Hi,
I have no specific knowledge of that VPN implementation, but I
expect that a forced disconnect event would be logged at the server
side. Remember that HTTP is mostly stateless, so any stateful behavior
is to be implemented at the server and client side
On Mon, Oct 22, 2012 at 11:21 AM, Dal Bo Valter <Valter.DalBo_at_tescogo.it> wrote:
> Hello,
>
> Thank you for your quick answer.
> As you correctly guessed I don't have a load-balancing cluster involved in the matter.
> I looked in the squid access.log file but it doesn't say anything concerning why it disconnects the users.
> What part of VPNSSL should log the disconnection ?
> The client or the customers server ?
>
> By the way, if I setup my pc for the VPN going through squid, the same thing happens (I get disconnected) but if I set it NOT to use squid but go directly on the internet, the problem does not occour.
>
> That is what makes me think it must be something related to squid.
>
> Valter
>
>
> -----Messaggio originale-----
> Da: Kinkie [mailto:gkinkie_at_gmail.com]
> Inviato: lunedì 22 ottobre 2012 10.46
> A: Dal Bo Valter
> Cc: squid-users_at_squid-cache.org
> Oggetto: Re: [squid-users] I: VPN SSL logging off randomly
>
> If it's SSL, I guess that Squid has nothing to do with it - it simply
> tunnels traffic through.
> There may be causes for issues if you were load-balancing a cluster,
> and that caused the source-ip seen by the vpn changing, but it doesn't
> seem to be the case here.
>
> Does the VPNSSL explain why it's disconnecting users? A forced
> disconnection should be logged..
>
>
>
> On Mon, Oct 22, 2012 at 9:57 AM, Dal Bo Valter <Valter.DalBo_at_tescogo.it> wrote:
>> Hello,
>>
>> Has anybody got any idea on how I can solve the problem ?
>>
>> Thank you
>> Valter
>>
>> -----Messaggio originale-----
>> Da: Dal Bo Valter
>> Inviato: mercoledì 17 ottobre 2012 16.37
>> A: 'squid-users_at_squid-cache.org'
>> Oggetto: I: VPN SSL logging off randomly
>> Priorità : Alta
>>
>>
>> Hi all,
>>
>> I have a number of users that have to connect to a customer via VPN SSL (fortinet) in order to use the customer’s resources while in my company premises.
>> In order to connect to the internet, for a too long story to explain, ( ☺ ) they have to go through the proxy.
>> That’s when I start having the odd behaviour that the connection to the customer’s VPN takes place allright going through the proxy but then, randomly, just disconnects without any apparent reason.
>>
>> I’ve just updated both server (now ubuntu 12.04 LTS) and Squid to version 3.1.19 leaving all defaults from the squid.conf and just adding an ACL rule to allow the access to the VPN address.
>>
>> acl passvpn dstdom_regex -i vpnssl.customer.com vpnssl.customer.com:443
>> http_access deny all !passvpn
>>
>> Unfortunately the problem persists.
>>
>> Anybody has any idea how to solve this problem ?
>> Thank you
>>
>> Valter
>>
>> Questo messaggio, con gli eventuali allegati, contiene informazioni
>> riservate. Chiunque lo ricevesse pur non essendone il destinatario è pregato
>> di avvisare al più presto il mittente, di cancellarlo dal proprio sistema e
>> di non copiarlo, diffonderne il contenuto o utilizzarlo in alcun modo.
>>
>> This message and any files transmitted with it are confidential. If you are
>> not the intended recipient of this email, please notify the sender and
>> delete it from your system: you should not copy, disclose or use either it
>> or its attachments in any way whatsoever.
>
>
>
> --
> /kinkie
>
> Questo messaggio, con gli eventuali allegati, contiene informazioni
> riservate. Chiunque lo ricevesse pur non essendone il destinatario è pregato
> di avvisare al più presto il mittente, di cancellarlo dal proprio sistema e
> di non copiarlo, diffonderne il contenuto o utilizzarlo in alcun modo.
>
> This message and any files transmitted with it are confidential. If you are
> not the intended recipient of this email, please notify the sender and
> delete it from your system: you should not copy, disclose or use either it
> or its attachments in any way whatsoever.
-- /kinkieReceived on Mon Oct 22 2012 - 10:26:56 MDT
This archive was generated by hypermail 2.2.0 : Mon Oct 22 2012 - 12:00:04 MDT