Red Hat Account Number: Red Hat Account Account Details Newsletter and Contact Preferences User Management Account Maintenance Customer Portal My Profile Notifications Help For your security, if you’re on a public Amos Jeffries Reply | Threaded Open this post in threaded view ♦ ♦ | Report Content as Inappropriate ♦ ♦ RE: "Access denied" pages for HTTPS requests Administrator On Mon, Status: complete. I've got it sorted anyway, I just edited templates/ERR_CANNOT_FORWARD to contain the custom error message. have a peek at this web-site
Have a look at the deny_info directive Regards Last edited by bathory; 06-21-2012 at 03:47 AM. That said, how did chrome and IE8 fix this issue? Use within HTML PRE tags. This works fine for http connections. navigate here
Product Security Center Security Updates Security Advisories Red Hat CVE Database Security Labs Keep your systems secure with Red Hat's specialized responses for high-priority security vulnerabilities. Most of the boilerplate error pages that you now see are similar to the default Squid error pages. Current Customers and Partners Log in for full access Log In New to Red Hat?
If I do it under IE 8, I still get the same message (even with browser restart): ---- Internet Explorer cannot display the webpage What you can Thank you." Vonlanthen, Elmar Reply | Threaded Open this post in threaded view ♦ ♦ | Report Content as Inappropriate ♦ ♦ RE: "Access denied" pages for HTTPS requests Hello that way there isn't this issue of the response maybe working maybe not depending on phase of moon and what we decide is dangerous, nor is there an issue with us Squid Error_directory And you think that render proxy answer is more dangerous than redirect user to another site?
I've poked around at this, and the idea I've got is to 1) keep the existing channel, but change its target URI from the original requested URI (paypal.com, etc.) to the Squid Deny_info Comment 8 Boris Zbarsky [:bz] (still a bit busy) 2009-05-27 17:52:18 PDT That doesn't sound good to me. We no longer render reply content from proxies over HTTPS for security reasons. my review here More information ---- And it would not be a feasible solution, because I cannot control the clients settings.
Elmar is the same issue I > have. 2.6+ using a redirector may send the 307 status code. Squid Error_directory Example It is sending a CONNECT tunnel request to setup a blind data tunnel to the domains server, over which is wants at some point to send encrypted "stuff". Comment 17 Jason Duell [:jduell] (needinfo me) 2009-05-29 14:46:05 PDT So I've looked, and as of today only Opera is doing the "right thing" and rendering HTML content from 403 proxy Comment 14 Jonas Sicking (:sicking) No longer reading bugmail consistently 2009-05-28 00:33:53 PDT Why not create a new channel instead of modifying the existing one?
See for explanation"). http://www.linuxquestions.org/questions/linux-server-73/squid-custom-error-pages-4175412377/ Comment 3 bugz 2009-05-19 22:47:43 PDT This is very strange. How To Change Squid Error Message more stack exchange communities company blog Stack Exchange Inbox Reputation and Badges sign up log in tour help Tour Start here for a quick overview of the site Help Center Detailed Squid Error Page Location Learn More Red Hat Product Security Center Engage with our Red Hat Product Security team, access security updates, and ensure your environments are not exposed to any known security vulnerabilities.
However IE8 (which is in final stage before release) >>> has a problem with squid error pages. >>> >>> To try to explian. Check This Out Comment 19 Jason Duell [:jduell] (needinfo me) 2009-06-02 17:27:13 PDT > You can at least map 403 to a new error code... This way, users won't lose time doublechecking that the proxy port is correct, and network admins won't lose time restarting a proxy server which was running fine all along. see Translations Project for more details on those. Squid Custom Error Page Example
Open Source Communities Subscriptions Downloads Support Cases Account Back Log In Register Red Hat Account Number: Account Details Newsletter and Contact Preferences User Management Account Maintenance My Profile Notifications Help Log For everyone else, HTTP:// connections redirect to our custom error page as expected but HTTPS:// connections time out. Is there anyway to configure SQUID to display an error page instead of the browser's error page ? Source In Konqueror, for example, all work fine.
The issues is returning >>> an error page to the user because so squid error pages are http and it >>> appears that redirectors can not redirect https requests to a Stylesheet For Squid Error Pages Note that registered members see fewer ads, and ContentLink is completely disabled once you log in. For example we try to connect to https://www.redhat.com via Squid proxy server which denied with 403 error this connect and send custom error page with description of problem.
Resolution There are two options for blocking HTTPS traffic with a Squid integration: Install Websense Network Agent, which performs protocol filtering, and configure it to block HTTPS traffic. Currently only SSL connection failures are detailed. The 307 status code was created for non-GET redirects. Squid Redirect Error Page Best regards Elmar smime.p7s (7K) Download Attachment Supadee718 Reply | Threaded Open this post in threaded view ♦ ♦ | Report Content as Inappropriate ♦ ♦ RE: "Access denied" pages
Anyway in this case, I guess you can change the ERR_CONNECT_FAIL page to your likings Regards 1 members found this post helpful. The time now is 06:39 PM. If you use deny_info and specify a http://www.mydomain.com as the page to go to if denied does this send cause squid to issue a 302 type redirect. http://cpresourcesllc.com/squid-error/squid-3-1-custom-error-page.php So they disabled > it. > The 307 status code was created for non-GET redirects.
Contents Feature: Customizable Error Message Details deny_info URL codes for embedding ERR_* template codes for embedding Troubleshooting Custom error pages not displayed for HTTPS Details Squid lets you customize your error If it can send the status back, then it too will work. If I add the option "deny_info" and define a redirection page, it is working with firefox, but with IE or Chrome I have sill no success. Would be the squid.conf guilty??
Check your Internet connection Retype the address. Issue Why squid don't generate "Access denied" Error page for HTTPS acl blocksites url_regex -i "/etc/squid/restricted-sites.squid" http_access deny blocksites # cat /etc/squid/restricted-sites.squid www.test.com While accessing http://www.test.com , get proper "Access Denied" From Squid 3.1: CSS hooks are available for display redesign and coloring. Join our community today!
Usually this browser page mentions connection faulure or other such irrelevant details.