squid drops connections to ip addresses, but allows connections to domain names
when some program tries to connect to some address by using ip instead of a domain name, it gives me this in the log file:
Code:
1414709903.045 0 192.168.0.82 TCP_MISS/500 4429 GET http://213.59.3.178/xmlzone/release/1000/windows/versions.xml - HIER_NONE/- text/html "-" |
The "MISS" entry seems to imply that Squid sees that the content is not in the cache and that it should be retrieved. Are you using a secondary filter like squidGuard? Or do you have ACLs that are specifically designed to block URLs composed with an IP Address instead of a host name?
Post your Squid config file. |
Exactly, the miss should start downloading it from the internet, but instead, it says HIER_NONE.
No, I don't have any external filteres and no ip blocking in the squid conf, unles I am missing something. I disabled direct access and everything goes through parent proxies. squid.conf Code:
acl all_IPs dst 195.239.111.0/24 #I've tried to explicitly enable access to certain ip addresses, when I noticed the problem, but it didn't help |
Have you checked the logs on the peers to see if it is being handed off but blocked there?
|
As far as I remember, I did check for traversal, but since I've tried so much, I don't reember for sure. I've been already trying to figure this problem out for over a month now. I will test to make sure and post a followup.
|
All times are GMT -5. The time now is 07:32 PM. |