squid 3.4.7
rejik 3.2.11
centos 6.5
Squid авторизирует пользователей через kerberos, авторизация проходит все хорошо, прикрутил rejik но вот он не работает
Вот логи
запус squid:
Код: Выделить всё
2014/10/03 17:26:18 kid1| Starting Squid Cache version 3.4.7 for i686-pc-linux-gnu...
2014/10/03 17:26:18 kid1| Process ID 10597
2014/10/03 17:26:18 kid1| Process Roles: worker
2014/10/03 17:26:18 kid1| With 1024 file descriptors available
2014/10/03 17:26:18 kid1| Initializing IP Cache...
2014/10/03 17:26:18 kid1| DNS Socket created at 0.0.0.0, FD 8
2014/10/03 17:26:18 kid1| Adding nameserver 192.168.0.15 from /etc/resolv.conf
2014/10/03 17:26:18 kid1| Adding nameserver 192.168.80.15 from /etc/resolv.conf
2014/10/03 17:26:18 kid1| Adding domain comp.loc from /etc/resolv.conf
2014/10/03 17:26:18 kid1| helperOpenServers: Starting 0/20 'redirector' processes
2014/10/03 17:26:18 kid1| helperOpenServers: No 'redirector' processes needed.
2014/10/03 17:26:18 kid1| helperOpenServers: Starting 25/200 'negotiate_kerberos_auth' processes
2014/10/03 17:26:18 kid1| Logfile: opening log daemon:/var/log/squid/access.log
2014/10/03 17:26:18 kid1| Logfile Daemon: opening log /var/log/squid/access.log
2014/10/03 17:26:18 kid1| Unlinkd pipe opened on FD 64
2014/10/03 17:26:18 kid1| Local cache digest enabled; rebuild/rewrite every 3600/3600 sec
2014/10/03 17:26:18 kid1| Store logging disabled
2014/10/03 17:26:18 kid1| Swap maxSize 7168000 + 2097152 KB, estimated 712704 objects
2014/10/03 17:26:18 kid1| Target number of buckets: 35635
2014/10/03 17:26:18 kid1| Using 65536 Store buckets
2014/10/03 17:26:18 kid1| Max Mem size: 2097152 KB
2014/10/03 17:26:18 kid1| Max Swap size: 7168000 KB
2014/10/03 17:26:18 kid1| Rebuilding storage in /mnt/squid-cache/ (clean log)
2014/10/03 17:26:18 kid1| Using Least Load store dir selection
2014/10/03 17:26:18 kid1| Set Current Directory to /var/spool/squid
2014/10/03 17:26:18 kid1| Finished loading MIME types and icons.
2014/10/03 17:26:18 kid1| HTCP Disabled.
2014/10/03 17:26:18 kid1| Pinger socket opened on FD 70
2014/10/03 17:26:18 kid1| Squid plugin modules loaded: 0
2014/10/03 17:26:18 kid1| Adaptation support is off.
2014/10/03 17:26:18 kid1| Accepting HTTP Socket connections at local=192.168.1.65:3128 remote=[::] FD 67 flags=9
2014/10/03 17:26:18 kid1| Accepting HTTP Socket connections at local=0.0.0.0:3128 remote=[::] FD 68 flags=9
2014/10/03 17:26:18| pinger: Initialising ICMP pinger ...
2014/10/03 17:26:18| icmp_sock: (1) Operation not permitted
2014/10/03 17:26:18| pinger: Unable to start ICMP pinger.
2014/10/03 17:26:18| FATAL: pinger: Unable to open any ICMP sockets.
2014/10/03 17:26:19 kid1| Done reading /mnt/squid-cache/ swaplog (2428 entries)
2014/10/03 17:26:19 kid1| Finished rebuilding storage from disk.
2014/10/03 17:26:19 kid1| 2428 Entries scanned
2014/10/03 17:26:19 kid1| 0 Invalid entries.
2014/10/03 17:26:19 kid1| 0 With invalid flags.
2014/10/03 17:26:19 kid1| 2428 Objects loaded.
2014/10/03 17:26:19 kid1| 0 Objects expired.
2014/10/03 17:26:19 kid1| 0 Objects cancelled.
2014/10/03 17:26:19 kid1| 0 Duplicate URLs purged.
2014/10/03 17:26:19 kid1| 0 Swapfile clashes avoided.
2014/10/03 17:26:19 kid1| Took 0.08 seconds (29117.95 objects/sec).
2014/10/03 17:26:19 kid1| Beginning Validation Procedure
2014/10/03 17:26:19 kid1| ERROR: listen( FD 68, 0.0.0.0 [ job2], 256): (98) Address already in use
2014/10/03 17:26:19 kid1| Completed Validation Procedure
2014/10/03 17:26:19 kid1| Validated 2428 Entries
2014/10/03 17:26:19 kid1| store_swap_size = 38972.00 KB
2014/10/03 17:26:19 kid1| storeLateRelease: released 0 objects
2014/10/03 17:26:28 kid1| Starting new redirector helpers...
2014/10/03 17:26:28 kid1| helperOpenServers: Starting 1/20 'redirector' processes
2014/10/03 17:26:28 kid1| recv: (111) Connection refused
2014/10/03 17:26:28 kid1| Closing Pinger socket on FD 70
2014/10/03 17:34:44 kid1| Starting new redirector helpers...
2014/10/03 17:34:44 kid1| helperOpenServers: Starting 1/20 'redirector' processes
2014/10/03 17:34:45 kid1| Starting new redirector helpers...
2014/10/03 17:34:45 kid1| helperOpenServers: Starting 1/20 'redirector' processes
2014/10/03 17:34:45 kid1| Starting new redirector helpers...
2014/10/03 17:34:45 kid1| helperOpenServers: Starting 1/20 'redirector' processes
2014/10/03 17:43:48 kid1| Starting new redirector helpers...
2014/10/03 17:43:48 kid1| helperOpenServers: Starting 1/20 'redirector' processes
2014/10/03 17:43:48 kid1| Starting new redirector helpers...
2014/10/03 17:43:48 kid1| helperOpenServers: Starting 1/20 'redirector' processes
2014/10/03 17:43:48 kid1| Starting new redirector helpers...
2014/10/03 17:43:48 kid1| helperOpenServers: Starting 1/20 'redirector' processes
2014/10/03 17:43:49 kid1| Starting new redirector helpers...
2014/10/03 17:43:49 kid1| helperOpenServers: Starting 1/20 'redirector' processes
2014/10/03 17:43:49 kid1| Starting new redirector helpers...
2014/10/03 17:43:49 kid1| helperOpenServers: Starting 1/20 'redirector' processes
2014/10/03 17:43:49 kid1| Starting new redirector helpers...
2014/10/03 17:43:49 kid1| helperOpenServers: Starting 1/20 'redirector' processes
Код: Выделить всё
2014-10-03 17:43:49 [10799] Run make-cache (3.2.11)
2014-10-03 17:43:49 [10799] Make-cache finished
2014-10-03 17:43:49 [10799] Load 17 rules from /usr/local/rejik/banlists/banners/allow_urls.cache
2014-10-03 17:43:49 [10799] Redirector start and working (3.2.11)
2014-10-03 17:43:50 [10797] Make-cache finished detected, continue
2014-10-03 17:43:50 [10797] Load 17 rules from /usr/local/rejik/banlists/banners/allow_urls.cache
2014-10-03 17:43:50 [10797] Redirector start and working (3.2.11)
Код: Выделить всё
error_log /var/log/squid/redirector.err
change_log /var/log/squid/redirector.log
make-cache /usr/local/rejik/make-cache
allow_urls /usr/local/rejik/banlists/allow_urls
work_ip 192.168.0.0/24
allow_ip 192.168.0.247
allow_ip 192.168.0.74
allow_ip 192.168.0.128
allow_ip 192.168.0.153
allow_ip 192.168.0.196
allow_ip 192.168.0.231
allow_ip 192.168.0.246
allow_ip 192.168.0.75
allow_ip 192.168.0.180
raw_change http://redmine.comp.loc
http://192.168.0.29/redmine
#<SECRET>
#allow_ip 192.168.0.199
#allow_urls /usr/local/rejik/secret
<BANNER>
ban_dir /usr/local/rejik/banlists/banners
url http://squidby.comp.loc/1×1.gif
log on
<AUDIO-VIDEO>
ban_dir /usr/local/rejik/banlists/audio-video
url http://squidby.comp.loc/audio-video.html
log on
<AVTO-MOTO>
allow_ip 192.168.0.207
ban_dir /usr/local/rejik/banlists/avto-moto
url http://squidby.comp.loc/avto-moto.html
log on
<CHATS>
ban_dir /usr/local/rejik/banlists/chats
url http://squidby.comp.loc/chats.html
log on
<DATING>
ban_dir /usr/local/rejik/banlists/dating
url http://squidby.comp.loc/dating.html
log on
<EXTREMIZM_RF>
ban_dir /usr/local/rejik/banlists/extremism_rf
url http://squidby.comp.loc/extremism_rf.html
log on
<ICQ>
ban_dir /usr/local/rejik/banlists/icq
url http://squidby.comp.loc/icq.html
log on
<ONLINE-GAMES>
ban_dir /usr/local/rejik/banlists/online-games
url http://squidby.comp.loc/online-games.html
log on
<PHISHING>
ban_dir /usr/local/rejik/banlists/phishing
url http://squidby.comp.loc/phishing.html
log on
<PHOTOGALLERY>
ban_dir /usr/local/rejik/banlists/photogallery
url http://squidby.comp.loc/photogallery.html
log on
<PORNO>
ban_dir /usr/local/rejik/banlists/porno
url http://squidby.comp.loc/porno.html
log on
<SOCNET>
allow_ip 192.168.0.199
allow_ip 192.168.0.136
allow_ip 192.168.0.140
ban_dir /usr/local/rejik/banlists/socnet
url http://squidby.comp.loc/socnet.html
log on
<SPYWARE>
ban_dir /usr/local/rejik/banlists/spyware
url http://squidby.comp.loc/spyware.html
log on
<TORRENTS>
ban_dir /usr/local/rejik/banlists/torrents
url http://squidby.comp.loc/torrents.html
log on
<VIRUS-DETECT>
ban_dir /usr/local/rejik/banlists/virus-detect
url http://squidby.comp.loc/virus-detect.html
log on
<WAREZ>
ban_dir /usr/local/rejik/banlists/warez
url http://squidby.comp.loc/warez.html
log on
#<WEB-MAIL>
#ban_dir /usr/local/rejik/banlists/web-mail
#url http://localhost/ban.html
<WEB-PROXY>
ban_dir /usr/local/rejik/banlists/web-proxy
url http://squidby.comp.loc/web-proxy.html
log on
<JS>
ban_dir /usr/local/rejik/banlists/js
url http://localhost/js.js
log on
#log off
<IP>
ban_dir /usr/local/rejik/banlists/ip
url http://squidby.comp.loc/access_denied.html
log on
Код: Выделить всё
redirect_program /usr/local/rejik/redirector /usr/local/rejik/redirector.conf
Спасибо.