Squid cannot open HTTP Port

From: Marc August (stereokind_at_gmail.com)
Date: 09/14/05


Date: Wed, 14 Sep 2005 11:27:23 +0200

Hi NG,

I am using Red Hat Enterprise Server 4 and squid.
I configured squid.conf for squid to act as a reverse proxy.
For this goal, squid has to listen on port 80 and 443.

e.g.
http_port is set to 80

when i execute squid, errors occure like:

(squid): Cannot open HTTP Port

Ok, 80 is a priviledged port (<1024) and the user as which squid runs as
(squid), needs to have root rights.

For this case there is a directive called:
cache_effective_user

This directive set to "root" brings up following error:

(squid): Don't run Squid as root, set 'cache_effective_user'!

any suggestions?

marc



Relevant Pages

  • transparent Squid + pf
    ... I am trying Transparent Squid with FreeBSD 6.2. ... rdr on $ext_if proto tcp from any to any port 80 -> ... packets going out through $ext_if with source ...
    (freebsd-questions)
  • Re: Squid not starting from rc in Jail, however works when run from root as command??
    ... Anyhow I'm trying to migrate config which was on an old SPARC server ... running Solaris 9 with a version of Squid got from the Blastwave repos ... 192.168.1.110, port 80, FD 13. ... and also Squid was built from ports too!! ...
    (freebsd-questions)
  • Re: Squid not starting from rc in Jail, however works when run from root as command??
    ... I've just built a new BSD server running on a Mini-ITX NAS chassis and it's working beautifully :-) ... Anyhow I'm trying to migrate config which was on an old SPARC server running Solaris 9 with a version of Squid got from the Blastwave repos and currently I'm having major issues with it. ... Because I built the system in a Jail I am using this syntax to bind the port to the IP address: ...
    (freebsd-questions)
  • Re: Should a "squid" user have a shell?
    ... The only reason I'm not using the squid port is because I found a ... that has detailed instructions on installing squid for an Enterprise ... this if you if you want to add extra configure settings not supported ...
    (freebsd-questions)
  • Re: SELinux security alert/Squid -
    ... connect to an alternative port, while going through their proxy, before. ... Well then should it not be possible to tell SELinux that this particular ... SELinux is preventing the squid daemon from connecting to network ... SELinux has denied the squid daemon from connecting to 8180. ...
    (Fedora)