killtec
Goto Top

Squidguard wird nicht geladen

Hi,
ich habe Squid mit Squidguard installiert und eingerichtet (openSUSE).
Aus irgend einem Grund, den ich aktuell nicht sehe, startet squid nicht squidguard.

HIer mal die configs:
#
# CONFIG FILE FOR SQUIDGUARD
#

#
# VERSION: 1.0
#

dbhome /var/lib/squidGuard/db
logdir /var/log/squidGuard

#
# SOURCE ADDRESSES:
#

src localnetwork {
	ip 172.17.0.0/16
}


#
# DESTINATION CLASSES:
#
dest aggressive{
	domainlist 	aggressive/domains
	urllist		aggressive/urls
}

...

#
# ACCESS CONTROL:
#

acl {

	localnetwork {
		pass	whitelist !aggressive !alcohol !block !costtraps !dating !drugs !fortunetelling !gamble !hobby_cooking !hobby_games-misc !hobby_games-online !hobby_pets !homestyle !jobsearch !porn !redirector !sex_lingerie !sex_education !socialnet !spyware !tracker !violence !warez !weapons !webradio all
		redirect	http://172.17.0.8/block
	}
	
	default {
		pass none
		redirect http://172.17.0.8
	}
	
}

Hier der Eintrag in der squid.conf
redirect_program /usr/sbin/squidGuard -c /etc/squidguard.conf
redirect_children 10

Das Update der Blacklisten läuft korrekt durch.

per ps -e | grep "squi*" zeigt er auch kein squidGuard an.
Der Squid Dienst selbst ist aktiv (2 Prozesse)

Gruß

Content-Key: 554574

Url: https://administrator.de/contentid/554574

Printed on: April 19, 2024 at 23:04 o'clock

Member: SlainteMhath
SlainteMhath Mar 05, 2020 at 15:13:16 (UTC)
Goto Top
Moin,

was steht in den Logfiles?

lg,
Slainte
Member: killtec
killtec Mar 05, 2020 at 15:18:13 (UTC)
Goto Top
Leider nichts...
Member: SlainteMhath
SlainteMhath Mar 05, 2020 at 15:23:29 (UTC)
Goto Top
Leider nichts...
Glaub ich ja fast nicht... zumindest squid muss ja abloggen, was es mit den eingehenden requests macht und ob das erfolgreich war oder nicht.
Member: NetzwerkDude
NetzwerkDude Mar 05, 2020 at 19:34:49 (UTC)
Goto Top
Der dryrun wie im doc funktioniert?
http://www.squidguard.org/Doc/verify.html
Member: killtec
killtec Mar 05, 2020 at 19:48:47 (UTC)
Goto Top
HI
@SlainteMhath, die Logs gehen auf /dev/null

access_log /dev/null
cache_store_log /dev/null
cache_log /dev/null

werde das testhalber mal raus nehmen und schauen.

@NetzwerkDude: Yepp, der geht.
Member: killtec
killtec Mar 05, 2020 at 19:52:36 (UTC)
Goto Top
Hier mal die log
proxy:~ # cat /var/log/squid/cache.log
2020/03/05 20:49:39| Created PID file (/run/squid.pid)
2020/03/05 20:49:39 kid1| Set Current Directory to /var/cache/squid
2020/03/05 20:49:39 kid1| Starting Squid Cache version 4.9 for x86_64-suse-linux-gnu...
2020/03/05 20:49:39 kid1| Service Name: squid
2020/03/05 20:49:39 kid1| Process ID 3558
2020/03/05 20:49:39 kid1| Process Roles: worker
2020/03/05 20:49:39 kid1| With 4096 file descriptors available
2020/03/05 20:49:39 kid1| Initializing IP Cache...
2020/03/05 20:49:39 kid1| DNS Socket created at [::], FD 5
2020/03/05 20:49:39 kid1| DNS Socket created at 0.0.0.0, FD 8
2020/03/05 20:49:39 kid1| Adding nameserver 172.17.0.10 from /etc/resolv.conf
2020/03/05 20:49:39 kid1| helperOpenServers: Starting 0/10 'squidGuard' processes  
2020/03/05 20:49:39 kid1| helperOpenServers: No 'squidGuard' processes needed.  
2020/03/05 20:49:39 kid1| Logfile: opening log daemon:/var/log/squid/access.log
2020/03/05 20:49:39 kid1| Logfile Daemon: opening log /var/log/squid/access.log
2020/03/05 20:49:39 kid1| Local cache digest enabled; rebuild/rewrite every 3600/3600 sec
2020/03/05 20:49:39 kid1| Store logging disabled
2020/03/05 20:49:39 kid1| Swap maxSize 0 + 262144 KB, estimated 20164 objects
2020/03/05 20:49:39 kid1| Target number of buckets: 1008
2020/03/05 20:49:39 kid1| Using 8192 Store buckets
2020/03/05 20:49:39 kid1| Max Mem  size: 262144 KB
2020/03/05 20:49:39 kid1| Max Swap size: 0 KB
2020/03/05 20:49:39 kid1| Using Least Load store dir selection
2020/03/05 20:49:39 kid1| Set Current Directory to /var/cache/squid
2020/03/05 20:49:39 kid1| Finished loading MIME types and icons.
2020/03/05 20:49:39 kid1| HTCP Disabled.
2020/03/05 20:49:39 kid1| Pinger socket opened on FD 13
2020/03/05 20:49:39 kid1| Squid plugin modules loaded: 0
2020/03/05 20:49:39 kid1| Adaptation support is off.
2020/03/05 20:49:39 kid1| Accepting HTTP Socket connections at local=[::]:3128 remote=[::] FD 11 flags=9
2020/03/05 20:49:39| pinger: Initialising ICMP pinger ...
2020/03/05 20:49:39| pinger: ICMP socket opened.
2020/03/05 20:49:39| pinger: ICMPv6 socket opened
2020/03/05 20:49:40 kid1| storeLateRelease: released 0 objects

die access.log ist leer.
Member: NetzwerkDude
NetzwerkDude Mar 06, 2020 at 09:01:44 (UTC)
Goto Top
schau mal ob der user, unter dem squid läuft, auf /usr/sbin/squidGuard un die conf unter /etc/ zugreifen kann.
Ansonsten mal den squid mit strace starten:
strace <squd-bin> <squid conf> > /tmp/diagnose.txt 2>&1
Aber das ist natürlich bisschen overkill - aber wenn die anderen Logs nichts sagen...
Member: killtec
killtec Mar 06, 2020 at 10:29:48 (UTC)
Goto Top
proxy:~ # ls -lai /usr/sbin/squidGuard
325851 -rwxr-xr-x 1 root root 89080 Apr 30  2018 /usr/sbin/squidGuard
proxy:~ # ls -lai /etc/squidguard.conf
325999 -rw-r--r-- 1 squid squid 2671 Mar  5 15:02 /etc/squidguard.conf
Müsste der squidGuard nicht auch für squid zugänglich sein?
sprich ein chgrp auf squidGuard?

Gruß
Member: NetzwerkDude
NetzwerkDude Mar 06, 2020 at 10:38:28 (UTC)
Goto Top
325851 -rwxr-xr-x 1 root root 89080 Apr 30  2018 /usr/sbin/squidGuard
Da ist other ein "x" also müsste es jeder ausführen können, das passt - und auch die config ist ja lesbar - daran liegts denke ich nicht
Member: SlainteMhath
SlainteMhath Mar 06, 2020 at 11:28:03 (UTC)
Goto Top
Also

was steht in den Logfiles?
-> nichts!
gepaart mit
die Logs gehen auf /dev/null

really made my day face-smile

+1 für's cache log, aber Zugriff und fehler bei diesen stehen im access.log
Member: killtec
killtec Mar 06, 2020 at 11:31:53 (UTC)
Goto Top
Hi,
hab die logs erstmal wieder aktiviert. Das Access.log bleibt leer (0 Byte).

Hier mal die Ausgabe von strace:
execve("/usr/sbin/squid", ["/usr/sbin/squid", "/etc/squid/squid.conf"], 0x7ffdd499c3a8 /* 61 vars */) = 0  
brk(NULL)                               = 0x560dd6b5d000
access("/etc/ld.so.preload", R_OK)      = -1 ENOENT (No such file or directory)  
openat(AT_FDCWD, "/etc/ld.so.cache", O_RDONLY|O_CLOEXEC) = 3  
fstat(3, {st_mode=S_IFREG|0644, st_size=121870, ...}) = 0
mmap(NULL, 121870, PROT_READ, MAP_PRIVATE, 3, 0) = 0x7fc050582000
close(3)                                = 0
openat(AT_FDCWD, "/lib64/libpthread.so.0", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\3\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\360a\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=140688, ...}) = 0
mmap(NULL, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7fc050580000
mmap(NULL, 2217064, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc05015d000
mprotect(0x7fc050176000, 2093056, PROT_NONE) = 0
mmap(0x7fc050375000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x18000) = 0x7fc050375000
mmap(0x7fc050377000, 13416, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7fc050377000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/libnettle.so.6", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\320\246\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0644, st_size=232808, ...}) = 0
mmap(NULL, 2327824, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04ff24000
mprotect(0x7fc04ff5b000, 2093056, PROT_NONE) = 0
mmap(0x7fc05015a000, 12288, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x36000) = 0x7fc05015a000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/libxml2.so.2", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0000\23\3\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=1469280, ...}) = 0
mmap(NULL, 3569560, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04fbbc000
mprotect(0x7fc04fd19000, 2097152, PROT_NONE) = 0
mmap(0x7fc04ff19000, 40960, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x15d000) = 0x7fc04ff19000
mmap(0x7fc04ff23000, 1944, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7fc04ff23000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/libexpat.so.1", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0`=\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=203040, ...}) = 0
mmap(NULL, 2298104, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04f98a000
mprotect(0x7fc04f9b9000, 2097152, PROT_NONE) = 0
mmap(0x7fc04fbb9000, 12288, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x2f000) = 0x7fc04fbb9000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/libssl.so.1.1", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\300\215\1\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=442648, ...}) = 0
mmap(NULL, 2538184, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04f71e000
mprotect(0x7fc04f780000, 2097152, PROT_NONE) = 0
mmap(0x7fc04f980000, 40960, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x62000) = 0x7fc04f980000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/libcrypto.so.1.1", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\0@\7\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=2664248, ...}) = 0
mmap(NULL, 4774864, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04f290000
mprotect(0x7fc04f4f2000, 2093056, PROT_NONE) = 0
mmap(0x7fc04f6f1000, 167936, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x261000) = 0x7fc04f6f1000
mmap(0x7fc04f71a000, 15312, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7fc04f71a000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/libgssapi_krb5.so.2", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\20\312\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=305688, ...}) = 0
mmap(NULL, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7fc05057e000
mmap(NULL, 2401248, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04f045000
mprotect(0x7fc04f08d000, 2093056, PROT_NONE) = 0
mmap(0x7fc04f28c000, 16384, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x47000) = 0x7fc04f28c000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/libkrb5.so.3", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\20o\2\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=892640, ...}) = 0
mmap(NULL, 2988416, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04ed6b000
mprotect(0x7fc04ee35000, 2093056, PROT_NONE) = 0
mmap(0x7fc04f034000, 69632, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0xc9000) = 0x7fc04f034000
close(3)                                = 0
openat(AT_FDCWD, "/lib64/libcom_err.so.2", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\300\25\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=14720, ...}) = 0
mmap(NULL, 2109928, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04eb67000
mprotect(0x7fc04eb6a000, 2093056, PROT_NONE) = 0
mmap(0x7fc04ed69000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x2000) = 0x7fc04ed69000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/libcap.so.2", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\360\26\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0644, st_size=18984, ...}) = 0
mmap(NULL, 2114136, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04e962000
mprotect(0x7fc04e966000, 2093056, PROT_NONE) = 0
mmap(0x7fc04eb65000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x3000) = 0x7fc04eb65000
close(3)                                = 0
openat(AT_FDCWD, "/lib64/librt.so.1", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\3\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\240!\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=42120, ...}) = 0
mmap(NULL, 2128832, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04e75a000
mprotect(0x7fc04e761000, 2093056, PROT_NONE) = 0
mmap(0x7fc04e960000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x6000) = 0x7fc04e960000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/libltdl.so.7", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\360&\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=39560, ...}) = 0
mmap(NULL, 2134712, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04e550000
mprotect(0x7fc04e559000, 2093056, PROT_NONE) = 0
mmap(0x7fc04e758000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x8000) = 0x7fc04e758000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/libstdc++.so.6", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\3\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\2609\t\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=1602680, ...}) = 0
mmap(NULL, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7fc05057c000
mmap(NULL, 3710976, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04e1c6000
mprotect(0x7fc04e341000, 2097152, PROT_NONE) = 0
mmap(0x7fc04e541000, 49152, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x17b000) = 0x7fc04e541000
mmap(0x7fc04e54d000, 12288, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7fc04e54d000
close(3)                                = 0
openat(AT_FDCWD, "/lib64/libm.so.6", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\3\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\340w\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=1356088, ...}) = 0
mmap(NULL, 3371784, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04de8e000
mprotect(0x7fc04dfc5000, 2093056, PROT_NONE) = 0
mmap(0x7fc04e1c4000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x136000) = 0x7fc04e1c4000
close(3)                                = 0
openat(AT_FDCWD, "/lib64/libgcc_s.so.1", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\200/\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=96680, ...}) = 0
mmap(NULL, 2192432, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04dc76000
mprotect(0x7fc04dc8d000, 2093056, PROT_NONE) = 0
mmap(0x7fc04de8c000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x16000) = 0x7fc04de8c000
close(3)                                = 0
openat(AT_FDCWD, "/lib64/libc.so.6", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\3\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\240\20\2\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=2034848, ...}) = 0
mmap(NULL, 3906144, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04d8bc000
mprotect(0x7fc04da6d000, 2093056, PROT_NONE) = 0
mmap(0x7fc04dc6c000, 24576, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x1b0000) = 0x7fc04dc6c000
mmap(0x7fc04dc72000, 14944, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7fc04dc72000
close(3)                                = 0
openat(AT_FDCWD, "/lib64/libdl.so.2", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0P\16\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=18624, ...}) = 0
mmap(NULL, 2109712, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04d6b8000
mprotect(0x7fc04d6bb000, 2093056, PROT_NONE) = 0
mmap(0x7fc04d8ba000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x2000) = 0x7fc04d8ba000
close(3)                                = 0
openat(AT_FDCWD, "/lib64/libz.so.1", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\3\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0@'\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=92216, ...}) = 0
mmap(NULL, 2187280, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04d4a1000
mprotect(0x7fc04d4b7000, 2093056, PROT_NONE) = 0
mmap(0x7fc04d6b6000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x15000) = 0x7fc04d6b6000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/liblzma.so.5", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\2204\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=235576, ...}) = 0
mmap(NULL, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7fc05057a000
mmap(NULL, 2330640, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04d267000
mprotect(0x7fc04d2a0000, 2093056, PROT_NONE) = 0
mmap(0x7fc04d49f000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x38000) = 0x7fc04d49f000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/libk5crypto.so.3", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\200N\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=199560, ...}) = 0
mmap(NULL, 2298360, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04d035000
mprotect(0x7fc04d064000, 2093056, PROT_NONE) = 0
mmap(0x7fc04d263000, 12288, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x2e000) = 0x7fc04d263000
mmap(0x7fc04d266000, 504, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7fc04d266000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/libkrb5support.so.0", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0`;\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=52424, ...}) = 0
mmap(NULL, 2147880, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04ce28000
mprotect(0x7fc04ce34000, 2093056, PROT_NONE) = 0
mmap(0x7fc04d033000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0xb000) = 0x7fc04d033000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/libkeyutils.so.1", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\300\27\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=14648, ...}) = 0
mmap(NULL, 2109712, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04cc24000
mprotect(0x7fc04cc27000, 2093056, PROT_NONE) = 0
mmap(0x7fc04ce26000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x2000) = 0x7fc04ce26000
close(3)                                = 0
openat(AT_FDCWD, "/lib64/libresolv.so.2", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\00008\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=97200, ...}) = 0
mmap(NULL, 2189952, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04ca0d000
mprotect(0x7fc04ca20000, 2097152, PROT_NONE) = 0
mmap(0x7fc04cc20000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x13000) = 0x7fc04cc20000
mmap(0x7fc04cc22000, 6784, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7fc04cc22000
close(3)                                = 0
openat(AT_FDCWD, "/lib64/libselinux.so.1", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\0u\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=159488, ...}) = 0
mmap(NULL, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7fc050578000
mmap(NULL, 2263760, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04c7e4000
mprotect(0x7fc04c80a000, 2093056, PROT_NONE) = 0
mmap(0x7fc04ca09000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x25000) = 0x7fc04ca09000
mmap(0x7fc04ca0b000, 6864, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x7fc04ca0b000
close(3)                                = 0
openat(AT_FDCWD, "/usr/lib64/libpcre.so.1", O_RDONLY|O_CLOEXEC) = 3  
read(3, "\177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0>\0\1\0\0\0\200\27\0\0\0\0\0\0"..., 832) = 832  
fstat(3, {st_mode=S_IFREG|0755, st_size=575808, ...}) = 0
mmap(NULL, 2671080, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_DENYWRITE, 3, 0) = 0x7fc04c557000
mprotect(0x7fc04c5e3000, 2093056, PROT_NONE) = 0
mmap(0x7fc04c7e2000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_DENYWRITE, 3, 0x8b000) = 0x7fc04c7e2000
close(3)                                = 0
mmap(NULL, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7fc050576000
mmap(NULL, 12288, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7fc050573000
arch_prctl(ARCH_SET_FS, 0x7fc050573840) = 0
mprotect(0x7fc04dc6c000, 16384, PROT_READ) = 0
mprotect(0x7fc04c7e2000, 4096, PROT_READ) = 0
mprotect(0x7fc04d8ba000, 4096, PROT_READ) = 0
mprotect(0x7fc04ca09000, 4096, PROT_READ) = 0
mprotect(0x7fc04cc20000, 4096, PROT_READ) = 0
mprotect(0x7fc04ce26000, 4096, PROT_READ) = 0
mprotect(0x7fc04d033000, 4096, PROT_READ) = 0
mprotect(0x7fc04d263000, 8192, PROT_READ) = 0
mprotect(0x7fc050375000, 4096, PROT_READ) = 0
mprotect(0x7fc04d49f000, 4096, PROT_READ) = 0
mprotect(0x7fc04d6b6000, 4096, PROT_READ) = 0
mprotect(0x7fc04de8c000, 4096, PROT_READ) = 0
mprotect(0x7fc04e1c4000, 4096, PROT_READ) = 0
mprotect(0x7fc04e541000, 40960, PROT_READ) = 0
mprotect(0x7fc04e758000, 4096, PROT_READ) = 0
mprotect(0x7fc04e960000, 4096, PROT_READ) = 0
mprotect(0x7fc04eb65000, 4096, PROT_READ) = 0
mprotect(0x7fc04ed69000, 4096, PROT_READ) = 0
mprotect(0x7fc04f034000, 57344, PROT_READ) = 0
mprotect(0x7fc04f28c000, 8192, PROT_READ) = 0
mprotect(0x7fc04f6f1000, 122880, PROT_READ) = 0
mprotect(0x7fc04f980000, 20480, PROT_READ) = 0
mprotect(0x7fc04fbb9000, 8192, PROT_READ) = 0
mprotect(0x7fc04ff19000, 32768, PROT_READ) = 0
mprotect(0x7fc05015a000, 8192, PROT_READ) = 0
mprotect(0x560dd5dbd000, 155648, PROT_READ) = 0
mprotect(0x7fc0505a0000, 4096, PROT_READ) = 0
munmap(0x7fc050582000, 121870)          = 0
set_tid_address(0x7fc050573b10)         = 5370
set_robust_list(0x7fc050573b20, 24)     = 0
rt_sigaction(SIGRTMIN, {sa_handler=0x7fc050162c60, sa_mask=, sa_flags=SA_RESTORER|SA_SIGINFO, sa_restorer=0x7fc05016f360}, NULL, 8) = 0
rt_sigaction(SIGRT_1, {sa_handler=0x7fc050162d00, sa_mask=, sa_flags=SA_RESTORER|SA_RESTART|SA_SIGINFO, sa_restorer=0x7fc05016f360}, NULL, 8) = 0
rt_sigprocmask(SIG_UNBLOCK, [RTMIN RT_1], NULL, 8) = 0
prlimit64(0, RLIMIT_STACK, NULL, {rlim_cur=8192*1024, rlim_max=RLIM64_INFINITY}) = 0
statfs("/sys/fs/selinux", 0x7fffe2e767d0) = -1 ENOENT (No such file or directory)  
statfs("/selinux", {f_type=BTRFS_SUPER_MAGIC, f_bsize=4096, f_blocks=10485760, f_bfree=7708999, f_bavail=7598703, f_files=0, f_ffree=0, f_fsid={val=[1751172097, 1076523015]}, f_namelen=255, f_frsize=4096, f_flags=ST_VALID|ST_RELATIME}) = 0  
brk(NULL)                               = 0x560dd6b5d000
brk(0x560dd6b7e000)                     = 0x560dd6b7e000
openat(AT_FDCWD, "/proc/filesystems", O_RDONLY) = 3  
fstat(3, {st_mode=S_IFREG|0444, st_size=0, ...}) = 0
read(3, "nodev\tsysfs\nnodev\trootfs\nnodev\tr"..., 1024) = 336  
read(3, "", 1024)                       = 0  
close(3)                                = 0
access("/etc/selinux/config", F_OK)     = -1 ENOENT (No such file or directory)  
futex(0x7fc04f71bb64, FUTEX_WAKE_PRIVATE, 2147483647) = 0
getpid()                                = 5370
getpid()                                = 5370
openat(AT_FDCWD, "/dev/urandom", O_RDONLY) = 3  
fstat(3, {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 9), ...}) = 0
futex(0x7fc04f71c6d4, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7fc04f71c0d8, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7fc04f71c0cc, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7fc04f71c214, FUTEX_WAKE_PRIVATE, 2147483647) = 0
read(3, "\375AA\3745\275;F?\205Uz\356\207L\271\262\374\313\354\222\326\236\371\357\3W\252\346\300\225l"..., 60) = 60  
close(3)                                = 0
futex(0x7fc04f71c08c, FUTEX_WAKE_PRIVATE, 2147483647) = 0
getpid()                                = 5370
openat(AT_FDCWD, "/dev/urandom", O_RDONLY|O_NOCTTY|O_NONBLOCK) = 3  
fstat(3, {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 9), ...}) = 0
poll([{fd=3, events=POLLIN}], 1, 10)    = 1 ([{fd=3, revents=POLLIN}])
read(3, "zz\35\234_\311t\237p,\237\3H\263ba\347?\234\210M\361G\260\202V\6\1\342\276\254b"..., 1024) = 1024  
close(3)                                = 0
getuid()                                = 0
getpid()                                = 5370
openat(AT_FDCWD, "/dev/urandom", O_RDONLY) = 3  
fstat(3, {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 9), ...}) = 0
read(3, ",\314\270\335s\313\372A\211\312\255*\365\6\341\314\"\347\24\\", 20) = 20  
close(3)                                = 0
futex(0x7fc04f71bb24, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7fc04f71ba84, FUTEX_WAKE_PRIVATE, 2147483647) = 0
getpid()                                = 5370
openat(AT_FDCWD, "/dev/urandom", O_RDONLY) = 3  
fstat(3, {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 9), ...}) = 0
read(3, "Z\350i\246\212\vo\354|\32h\351\312\240\263\277m\3521X\270\347\n\206\312gAAI\226$\341"..., 256) = 256  
close(3)                                = 0
getpid()                                = 5370
openat(AT_FDCWD, "/dev/urandom", O_RDONLY) = 3  
fstat(3, {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 9), ...}) = 0
read(3, "\17\327z\n\201\23\337\1-\24aOm\251\2518\t\264%G\235\207.)\240@e\254fUG\304"..., 216) = 216  
close(3)                                = 0
getpid()                                = 5370
openat(AT_FDCWD, "/dev/urandom", O_RDONLY) = 3  
fstat(3, {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 9), ...}) = 0
read(3, "^", 1)                         = 1  
close(3)                                = 0
futex(0x7fc04f71ba1c, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7fc04f71ba10, FUTEX_WAKE_PRIVATE, 2147483647) = 0
brk(0x560dd6ba0000)                     = 0x560dd6ba0000
futex(0x7fc04f71c0c4, FUTEX_WAKE_PRIVATE, 2147483647) = 0
getpid()                                = 5370
openat(AT_FDCWD, "/dev/urandom", O_RDONLY) = 3  
fstat(3, {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 9), ...}) = 0
read(3, "\245\30\3070DQ#\326\363\3778\205]\232(\372\234\325s_\2310\216\302\31\313N\4\213\315\f\""..., 64) = 64  
close(3)                                = 0
getpid()                                = 5370
openat(AT_FDCWD, "/dev/urandom", O_RDONLY) = 3  
fstat(3, {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 9), ...}) = 0
read(3, "\336B\17\356\1O\372F\231\202\254\315\367\375{\265\31\370\360p\375\r\227?k\300\362\277\261\264\242="..., 64) = 64  
close(3)                                = 0
getpid()                                = 5370
openat(AT_FDCWD, "/dev/urandom", O_RDONLY) = 3  
fstat(3, {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 9), ...}) = 0
read(3, "\371\212\6\244\374\332=@:\32\222\370\223\233\262\16\177U\351\257\n\253%\251\273s\313e", 28) = 28  
close(3)                                = 0
futex(0x7fc04d8bb0c8, FUTEX_WAKE_PRIVATE, 2147483647) = 0
openat(AT_FDCWD, "/usr/lib64/.libcrypto.so.1.1.hmac", O_RDONLY) = -1 ENOENT (No such file or directory)  
openat(AT_FDCWD, "/proc/sys/crypto/fips_enabled", O_RDONLY) = -1 ENOENT (No such file or directory)  
access("/usr/lib64/.libcrypto.so.1.1.hmac", F_OK) = -1 ENOENT (No such file or directory)  
futex(0x7fc04e54e05c, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7fc04e54e068, FUTEX_WAKE_PRIVATE, 2147483647) = 0
mmap(NULL, 266240, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7fc050532000
socket(AF_INET6, SOCK_STREAM, IPPROTO_IP) = 3
setsockopt(3, SOL_IPV6, IPV6_V6ONLY, , 4) = 0
bind(3, {sa_family=AF_INET6, sin6_port=htons(0), inet_pton(AF_INET6, "::1", &sin6_addr), sin6_flowinfo=htonl(0), sin6_scope_id=0}, 28) = 0  
close(3)                                = 0
brk(0x560dd6bc1000)                     = 0x560dd6bc1000
openat(AT_FDCWD, "/etc/squid/squid.conf", O_RDONLY) = 3  
fstat(3, {st_mode=S_IFREG|0644, st_size=2954, ...}) = 0
read(3, "#\n# Recommended minimum configur"..., 4096) = 2954  
open("/etc/localtime", O_RDONLY|O_CLOEXEC) = 4  
fstat(4, {st_mode=S_IFREG|0644, st_size=2298, ...}) = 0
fstat(4, {st_mode=S_IFREG|0644, st_size=2298, ...}) = 0
read(4, "TZif2\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\t\0\0\0\t\0\0\0\0"..., 4096) = 2298  
lseek(4, -1449, SEEK_CUR)               = 849
read(4, "TZif2\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\t\0\0\0\t\0\0\0\0"..., 4096) = 1449  
close(4)                                = 0
write(2, "2020/03/06 11:59:36| WARNING: (B"..., 812020/03/06 11:59:36| WARNING: (B) '127.0.0.1' is a subnetwork of (A) '127.0.0.1'  
) = 81
write(2, "2020/03/06 11:59:36| WARNING: be"..., 1102020/03/06 11:59:36| WARNING: because of this '127.0.0.1' is ignored to keep splay tree searching predictable  
) = 110
write(2, "2020/03/06 11:59:36| WARNING: Yo"..., 1002020/03/06 11:59:36| WARNING: You should probably remove '127.0.0.1' from the ACL named 'localhost'  
) = 100
write(2, "2020/03/06 11:59:36| WARNING: (B"..., 812020/03/06 11:59:36| WARNING: (B) '127.0.0.1' is a subnetwork of (A) '127.0.0.1'  
) = 81
write(2, "2020/03/06 11:59:36| WARNING: be"..., 1102020/03/06 11:59:36| WARNING: because of this '127.0.0.1' is ignored to keep splay tree searching predictable  
) = 110
write(2, "2020/03/06 11:59:36| WARNING: Yo"..., 1002020/03/06 11:59:36| WARNING: You should probably remove '127.0.0.1' from the ACL named 'localhost'  
) = 100
write(2, "2020/03/06 11:59:36| WARNING: (B"..., 692020/03/06 11:59:36| WARNING: (B) '::1' is a subnetwork of (A) '::1'  
) = 69
write(2, "2020/03/06 11:59:36| WARNING: be"..., 1042020/03/06 11:59:36| WARNING: because of this '::1' is ignored to keep splay tree searching predictable  
) = 104
write(2, "2020/03/06 11:59:36| WARNING: Yo"..., 942020/03/06 11:59:36| WARNING: You should probably remove '::1' from the ACL named 'localhost'  
) = 94
write(2, "2020/03/06 11:59:36| WARNING: (B"..., 692020/03/06 11:59:36| WARNING: (B) '::1' is a subnetwork of (A) '::1'  
) = 69
write(2, "2020/03/06 11:59:36| WARNING: be"..., 1042020/03/06 11:59:36| WARNING: because of this '::1' is ignored to keep splay tree searching predictable  
) = 104
write(2, "2020/03/06 11:59:36| WARNING: Yo"..., 942020/03/06 11:59:36| WARNING: You should probably remove '::1' from the ACL named 'localhost'  
) = 94
write(2, "2020/03/06 11:59:36| WARNING: (B"..., 852020/03/06 11:59:36| WARNING: (B) '127.0.0.0/8' is a subnetwork of (A) '127.0.0.0/8'  
) = 85
write(2, "2020/03/06 11:59:36| WARNING: be"..., 1122020/03/06 11:59:36| WARNING: because of this '127.0.0.0/8' is ignored to keep splay tree searching predictable  
) = 112
write(2, "2020/03/06 11:59:36| WARNING: Yo"..., 1052020/03/06 11:59:36| WARNING: You should probably remove '127.0.0.0/8' from the ACL named 'to_localhost'  
) = 105
write(2, "2020/03/06 11:59:36| WARNING: (B"..., 852020/03/06 11:59:36| WARNING: (B) '127.0.0.0/8' is a subnetwork of (A) '127.0.0.0/8'  
) = 85
write(2, "2020/03/06 11:59:36| WARNING: be"..., 1122020/03/06 11:59:36| WARNING: because of this '127.0.0.0/8' is ignored to keep splay tree searching predictable  
) = 112
write(2, "2020/03/06 11:59:36| WARNING: Yo"..., 1052020/03/06 11:59:36| WARNING: You should probably remove '127.0.0.0/8' from the ACL named 'to_localhost'  
) = 105
write(2, "2020/03/06 11:59:36| WARNING: (B"..., 772020/03/06 11:59:36| WARNING: (B) '0.0.0.0' is a subnetwork of (A) '0.0.0.0'  
) = 77
write(2, "2020/03/06 11:59:36| WARNING: be"..., 1082020/03/06 11:59:36| WARNING: because of this '0.0.0.0' is ignored to keep splay tree searching predictable  
) = 108
write(2, "2020/03/06 11:59:36| WARNING: Yo"..., 1012020/03/06 11:59:36| WARNING: You should probably remove '0.0.0.0' from the ACL named 'to_localhost'  
) = 101
write(2, "2020/03/06 11:59:36| WARNING: (B"..., 772020/03/06 11:59:36| WARNING: (B) '0.0.0.0' is a subnetwork of (A) '0.0.0.0'  
) = 77
write(2, "2020/03/06 11:59:36| WARNING: be"..., 1082020/03/06 11:59:36| WARNING: because of this '0.0.0.0' is ignored to keep splay tree searching predictable  
) = 108
write(2, "2020/03/06 11:59:36| WARNING: Yo"..., 1012020/03/06 11:59:36| WARNING: You should probably remove '0.0.0.0' from the ACL named 'to_localhost'  
) = 101
write(2, "2020/03/06 11:59:36| WARNING: (B"..., 692020/03/06 11:59:36| WARNING: (B) '::1' is a subnetwork of (A) '::1'  
) = 69
write(2, "2020/03/06 11:59:36| WARNING: be"..., 1042020/03/06 11:59:36| WARNING: because of this '::1' is ignored to keep splay tree searching predictable  
) = 104
write(2, "2020/03/06 11:59:36| WARNING: Yo"..., 972020/03/06 11:59:36| WARNING: You should probably remove '::1' from the ACL named 'to_localhost'  
) = 97
write(2, "2020/03/06 11:59:36| WARNING: (B"..., 692020/03/06 11:59:36| WARNING: (B) '::1' is a subnetwork of (A) '::1'  
) = 69
write(2, "2020/03/06 11:59:36| WARNING: be"..., 1042020/03/06 11:59:36| WARNING: because of this '::1' is ignored to keep splay tree searching predictable  
) = 104
write(2, "2020/03/06 11:59:36| WARNING: Yo"..., 972020/03/06 11:59:36| WARNING: You should probably remove '::1' from the ACL named 'to_localhost'  
) = 97
write(2, "2020/03/06 11:59:36| ERROR: Dire"..., 722020/03/06 11:59:36| ERROR: Directive 'hierarchy_stoplist' is obsolete.  
) = 72
read(3, "", 4096)                       = 0  
close(3)                                = 0
uname({sysname="Linux", nodename="proxy", ...}) = 0  
socket(AF_NETLINK, SOCK_RAW, NETLINK_ROUTE) = 3
bind(3, {sa_family=AF_NETLINK, nl_pid=0, nl_groups=00000000}, 12) = 0
getsockname(3, {sa_family=AF_NETLINK, nl_pid=5370, nl_groups=00000000}, [12]) = 0
sendto(3, {{len=20, type=RTM_GETADDR, flags=NLM_F_REQUEST|NLM_F_DUMP, seq=1583492376, pid=0}, {ifa_family=AF_UNSPEC, ...}}, 20, 0, {sa_family=AF_NETLINK, nl_pid=0, nl_groups=00000000}, 12) = 20
recvmsg(3, {msg_name={sa_family=AF_NETLINK, nl_pid=0, nl_groups=00000000}, msg_namelen=12, msg_iov=[{iov_base=[{{len=76, type=RTM_NEWADDR, flags=NLM_F_MULTI, seq=1583492376, pid=5370}, {ifa_family=AF_INET, ifa_prefixlen=8, ifa_flags=IFA_F_PERMANENT, ifa_scope=RT_SCOPE_HOST, ifa_index=if_nametoindex("lo")}, [{{nla_len=8, nla_type=IFA_ADDRESS}, 127.0.0.1}, {{nla_len=8, nla_type=IFA_LOCAL}, 127.0.0.1}, {{nla_len=7, nla_type=IFA_LABEL}, "lo"}, {{nla_len=8, nla_type=IFA_FLAGS}, IFA_F_PERMANENT}, {{nla_len=20, nla_type=IFA_CACHEINFO}, {ifa_prefered=4294967295, ifa_valid=4294967295, cstamp=204, tstamp=204}}]}, {{len=88, type=RTM_NEWADDR, flags=NLM_F_MULTI, seq=1583492376, pid=5370}, {ifa_family=AF_INET, ifa_prefixlen=16, ifa_flags=IFA_F_PERMANENT, ifa_scope=RT_SCOPE_UNIVERSE, ifa_index=if_nametoindex("eth0")}, [{{nla_len=8, nla_type=IFA_ADDRESS}, 172.17.0.8}, {{nla_len=8, nla_type=IFA_LOCAL}, 172.17.0.8}, {{nla_len=8, nla_type=IFA_BROADCAST}, 172.17.255.255}, {{nla_len=9, nla_type=IFA_LABEL}, "eth0"}, {{nla_len=8, nla_type=IFA_FLAGS}, IFA_F_PERMANENT}, {{nla_len=20, nla_type=IFA_CACHEINFO}, {ifa_prefered=4294967295, ifa_valid=4294967295, cstamp=1706, tstamp=1706}}]}], iov_len=4096}], msg_iovlen=1, msg_controllen=0, msg_flags=0}, 0) = 164  
recvmsg(3, {msg_name={sa_family=AF_NETLINK, nl_pid=0, nl_groups=00000000}, msg_namelen=12, msg_iov=[{iov_base=[{{len=72, type=RTM_NEWADDR, flags=NLM_F_MULTI, seq=1583492376, pid=5370}, {ifa_family=AF_INET6, ifa_prefixlen=128, ifa_flags=IFA_F_PERMANENT, ifa_scope=RT_SCOPE_HOST, ifa_index=if_nametoindex("lo")}, [{{nla_len=20, nla_type=IFA_ADDRESS}, ::1}, {{nla_len=20, nla_type=IFA_CACHEINFO}, {ifa_prefered=4294967295, ifa_valid=4294967295, cstamp=204, tstamp=204}}, {{nla_len=8, nla_type=IFA_FLAGS}, IFA_F_PERMANENT}]}, {{len=72, type=RTM_NEWADDR, flags=NLM_F_MULTI, seq=1583492376, pid=5370}, {ifa_family=AF_INET6, ifa_prefixlen=64, ifa_flags=IFA_F_PERMANENT, ifa_scope=RT_SCOPE_LINK, ifa_index=if_nametoindex("eth0")}, [{{nla_len=20, nla_type=IFA_ADDRESS}, fe80::215:5dff:fe02:1a04}, {{nla_len=20, nla_type=IFA_CACHEINFO}, {ifa_prefered=4294967295, ifa_valid=4294967295, cstamp=1546, tstamp=1546}}, {{nla_len=8, nla_type=IFA_FLAGS}, IFA_F_PERMANENT}]}], iov_len=4096}], msg_iovlen=1, msg_controllen=0, msg_flags=0}, 0) = 144  
recvmsg(3, {msg_name={sa_family=AF_NETLINK, nl_pid=0, nl_groups=00000000}, msg_namelen=12, msg_iov=[{iov_base={{len=20, type=NLMSG_DONE, flags=NLM_F_MULTI, seq=1583492376, pid=5370}, 0}, iov_len=4096}], msg_iovlen=1, msg_controllen=0, msg_flags=0}, 0) = 20
socket(AF_UNIX, SOCK_STREAM|SOCK_CLOEXEC|SOCK_NONBLOCK, 0) = 4
connect(4, {sa_family=AF_UNIX, sun_path="/var/run/nscd/socket"}, 110) = 0  
sendto(4, "\2\0\0\0\r\0\0\0\6\0\0\0hosts\0", 18, MSG_NOSIGNAL, NULL, 0) = 18  
poll([{fd=4, events=POLLIN|POLLERR|POLLHUP}], 1, 5000) = 1 ([{fd=4, revents=POLLIN|POLLHUP}])
recvmsg(4, {msg_name=NULL, msg_namelen=0, msg_iov=[{iov_base="hosts\0", iov_len=6}, {iov_base="\310O\3\0\0\0\0\0", iov_len=8}], msg_iovlen=2, msg_control=[{cmsg_len=20, cmsg_level=SOL_SOCKET, cmsg_type=SCM_RIGHTS, cmsg_data=[5]}], msg_controllen=20, msg_flags=MSG_CMSG_CLOEXEC}, MSG_CMSG_CLOEXEC) = 14  
mmap(NULL, 217032, PROT_READ, MAP_SHARED, 5, 0) = 0x7fc0504fd000
close(5)                                = 0
close(4)                                = 0
close(3)                                = 0
stat("/etc/squid/mime.conf", {st_mode=S_IFREG|0644, st_size=12077, ...}) = 0  
stat("/usr/sbin/unlinkd", {st_mode=S_IFREG|0755, st_size=10376, ...}) = 0  
stat("/usr/sbin/log_file_daemon", {st_mode=S_IFREG|0755, st_size=10296, ...}) = 0  
stat("/usr/sbin/squidGuard", {st_mode=S_IFREG|0755, st_size=89080, ...}) = 0  
stat("/usr/share/squid/icons", {st_mode=S_IFDIR|0755, st_size=20, ...}) = 0  
geteuid()                               = 0
socket(AF_UNIX, SOCK_STREAM|SOCK_CLOEXEC|SOCK_NONBLOCK, 0) = 3
connect(3, {sa_family=AF_UNIX, sun_path="/var/run/nscd/socket"}, 110) = 0  
sendto(3, "\2\0\0\0\v\0\0\0\7\0\0\0passwd\0", 19, MSG_NOSIGNAL, NULL, 0) = 19  
poll([{fd=3, events=POLLIN|POLLERR|POLLHUP}], 1, 5000) = 1 ([{fd=3, revents=POLLIN|POLLHUP}])
recvmsg(3, {msg_name=NULL, msg_namelen=0, msg_iov=[{iov_base="passwd\0", iov_len=7}, {iov_base="\310O\3\0\0\0\0\0", iov_len=8}], msg_iovlen=2, msg_control=[{cmsg_len=20, cmsg_level=SOL_SOCKET, cmsg_type=SCM_RIGHTS, cmsg_data=[4]}], msg_controllen=20, msg_flags=MSG_CMSG_CLOEXEC}, MSG_CMSG_CLOEXEC) = 15  
mmap(NULL, 217032, PROT_READ, MAP_SHARED, 4, 0) = 0x7fc0504c8000
close(4)                                = 0
close(3)                                = 0
futex(0x7fc04f71c1c0, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7fc04f71c0ac, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7fc04f71c0b4, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7fc04f9899e0, FUTEX_WAKE_PRIVATE, 2147483647) = 0
sysinfo({uptime=76900, loads=[12160, 5280, 5088], totalram=1960525824, freeram=283389952, sharedram=14508032, bufferram=32768, totalswap=2148507648, freeswap=2144567296, procs=209, totalhigh=0, freehigh=0, mem_unit=1}) = 0
futex(0x7fc04f71a02c, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7fc04f989abc, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7fc04f989ab0, FUTEX_WAKE_PRIVATE, 2147483647) = 0
futex(0x7fc04f989908, FUTEX_WAKE_PRIVATE, 2147483647) = 0
getpid()                                = 5370
openat(AT_FDCWD, "/dev/urandom", O_RDONLY) = 3  
fstat(3, {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 9), ...}) = 0
read(3, "\16;N\361\262\t\203\261C5\262w\365!\226\34", 16) = 16  
close(3)                                = 0
getpid()                                = 5370
openat(AT_FDCWD, "/dev/urandom", O_RDONLY) = 3  
fstat(3, {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 9), ...}) = 0
read(3, "\325S\220\315\36\177\345KP`\344\37\\\245s+\213/\267\34\f\26\277\204U\331\317\f\376\346=\253", 32) = 32  
close(3)                                = 0
getpid()                                = 5370
openat(AT_FDCWD, "/dev/urandom", O_RDONLY) = 3  
fstat(3, {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 9), ...}) = 0
read(3, "f\326\343\307U\215g\271B-\246\317\331I\230|\316\347\222\364pTI\2553\375\30P\245\307EL", 32) = 32  
close(3)                                = 0
openat(AT_FDCWD, "/var/lib/ca-certificates/ca-bundle.pem", O_RDONLY) = 3  
fstat(3, {st_mode=S_IFREG|0444, st_size=216302, ...}) = 0
read(3, "#\n# automatically created by /us"..., 4096) = 4096  
read(3, "I+cL5NqYuSf+4lsKMB7ObiFj86xsc3i1"..., 4096) = 4096  
read(3, "ZkGA1UdIwSBkTCBjoAUrb2YejS0\nJvf6"..., 4096) = 4096  
brk(0x560dd6be2000)                     = 0x560dd6be2000
read(3, "tkm9UWrpmVSESfYRaxjMA8GA1UdEwEB/"..., 4096) = 4096  
read(3, "FiwzAJRGFuFjWJZY7attN6a+yb3ACfAX"..., 4096) = 4096  
read(3, "asuhy9azuJBCtLxTa/y2aRnFHvkLfuwH"..., 4096) = 4096  
read(3, "yWDLfJ6v9r9jv6ly0Us\nH8SIU653Dtma"..., 4096) = 4096  
read(3, "6HAcOmz0iyu8x\nL4ysEr3vQCj8KWefsh"..., 4096) = 4096  
read(3, "AIgNiAAQDR3svdcmCFYX7deSR\nFtSrYp"..., 4096) = 4096  
read(3, "xCzAJBgNVBAYTAkZSMRIwEAYD\nVQQKDA"..., 4096) = 4096  
read(3, "9g0cvW0QM8x\nAcPs3hEtF10fuFDRXhmn"..., 4096) = 4096  
brk(0x560dd6c03000)                     = 0x560dd6c03000
read(3, "nA+mCIG8TZTQKeFxmhgbSkgbEwga4xCz"..., 4096) = 4096  
read(3, "AlBgNVBAMMHkQtVFJVU1QgUm9vdCBD\nb"..., 4096) = 4096  
read(3, "NTUQ\n-----END CERTIFICATE-----\n-"..., 4096) = 4096  
read(3, "w\nCQYDVQQGEwJVUzEVMBMGA1UEChMMRG"..., 4096) = 4096  
read(3, "yIJ7vmiI1Qhadj+Z4y3maTD/HMsQmP3W"..., 4096) = 4096  
read(3, "9yaXR5\nMIICIjANBgkqhkiG9w0BAQEFA"..., 4096) = 4096  
read(3, "\neuuOF0+W2Ap7kaJjbMeMTC55v6kF/Gl"..., 4096) = 4096  
read(3, "BAgINAKaLeSkAAAAAUNCR+TAKBggqhkj"..., 4096) = 4096  
brk(0x560dd6c24000)                     = 0x560dd6c24000
read(3, "AR8gPf\nJWIyJyYYMoSf/wA6E7qaTfRPu"..., 4096) = 4096  
read(3, "\n5AwiWVIQ7UNWhwD4FFKnHYuTjKJNRn8"..., 4096) = 4096  
read(3, "w+uCxQmYpqptR7TBUIhRf2asdweSU8Pj"..., 4096) = 4096  
read(3, "ZDQbYKxek0nxru18UGkiPGkzns0ccjkx"..., 4096) = 4096  
read(3, "AJBgNVBAYTAkJFMRkwFwYDVQQKExBHbG"..., 4096) = 4096  
read(3, "MIyBJQbUJmL025eShNUhqKGoC3GYEOfs"..., 4096) = 4096  
read(3, "AgIBADANBgkqhkiG9w0BAQUFADBjMQsw"..., 4096) = 4096  
read(3, "MTEzNDk1MlowgZUxCzAJBgNVBAYTAkdS"..., 4096) = 4096  
brk(0x560dd6c45000)                     = 0x560dd6c45000
read(3, "H/AgED\nMA4GA1UdDwEB/wQEAwIBxjANB"..., 4096) = 4096  
read(3, "PElpzVmbUq4JUagEiuTDkHzsxHpFKVK7"..., 4096) = 4096  
read(3, "JCO2SCdUyt/q4/i6jC8UDfv\n8Ue1fXws"..., 4096) = 4096  
read(3, "4wVDej8oqkDQc7kGUnF4ZLvhFSZl0kbA"..., 4096) = 4096  
read(3, "dXRpb25zQ2VydGlmaWNhdGVBdXRob3Jp"..., 4096) = 4096  
read(3, "TIFICATE-----\n-----BEGIN CERTIFI"..., 4096) = 4096  
read(3, "1UEBhMCQk0x\nGTAXBgNVBAoTEFF1b1Zh"..., 4096) = 4096  
read(3, "xCzAJBgNV\nBAYTAkJNMRkwFwYDVQQKEx"..., 4096) = 4096  
read(3, "lDCCAhqgAwIBAgIILCmcWxbtBZUwCgYI"..., 4096) = 4096  
read(3, "VRleGFzMRAwDgYDVQQHDAdIb3VzdG9uM"..., 4096) = 4096  
brk(0x560dd6c66000)                     = 0x560dd6c66000
read(3, "NAQEFBQADggEB\nAKChOBZmLqdWHyGcBv"..., 4096) = 4096  
read(3, "\nokgfGT+Ok+vx+hfuzU7jBBJV1uXk3fs"..., 4096) = 4096  
read(3, "GAKb12NMcIxHowNDXLldRqANb/9Zjr7d"..., 4096) = 4096  
read(3, "mA+P5M9zWEGYox+wrZ13+b8KKaa8MFSu"..., 4096) = 4096  
read(3, "66DQO4M99H67FrjSXZm86B0UVGMpZwh9"..., 4096) = 4096  
read(3, "hrs9\nxCrZ1x9y7v5RoSJBsXECYxqCsGK"..., 4096) = 4096  
read(3, "QlT6QlVZC1xl8JoSNkvoBHToP4mQ4t4y"..., 4096) = 4096  
read(3, "2ZXJubWVudCBSb290IENlcnRpZmlj\nYX"..., 4096) = 4096  
read(3, "SBDaXR5MSQw\nIgYDVQQKDBtUcnVzdENv"..., 4096) = 4096  
read(3, "h80QA9z+LqBrWyOrsGS2h60COX\ndKcs8"..., 4096) = 4096  
brk(0x560dd6c87000)                     = 0x560dd6c87000
read(3, "AYTAkNOMREwDwYDVQQKDAhVbmlUcnVzd"..., 4096) = 4096  
read(3, "VeCkZ7l8wXEskEVX/JJpuXior7gtNn3/"..., 4096) = 4096  
read(3, "dXN0\nIE5ldHdvcmsxOjA4BgNVBAsTMSh"..., 4096) = 4096  
read(3, "Sy\ni6mx5O+aGtA9aZnuqCij4Tyz8LIRn"..., 4096) = 4096  
read(3, "76BB1UwUCAU9Vc4CqgxUQ==\n-----END"..., 4096) = 4096  
read(3, "BDwAwggEKAoIBAQCsoPD7gFnUnMekz52"..., 4096) = 3310  
read(3, "", 4096)                       = 0  
close(3)                                = 0
geteuid()                               = 0
setgid(31)                              = 0
open("/proc/sys/kernel/ngroups_max", O_RDONLY) = 3  
read(3, "65536\n", 31)                  = 6  
close(3)                                = 0
socket(AF_UNIX, SOCK_STREAM|SOCK_CLOEXEC|SOCK_NONBLOCK, 0) = 3
connect(3, {sa_family=AF_UNIX, sun_path="/var/run/nscd/socket"}, 110) = 0  
sendto(3, "\2\0\0\0\f\0\0\0\6\0\0\0group\0", 18, MSG_NOSIGNAL, NULL, 0) = 18  
poll([{fd=3, events=POLLIN|POLLERR|POLLHUP}], 1, 5000) = 1 ([{fd=3, revents=POLLIN|POLLHUP}])
recvmsg(3, {msg_name=NULL, msg_namelen=0, msg_iov=[{iov_base="group\0", iov_len=6}, {iov_base="\310O\3\0\0\0\0\0", iov_len=8}], msg_iovlen=2, msg_control=[{cmsg_len=20, cmsg_level=SOL_SOCKET, cmsg_type=SCM_RIGHTS, cmsg_data=[4]}], msg_controllen=20, msg_flags=MSG_CMSG_CLOEXEC}, MSG_CMSG_CLOEXEC) = 14  
mmap(NULL, 217032, PROT_READ, MAP_SHARED, 4, 0) = 0x7fc050493000
close(4)                                = 0
close(3)                                = 0
setgroups(2, [469, 31])                 = 0
setresuid(31, 31, 0)                    = 0
capget({version=_LINUX_CAPABILITY_VERSION_3, pid=0}, NULL) = 0
capget({version=_LINUX_CAPABILITY_VERSION_3, pid=0}, {effective=0, permitted=1<<CAP_CHOWN|1<<CAP_DAC_OVERRIDE|1<<CAP_DAC_READ_SEARCH|1<<CAP_FOWNER|1<<CAP_FSETID|1<<CAP_KILL|1<<CAP_SETGID|1<<CAP_SETUID|1<<CAP_SETPCAP|1<<CAP_LINUX_IMMUTABLE|1<<CAP_NET_BIND_SERVICE|1<<CAP_NET_BROADCAST|1<<CAP_NET_ADMIN|1<<CAP_NET_RAW|1<<CAP_IPC_LOCK|1<<CAP_IPC_OWNER|1<<CAP_SYS_MODULE|1<<CAP_SYS_RAWIO|1<<CAP_SYS_CHROOT|1<<CAP_SYS_PTRACE|1<<CAP_SYS_PACCT|1<<CAP_SYS_ADMIN|1<<CAP_SYS_BOOT|1<<CAP_SYS_NICE|1<<CAP_SYS_RESOURCE|1<<CAP_SYS_TIME|1<<CAP_SYS_TTY_CONFIG|1<<CAP_MKNOD|1<<CAP_LEASE|1<<CAP_AUDIT_WRITE|1<<CAP_AUDIT_CONTROL|1<<CAP_SETFCAP|1<<CAP_MAC_OVERRIDE|1<<CAP_MAC_ADMIN|1<<CAP_SYSLOG|1<<CAP_WAKE_ALARM|1<<CAP_BLOCK_SUSPEND|1<<CAP_AUDIT_READ, inheritable=0}) = 0
capset({version=_LINUX_CAPABILITY_VERSION_3, pid=0}, {effective=1<<CAP_NET_BIND_SERVICE, permitted=1<<CAP_CHOWN|1<<CAP_DAC_OVERRIDE|1<<CAP_DAC_READ_SEARCH|1<<CAP_FOWNER|1<<CAP_FSETID|1<<CAP_KILL|1<<CAP_SETGID|1<<CAP_SETUID|1<<CAP_SETPCAP|1<<CAP_LINUX_IMMUTABLE|1<<CAP_NET_BIND_SERVICE|1<<CAP_NET_BROADCAST|1<<CAP_NET_ADMIN|1<<CAP_NET_RAW|1<<CAP_IPC_LOCK|1<<CAP_IPC_OWNER|1<<CAP_SYS_MODULE|1<<CAP_SYS_RAWIO|1<<CAP_SYS_CHROOT|1<<CAP_SYS_PTRACE|1<<CAP_SYS_PACCT|1<<CAP_SYS_ADMIN|1<<CAP_SYS_BOOT|1<<CAP_SYS_NICE|1<<CAP_SYS_RESOURCE|1<<CAP_SYS_TIME|1<<CAP_SYS_TTY_CONFIG|1<<CAP_MKNOD|1<<CAP_LEASE|1<<CAP_AUDIT_WRITE|1<<CAP_AUDIT_CONTROL|1<<CAP_SETFCAP|1<<CAP_MAC_OVERRIDE|1<<CAP_MAC_ADMIN|1<<CAP_SYSLOG|1<<CAP_WAKE_ALARM|1<<CAP_BLOCK_SUSPEND|1<<CAP_AUDIT_READ, inheritable=0}) = 0
prctl(PR_SET_DUMPABLE, SUID_DUMP_USER)  = 0
umask(027)                              = 022
umask(027)                              = 027
openat(AT_FDCWD, "/var/log/squid/cache.log", O_RDWR|O_CREAT|O_APPEND, 0666) = 3  
stat("/etc/localtime", {st_mode=S_IFREG|0644, st_size=2298, ...}) = 0  
setresuid(-1, 0, -1)                    = 0
prctl(PR_SET_DUMPABLE, SUID_DUMP_USER)  = 0
umask(027)                              = 027
setresuid(-1, 0, -1)                    = 0
prctl(PR_SET_DUMPABLE, SUID_DUMP_USER)  = 0
openat(AT_FDCWD, "/run/squid.pid", O_RDONLY) = 4  
geteuid()                               = 0
setgid(31)                              = 0
open("/proc/sys/kernel/ngroups_max", O_RDONLY) = 5  
read(5, "65536\n", 31)                  = 6  
close(5)                                = 0
setgroups(2, [469, 31])                 = 0
setresuid(31, 31, 0)                    = 0
capget({version=_LINUX_CAPABILITY_VERSION_3, pid=0}, NULL) = 0
capget({version=_LINUX_CAPABILITY_VERSION_3, pid=0}, {effective=0, permitted=1<<CAP_CHOWN|1<<CAP_DAC_OVERRIDE|1<<CAP_DAC_READ_SEARCH|1<<CAP_FOWNER|1<<CAP_FSETID|1<<CAP_KILL|1<<CAP_SETGID|1<<CAP_SETUID|1<<CAP_SETPCAP|1<<CAP_LINUX_IMMUTABLE|1<<CAP_NET_BIND_SERVICE|1<<CAP_NET_BROADCAST|1<<CAP_NET_ADMIN|1<<CAP_NET_RAW|1<<CAP_IPC_LOCK|1<<CAP_IPC_OWNER|1<<CAP_SYS_MODULE|1<<CAP_SYS_RAWIO|1<<CAP_SYS_CHROOT|1<<CAP_SYS_PTRACE|1<<CAP_SYS_PACCT|1<<CAP_SYS_ADMIN|1<<CAP_SYS_BOOT|1<<CAP_SYS_NICE|1<<CAP_SYS_RESOURCE|1<<CAP_SYS_TIME|1<<CAP_SYS_TTY_CONFIG|1<<CAP_MKNOD|1<<CAP_LEASE|1<<CAP_AUDIT_WRITE|1<<CAP_AUDIT_CONTROL|1<<CAP_SETFCAP|1<<CAP_MAC_OVERRIDE|1<<CAP_MAC_ADMIN|1<<CAP_SYSLOG|1<<CAP_WAKE_ALARM|1<<CAP_BLOCK_SUSPEND|1<<CAP_AUDIT_READ, inheritable=0}) = 0
capset({version=_LINUX_CAPABILITY_VERSION_3, pid=0}, {effective=1<<CAP_NET_BIND_SERVICE, permitted=1<<CAP_CHOWN|1<<CAP_DAC_OVERRIDE|1<<CAP_DAC_READ_SEARCH|1<<CAP_FOWNER|1<<CAP_FSETID|1<<CAP_KILL|1<<CAP_SETGID|1<<CAP_SETUID|1<<CAP_SETPCAP|1<<CAP_LINUX_IMMUTABLE|1<<CAP_NET_BIND_SERVICE|1<<CAP_NET_BROADCAST|1<<CAP_NET_ADMIN|1<<CAP_NET_RAW|1<<CAP_IPC_LOCK|1<<CAP_IPC_OWNER|1<<CAP_SYS_MODULE|1<<CAP_SYS_RAWIO|1<<CAP_SYS_CHROOT|1<<CAP_SYS_PTRACE|1<<CAP_SYS_PACCT|1<<CAP_SYS_ADMIN|1<<CAP_SYS_BOOT|1<<CAP_SYS_NICE|1<<CAP_SYS_RESOURCE|1<<CAP_SYS_TIME|1<<CAP_SYS_TTY_CONFIG|1<<CAP_MKNOD|1<<CAP_LEASE|1<<CAP_AUDIT_WRITE|1<<CAP_AUDIT_CONTROL|1<<CAP_SETFCAP|1<<CAP_MAC_OVERRIDE|1<<CAP_MAC_ADMIN|1<<CAP_SYSLOG|1<<CAP_WAKE_ALARM|1<<CAP_BLOCK_SUSPEND|1<<CAP_AUDIT_READ, inheritable=0}) = 0
prctl(PR_SET_DUMPABLE, SUID_DUMP_USER)  = 0
flock(4, LOCK_SH|LOCK_NB)               = 0
read(4, "5363\n", 33)                   = 5  
kill(5363, SIG_0)                       = 0
futex(0x7fc04de8d1a0, FUTEX_WAKE_PRIVATE, 2147483647) = 0
close(4)                                = 0
fstat(3, {st_mode=S_IFREG|0640, st_size=29728, ...}) = 0
write(3, "2020/03/06 11:59:36| FATAL: Squi"..., 183) = 183  
close(3)                                = 0
exit_group(-1)                          = ?
+++ exited with 255 +++
Member: NetzwerkDude
NetzwerkDude Mar 06, 2020 at 13:07:47 (UTC)
Goto Top
mh, nur in Zeile 409, und das ist ein stat syscall - also der schaut nur ob das file das ist - bringt uns auch nicht weiter

Noch eine permission frage:
Kommt der squid user/gruppe hierhin?
/var/lib/squidGuard/db

ähm, aber wenn der access log leer bleibt - funtioniert denn squid selbst?! Ohne access kann ja auch der guard nicht aktiv werden face-smile
Member: killtec
killtec Mar 06, 2020 at 14:39:55 (UTC)
Goto Top
ja, die Usergruppe squid kommt in das Verzeichnis.
Squid läuft interessanterweise...
Sonst installier ich den mal neu und sichere mal die config file. Muss ja nur das redirect_program rein.

Gruß