HTTP Anti-Virus Proxy

Official HAVP Support Forum
Registration disabled, I'm tired of spambots. E-mail havp@hege.li if you have questions.
HAVP project is pretty much frozen/abandoned at this time anyway.


All times are UTC + 2 hours [ DST ]




Post new topic Reply to topic  [ 4 posts ] 
Author Message
PostPosted: 17 Mar 2010 13:31 
Offline

Joined: 08 Dec 2009 15:46
Posts: 11
Hi All.
This is my enviroment:

Ws-----SERVER1[squid:8080]-----SERVER2[HAVP:8080---->squid:3128]----INTERNET
HAVP - 0.91.
in the havp error.log i see:
17/03/2010 12:20:18 Too large Chunked-header received (>256)
17/03/2010 12:20:19 Too large Chunked-header received (>256)

This is my havp.conf:

USER havp
GROUP havp
DAEMON true
# Default:
# PIDFILE /var/run/havp/havp.pid
PRELOADZIPHEADER true
ENABLECLAMLIB true

CLAMDBDIR /var/lib/clamav

# CLAMBLOCKBROKEN false

# CLAMBLOCKENCRYPTED false

# CLAMBLOCKMAX false

# CLAMMAXSCANSIZE 20
ENABLECLAMD false

PORT 8080
PARENTPROXY 192.168.252.18
PARENTPORT 3128

SERVERNUMBER 80
LOG_OKS false

TEMPLATEPATH /usr/local/etc/havp/templates/ru
SCANTEMPFILE /var/lib/squid/havp/havp-XXXXXX
KEEPBACKTIME 35

CLAMMAXSCANSIZE 100
CLAMMAXFILESIZE 25
CLAMMAXRECURSION 16
CLAMMAXFILES 10000
MAXSCANSIZE 25000000

X_FORWARDED_FOR false

What can i do ?
Please, help me.

Serg


Top
 Profile  
 
PostPosted: 18 Mar 2010 01:29 
Offline

Joined: 23 Apr 2008 09:36
Posts: 101
Hi,

sounds like problem described on this page: http://havp.hege.li/forum/viewtopic.php?f=3&t=374

Can you please try set X_FORWARDED_FOR to
Code:
X_FORWARDED_FOR true

and if possible, post an example url, were this happens.

regards


Top
 Profile  
 
PostPosted: 22 Mar 2010 11:57 
Offline

Joined: 08 Dec 2009 15:46
Posts: 11
With X_FORWARDED_FOR true - error go out, but this is unsecure way.

I`m don`t know from wich one URL this error.

Serg


Top
 Profile  
 
PostPosted: 22 Mar 2010 12:10 
Offline

Joined: 23 Apr 2008 09:36
Posts: 101
This is not less secure, but your privacy is more less as without forwarded for!
With this option we saw, why you get this error! Some servers expect the real "forwarded for" about client.
You can try to fake a browser in connectiontobrowser.cpp as described in the link, or using privoxy only to fake the header:
http://www.privoxy.org/
I'm using privoxy in conjunction with havp for a long time with good results.

regards


Top
 Profile  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 4 posts ] 

All times are UTC + 2 hours [ DST ]


Who is online

Users browsing this forum: Google [Bot] and 2 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB® Forum Software © phpBB Group