid
2 swapped IPs with another proxy
3 start squid
4 swiched back IPs
All was working well until after step 4.

TCP_CLIENT_REFRESH_MISS/504
TCP/504 is a gateway timeout - can you confirm squid can connect to the requested site? Maybe someth. went wrong when switching IPs or something (firewall) is blocking squid? Maybe iptables?

Basic debug on the cache server:
curl http://dnl-07.geo.kaspersky.com/index/u0607g.xml.dif

Open in new window

0
 

Author Comment

by:kastro Abbasi
ID: 39601837
no i can not even browse on the proxy itself. But why i am geting the two records against this server updating the old records in dns server and clear the cache on this machine.
0
 
LVL 13

Expert Comment

by:Daniel Helgenberger
ID: 39601904
no i can not even browse on the proxy itself
What does this mean? Proxy has no wan connectivity?

There are many reasons why you could get those PTR's, most likely they are in the DNS you do your lookup against - and a left over from the IP switching. But don't worry, they to no harm and have nothing to do with your current problem. Consider cleaning up your reverse lookup zones to get rid of those PTRs.
0

Featured Post

Windows Server 2016: All you need to know

Learn about Hyper-V features that increase functionality and usability of Microsoft Windows Server 2016. Also, throughout this eBook, you’ll find some basic PowerShell examples that will help you leverage the scripts in your environments!

Join & Write a Comment

Using 'screen' for session sharing, The Simple Edition Step 1: user starts session with command: screen Step 2: other user (logged in with same user account) connects with command: screen -x Done. Both users are connected to the same CLI sessio…
Introduction We as admins face situation where we need to redirect websites to another. This may be required as a part of an upgrade keeping the old URL but website should be served from new URL. This document would brief you on different ways ca…
Learn how to navigate the file tree with the shell. Use pwd to print the current working directory: Use ls to list a directory's contents: Use cd to change to a new directory: Use wildcards instead of typing out long directory names: Use ../ to move…
Connecting to an Amazon Linux EC2 Instance from Windows Using PuTTY.

708 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now