notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photosAll times are UTC
Ukraine
Port details
squid HTTP Caching Proxy
6.10 www on this many watch lists=171 search for ports that depend on this port An older version of this port was marked as vulnerable. Find issues related to this port Report an issue related to this port View this port on Repology. pkg-fallout 6.10Version of this port present on the latest quarterly branch.
Maintainer: timp87@gmail.com search for ports maintained by this maintainer
Port Added: 2002-10-13 21:07:20
Last Update: 2024-06-22 05:39:24
Commit Hash: 0daa693
People watching this port, also watch:: postfix, clamav, png, expat, gmake
License: GPLv2
WWW:
http://www.squid-cache.org/
Description:
Squid is a fully-featured HTTP/1.0 proxy which is almost (but not quite) HTTP/1.1 compliant. Squid offers a rich access control, authorization and logging environment to develop web proxy and content serving applications.
Homepage    cgit ¦ Codeberg ¦ GitHub ¦ GitLab ¦ SVNWeb

Manual pages:
FreshPorts has no man page information for this port.
pkg-plist: as obtained via: make generate-plist
Expand this list (191 items)
Collapse this list.
  1. /usr/local/share/licenses/squid-6.10/catalog.mk
  2. /usr/local/share/licenses/squid-6.10/LICENSE
  3. /usr/local/share/licenses/squid-6.10/GPLv2
  4. sbin/squidclient
  5. sbin/squid
  6. sbin/purge
  7. share/man/man8/url_lfs_rewrite.8.gz
  8. share/man/man8/storeid_file_rewrite.8.gz
  9. share/man/man8/squid.8.gz
  10. share/man/man8/security_fake_certverify.8.gz
  11. share/man/man8/log_db_daemon.8.gz
  12. share/man/man8/helper-mux.8.gz
  13. share/man/man8/ext_unix_group_acl.8.gz
  14. share/man/man8/ext_file_userip_acl.8.gz
  15. share/man/man8/ext_delayer_acl.8.gz
  16. share/man/man8/digest_file_auth.8.gz
  17. share/man/man8/cachemgr.cgi.8.gz
  18. share/man/man8/basic_radius_auth.8.gz
  19. share/man/man8/basic_pop3_auth.8.gz
  20. share/man/man8/basic_pam_auth.8.gz
  21. share/man/man8/basic_ncsa_auth.8.gz
  22. share/man/man8/basic_getpwnam_auth.8.gz
  23. share/man/man8/basic_db_auth.8.gz
  24. share/man/man1/squidclient.1.gz
  25. share/man/man1/purge.1.gz
  26. libexec/squid/url_lfs_rewrite
  27. libexec/squid/url_fake_rewrite.sh
  28. libexec/squid/url_fake_rewrite
  29. libexec/squid/storeid_file_rewrite
  30. libexec/squid/security_fake_certverify
  31. libexec/squid/ntlm_smb_lm_auth
  32. libexec/squid/ntlm_fake_auth
  33. libexec/squid/log_file_daemon
  34. libexec/squid/log_db_daemon
  35. libexec/squid/helper-mux
  36. libexec/squid/ext_unix_group_acl
  37. libexec/squid/ext_file_userip_acl
  38. libexec/squid/ext_delayer_acl
  39. libexec/squid/digest_file_auth
  40. libexec/squid/cachemgr.cgi
  41. libexec/squid/basic_smb_lm_auth
  42. libexec/squid/basic_radius_auth
  43. libexec/squid/basic_pop3_auth
  44. libexec/squid/basic_pam_auth
  45. libexec/squid/basic_ncsa_auth
  46. libexec/squid/basic_getpwnam_auth
  47. libexec/squid/basic_fake_auth
  48. libexec/squid/basic_db_auth
  49. libexec/squid/unlinkd
  50. @comment share/man/man8/ext_time_quota_acl.8.gz
  51. @comment share/man/man8/ext_session_acl.8.gz
  52. @comment libexec/squid/ext_time_quota_acl
  53. @comment libexec/squid/ext_session_acl
  54. share/man/man8/security_file_certgen.8.gz
  55. libexec/squid/security_file_certgen
  56. @(,squid,4510) libexec/squid/pinger
  57. libexec/squid/diskd
  58. etc/squid/squid.conf.documented
  59. etc/squid/mib.txt
  60. etc/squid/icons/silk/script_palette.png
  61. etc/squid/icons/silk/script_gear.png
  62. etc/squid/icons/silk/script.png
  63. etc/squid/icons/silk/plugin_add.png
  64. etc/squid/icons/silk/plugin.png
  65. etc/squid/icons/silk/picture.png
  66. etc/squid/icons/silk/photo.png
  67. etc/squid/icons/silk/page_world.png
  68. etc/squid/icons/silk/page_white_zip.png
  69. etc/squid/icons/silk/page_white_word.png
  70. etc/squid/icons/silk/page_white_text.png
  71. etc/squid/icons/silk/page_white_stack.png
  72. etc/squid/icons/silk/page_white_powerpoint.png
  73. etc/squid/icons/silk/page_white_picture.png
  74. etc/squid/icons/silk/page_white_magnify.png
  75. etc/squid/icons/silk/page_white_flash.png
  76. etc/squid/icons/silk/page_white_cplusplus.png
  77. etc/squid/icons/silk/page_white_c.png
  78. etc/squid/icons/silk/page_white_acrobat.png
  79. etc/squid/icons/silk/page_white.png
  80. etc/squid/icons/silk/page_green.png
  81. etc/squid/icons/silk/page_excel.png
  82. etc/squid/icons/silk/page_code.png
  83. etc/squid/icons/silk/package_go.png
  84. etc/squid/icons/silk/package.png
  85. etc/squid/icons/silk/music.png
  86. etc/squid/icons/silk/link.png
  87. etc/squid/icons/silk/layout.png
  88. etc/squid/icons/silk/layers.png
  89. etc/squid/icons/silk/information.png
  90. etc/squid/icons/silk/image.png
  91. etc/squid/icons/silk/folder_table.png
  92. etc/squid/icons/silk/folder.png
  93. etc/squid/icons/silk/film_key.png
  94. etc/squid/icons/silk/film.png
  95. etc/squid/icons/silk/drive_disk.png
  96. etc/squid/icons/silk/database_table.png
  97. etc/squid/icons/silk/database.png
  98. etc/squid/icons/silk/cup.png
  99. etc/squid/icons/silk/css.png
  100. etc/squid/icons/silk/computer_link.png
  101. etc/squid/icons/silk/compress.png
  102. etc/squid/icons/silk/chart_line.png
  103. etc/squid/icons/silk/cd.png
  104. etc/squid/icons/silk/bullet_red.png
  105. etc/squid/icons/silk/bricks.png
  106. etc/squid/icons/silk/box.png
  107. etc/squid/icons/silk/bomb.png
  108. etc/squid/icons/silk/arrow_up.png
  109. etc/squid/icons/silk/application.png
  110. etc/squid/icons/SN.png
  111. etc/squid/errors/templates/error-details.txt
  112. etc/squid/errors/templates/ERR_ZERO_SIZE_OBJECT
  113. etc/squid/errors/templates/ERR_WRITE_ERROR
  114. etc/squid/errors/templates/ERR_URN_RESOLVE
  115. etc/squid/errors/templates/ERR_UNSUP_REQ
  116. etc/squid/errors/templates/ERR_UNSUP_HTTPVERSION
  117. etc/squid/errors/templates/ERR_TOO_BIG
  118. etc/squid/errors/templates/ERR_SOCKET_FAILURE
  119. etc/squid/errors/templates/ERR_SHUTTING_DOWN
  120. etc/squid/errors/templates/ERR_SECURE_CONNECT_FAIL
  121. etc/squid/errors/templates/ERR_READ_TIMEOUT
  122. etc/squid/errors/templates/ERR_READ_ERROR
  123. etc/squid/errors/templates/ERR_PROTOCOL_UNKNOWN
  124. etc/squid/errors/templates/ERR_PRECONDITION_FAILED
  125. etc/squid/errors/templates/ERR_ONLY_IF_CACHED_MISS
  126. etc/squid/errors/templates/ERR_NO_RELAY
  127. etc/squid/errors/templates/ERR_LIFETIME_EXP
  128. etc/squid/errors/templates/ERR_INVALID_URL
  129. etc/squid/errors/templates/ERR_INVALID_RESP
  130. etc/squid/errors/templates/ERR_INVALID_REQ
  131. etc/squid/errors/templates/ERR_ICAP_FAILURE
  132. etc/squid/errors/templates/ERR_GATEWAY_FAILURE
  133. etc/squid/errors/templates/ERR_FTP_UNAVAILABLE
  134. etc/squid/errors/templates/ERR_FTP_PUT_MODIFIED
  135. etc/squid/errors/templates/ERR_FTP_PUT_ERROR
  136. etc/squid/errors/templates/ERR_FTP_PUT_CREATED
  137. etc/squid/errors/templates/ERR_FTP_NOT_FOUND
  138. etc/squid/errors/templates/ERR_FTP_FORBIDDEN
  139. etc/squid/errors/templates/ERR_FTP_FAILURE
  140. etc/squid/errors/templates/ERR_FTP_DISABLED
  141. etc/squid/errors/templates/ERR_FORWARDING_DENIED
  142. etc/squid/errors/templates/ERR_ESI
  143. etc/squid/errors/templates/ERR_DNS_FAIL
  144. etc/squid/errors/templates/ERR_DIR_LISTING
  145. etc/squid/errors/templates/ERR_CONNECT_FAIL
  146. etc/squid/errors/templates/ERR_CONFLICT_HOST
  147. etc/squid/errors/templates/ERR_CANNOT_FORWARD
  148. etc/squid/errors/templates/ERR_CACHE_MGR_ACCESS_DENIED
  149. etc/squid/errors/templates/ERR_CACHE_ACCESS_DENIED
  150. etc/squid/errors/templates/ERR_AGENT_WPAD
  151. etc/squid/errors/templates/ERR_AGENT_CONFIGURE
  152. etc/squid/errors/templates/ERR_ACL_TIME_QUOTA_EXCEEDED
  153. etc/squid/errors/templates/ERR_ACCESS_DENIED
  154. etc/squid/errors/TRANSLATORS
  155. etc/squid/errors/COPYRIGHT
  156. @comment share/man/man8/ext_sql_session_acl.8.gz
  157. @comment libexec/squid/ext_sql_session_acl
  158. @comment share/man/man8/ext_wbinfo_group_acl.8.gz
  159. @comment libexec/squid/ext_wbinfo_group_acl
  160. @comment libexec/squid/basic_smb_auth.sh
  161. @comment libexec/squid/basic_smb_auth
  162. @comment share/man/man8/basic_sasl_auth.8.gz
  163. @comment libexec/squid/basic_sasl_auth
  164. libexec/squid/basic_nis_auth
  165. @comment share/man/man8/ext_ldap_group_acl.8.gz
  166. @comment share/man/man8/ext_edirectory_userip_acl.8.gz
  167. @comment share/man/man8/basic_ldap_auth.8.gz
  168. @comment libexec/squid/ext_ldap_group_acl
  169. @comment libexec/squid/ext_edirectory_userip_acl
  170. @comment libexec/squid/digest_ldap_auth
  171. @comment libexec/squid/digest_edirectory_auth
  172. @comment libexec/squid/basic_ldap_auth
  173. share/man/man8/negotiate_kerberos_auth.8.gz
  174. libexec/squid/negotiate_wrapper_auth
  175. libexec/squid/negotiate_kerberos_auth_test
  176. libexec/squid/negotiate_kerberos_auth
  177. @comment @comment share/man/man8/ext_kerberos_sid_group_acl.8.gz
  178. @comment @comment libexec/squid/ext_kerberos_sid_group_acl
  179. @comment @comment libexec/squid/ext_kerberos_ldap_group_acl
  180. @comment @comment libexec/squid/cert_tool
  181. @sample etc/squid/squid.conf.sample
  182. @sample etc/squid/mime.conf.sample
  183. @sample etc/squid/errorpage.css.sample
  184. @sample etc/squid/cachemgr.conf.sample
  185. @dir(squid,squid,750) /var/squid/cache
  186. @dir(squid,squid,750) /var/squid
  187. @dir(squid,squid,750) /var/run/squid
  188. @dir(squid,squid,750) /var/log/squid
  189. @owner
  190. @group
  191. @mode
Collapse this list.
Dependency lines:
  • squid>0:www/squid
Conflicts:
CONFLICTS:
  • squid-devel
To install the port:
cd /usr/ports/www/squid/ && make install clean
To add the package, run one of these commands:
  • pkg install www/squid
  • pkg install squid
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.
PKGNAME: squid
Flavors: there is no flavor information for this port.
distinfo:
TIMESTAMP = 1718125704 SHA256 (squid-6.10.tar.xz) = 0b07b187e723f04770dd25beb89aec12030a158696aa8892d87c8b26853408a7 SIZE (squid-6.10.tar.xz) = 2558208

Packages (timestamps in pop-ups are UTC):
squid
ABIaarch64amd64armv6armv7i386powerpcpowerpc64powerpc64le
FreeBSD:13:latest6.106.104.136.106.10-4.13-
FreeBSD:13:quarterly6.106.105.96.106.106.66.66.6
FreeBSD:14:latest6.106.105.76.106.105.9-5.9
FreeBSD:14:quarterly6.106.10-6.106.106.66.66.6
FreeBSD:15:latest6.106.10n/a6.10n/a6.66.66.7
Dependencies
NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
Build dependencies:
  1. gmake>=4.4.1 : devel/gmake
  2. perl5>=5.36<5.37 : lang/perl5.36
Runtime dependencies:
  1. perl5>=5.36<5.37 : lang/perl5.36
This port is required by:
for Run
  1. www/rejik
  2. www/squidguard

Deleted ports which required this port:

Expand this list of 6 deleted ports
  1. misc/instant-server*
  2. www/bannerfilter*
  3. www/dansguardian*
  4. www/dansguardian-devel*
  5. www/squirm*
  6. www/videocache*
  7. Collapse this list of deleted ports.
* - deleted ports are only shown under the This port is required by section. It was harder to do for the Required section. Perhaps later...

Configuration Options:
===> The following configuration options are available for squid-6.10: ARP_ACL=on: ARP/MAC/EUI based authentification CACHE_DIGESTS=on: Use cache digests DEBUG=off: Build with extended debugging support DELAY_POOLS=on: Delay pools (bandwidth limiting) DOCS=on: Build and/or install documentation ECAP=off: Loadable content adaptation modules ESI=off: ESI support EXAMPLES=on: Build and/or install examples FOLLOW_XFF=on: Support for the X-Following-For header FS_AUFS=on: AUFS (threaded-io) support FS_DISKD=on: DISKD storage engine controlled by separate service FS_ROCK=on: ROCK storage engine HTCP=on: HTCP support ICAP=on: the ICAP client ICMP=on: ICMP pinging and network measurement IDENT=on: Ident lookups (RFC 931) IPV6=on: IPv6 protocol support KQUEUE=on: Kqueue(2) support LARGEFILE=on: Support large (>2GB) cache and log files LAX_HTTP=on: Do not enforce strict HTTP compliance NETTLE=off: Nettle MD5 algorithm support SNMP=on: SNMP support SSL=on: SSL gatewaying support SSL_CRTD=on: Use ssl_crtd to handle SSL cert requests STACKTRACES=off: Enable automatic backtraces on fatal errors TDB=off: TrivialDB support required for session and time quota external helpers VIA_DB=on: Forward/Via database WCCP=on: Web Cache Coordination Protocol WCCPV2=on: Web Cache Coordination Protocol v2 ====> Authentication helpers AUTH_LDAP=off: Install LDAP authentication helpers AUTH_NIS=on: Install NIS/YP authentication helpers AUTH_SASL=off: Install SASL authentication helpers AUTH_SMB=off: Install SMB auth. helpers (req. Samba) AUTH_SQL=off: Install SQL based auth ====> GSSAPI Security API support: you have to select exactly one of them GSSAPI_NONE=off: Disable GSSAPI support GSSAPI_BASE=on: GSSAPI support via base system (needs Kerberos) GSSAPI_HEIMDAL=off: GSSAPI support via security/heimdal GSSAPI_MIT=off: GSSAPI support via security/krb5 ====> Options available for the radio FW: you can only select none or one of them TP_IPF=off: Transparent proxying with IPFilter TP_IPFW=on: Transparent proxying with IPFW TP_PF=off: Transparent proxying with PF ===> Use 'make config' to modify these settings
Options name:
www_squid
USES:
compiler:c++11-lib cpe gmake localbase:ldflags perl5 shebangfix tar:xz gssapi ssl
pkg-message:
For install:
o You can find the configuration files for this package in the directory /usr/local/etc/squid. o The default cache directory is /var/squid/cache/. The default log directory is /var/log/squid/. Note: You must initialize new cache directories before you can start squid. Do this by running "squid -z" as 'root' or 'squid'. If your cache directories are already initialized (e.g. after an upgrade of squid) you do not need to initialize them again. o When using DiskD storage scheme remember to read documentation: http://wiki.squid-cache.org/Features/DiskDaemon and alter your kern.ipc defaults in /boot/loader.conf. DiskD will not work reliably without this. Last recomendations were: kern.ipc.msgmnb=8192 kern.ipc.msgssz=64 kern.ipc.msgtql=2048 o The pre-translated error pages are no longer included into the port. If you need them install www/squid-langpack port as well. o The default configuration will deny everyone but the local host and local networks as defined in RFC 1918 for IPv4 and RFCs 4193 and 4291 for IPv6 access to the proxy service. Edit the "http_access allow/deny" directives in /usr/local/etc/squid/squid.conf to suit your needs. o If AUTH_SQL option is set, please, don't forget to install one of following perl modules depending on database you like: databases/p5-DBD-mysql (MySQL) databases/p5-DBD-mysql4 (MariaDB) databases/p5-DBD-Pg databases/p5-DBD-SQLite To enable Squid, set squid_enable=yes in either /etc/rc.conf, /etc/rc.conf.local or /etc/rc.conf.d/squid Please see /usr/local/etc/rc.d/squid for further details. Note: If you just updated your Squid installation from an earlier version, make sure to check your Squid configuration against the 3.4 default configuration file /usr/local/etc/squid/squid.conf.sample. /usr/local/etc/squid/squid.conf.documented is a fully annotated configuration file you can consult for further reference. Additionally, you should check your configuration by calling 'squid -f /path/to/squid.conf -k parse' before starting Squid.
Master Sites:
Expand this list (5 items)
Collapse this list.
  1. http://ca2.squid-cache.org/Versions/v6/
  2. http://www.squid-cache.org/Versions/v6/
  3. http://www1.il.squid-cache.org/Versions/v6/
  4. http://www2.gr.squid-cache.org/Versions/v6/
  5. http://www2.pl.squid-cache.org/Versions/v6/
Collapse this list.
Port Moves
  • port moved here from www/squid3 on 2021-09-30
    REASON: Has expired: Unsupported by upstream

Number of commits found: 299 (showing only 99 on this page)

«  1 | 2 | 3 

Commit History - (may be incomplete: for full details, see links to repositories near top of page)
CommitCreditsLog message
2.5.12_1
20 Dec 2005 16:01:15
Original commit files touched by this commit This port version is marked as vulnerable.
garga search for other commits by this committer
- Integrate vendor patch to fix a problem with the SMB helper when
  --enable-ntlm-fail-open was specified as an additional configuration
  option (squid bug #1022).
  The port does not enable this option by default; document it, while at it.
- Add SHA256 checksum for the squid tarball
- Integrate ICAP client support based upon the icap project's CVS repository,
  turned off by default.
  To activate it, build the port with WITH_SQUID_ICAP defined or rerun
  'make config'.
- Bump PORTREVISION

PR:             ports/90688
Submitted by:   maintainer
2.5.12
01 Nov 2005 14:05:59
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
Update to 2.5.STABLE12

PR:             ports/88327
Submitted by:   maintainer
2.5.11_3
19 Oct 2005 12:21:11
Original commit files touched by this commit This port version is marked as vulnerable.
garga search for other commits by this committer
Integrate the following vendor patches as published on
<http://www.squid-cache.org/Versions/v2/2.5/bugs/>:

- document that tcp_outgoing_xxx works badly in combination with
  server_persistent_connections (squid bug #454)
- add more tracing in test mode of squid_ldap_auth (squid bug #1395)
- fix breakage of accel_single_host when combined with
  server_persistent_connection (squid bug #1402)
- correctly implement the CACHE_HTTP_PORT configuration directive
  (squid bug #1403)
- fix the problem that CNAME addresses were remembered with a wrong TTL
  (squid bug #1404)
- fix incorrect handling of squid-internal-dynamic/netdb in conjunction with
  httpd_accel/transparent proxies (squid bug #1410)
- properly revalidate the cache on HEAD requests (squid bug #1411)
- correct handling of Set-Cookie headers on cache refreshes (squid bug #1419)
- fix a vulnerability in the FTP parsing code (squid bug #1426)

PR:             ports/87637
Submitted by:   maintainer
2.5.11_2
06 Oct 2005 18:47:55
Original commit files touched by this commit This port version is marked as vulnerable.
mnag search for other commits by this committer
Fix smb_auth helper

PR:             86850
Pointed by:     Dean M. Phillips <dmphilli@gmail.com>
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
2.5.11_1
28 Sep 2005 12:55:57
Original commit files touched by this commit This port version is marked as vulnerable.
garga search for other commits by this committer
Integrate a patch from
<http://www.squid-cache.org/Versions/v2/2.5/bugs/>:
- fix delay pools behaviour which was broken by the patch for squid bug #500,
  introduced in squid-2.5.10_6 (squid bug #1405)

PR:             ports/86669
Submitted by:   maintainer
2.5.11
22 Sep 2005 17:28:33
Original commit files touched by this commit This port version is marked as vulnerable.
garga search for other commits by this committer
- Update to 2.5-STABLE11
- Adapt the follow-XFF patches to the changes to squid's sources

PR:             ports/86472
Submitted by:   maintainer
2.5.10_7
16 Sep 2005 17:39:02
Original commit files touched by this commit This port version is marked as vulnerable.
pav search for other commits by this committer
Update the NTLM-scheme patch to version 2. The first version of the patch is
broken (cf <http://www.squid-cache.org/bugs/show_bug.cgi?id=1391>).

PR:             ports/86215
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
2.5.10_6
15 Sep 2005 20:10:59
Original commit files touched by this commit This port version is marked as vulnerable.
pav search for other commits by this committer
- Integrate the following vendor patches:
  - LDAP helpers do not work with TLS (-Z option)
    (squid bug #1389)
  - Incorrect store dir selection debug message on objects >2G
    (squid bug #1343)
  - Enums cannot be assumed to be signed ints
    (squid bug #1343)
  - Allow leaving core dumps on Linux
    (squid bug #1335)
  - Do not let clients bypass delay pools by faking a cache hit
    (squid bug #500)
  - Fix problems regarding CONNECT requests when squid is configured with
    "pipeline_prefetch on"
  - Fix a possible DOS condition which may be triggered by certain NTLM
    authentication requests
    (squid bug #1391)
- Remove patching relevant to recently removed pf from ports option

PR:             ports/86179
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
2.5.10_5
14 Sep 2005 23:27:00
Original commit files touched by this commit This port version is marked as vulnerable.
pav search for other commits by this committer
- Remove dependencies on security/pf, it was removed. pf is in base since
  502106

Pointy hat to:  pav
2.5.10_5
04 Sep 2005 07:57:55
Original commit files touched by this commit This port version is marked as vulnerable.
sem search for other commits by this committer
- Fix somewhat messed up titles in FTP listings (squid bug #1220)
- FTP listings use "BASE HREF" much more than necessary (squid bug #1204)
- Cleanups for 64bit architectures (squid bug #1316)
- Allow wb_ntlm_auth to run more silent (squid bug #518)
- Add a new 'mail_program' configuration option
- Fix a possible denial of service condition regarding sslConnectTimeout
  (squid bug #1355, Secunia Advisory SA16674)
- Avoid a possible assertion failure in StatHist.c (squid bug #1325)
- Fix issues regarding chroot'ed installations on 'squid -k reconfigure'
  (squid bug #1331)
- Make URLs in error pages more consistent and less confusing (squid bug #1342)
- Fix compilation when _FORTIFY_SOURCE is defined (squid bug #1344)
- Fix handling of unexpected 250 replies from certain odd FTP servers
  (squid bug #1348)
- Add Greek error pages (squid bug #1351)
- Fix a possible denial of service condition with regards to aborted requests
  (squid bug #1368)
- Fix the -U option of squid_ldap_auth (squid bug #1370)
- Fix the output of the SNMP cacheClientTable for IP adresses that consist of
  16 digits (squid bug #1375)
- Make the From: field of mails sent from squid configurable to avoid
  mails getting lost due to spam filtering (squid bug #1380)

PR:             ports/85688
Submitted by:   maintainer
2.5.10_4
30 Jun 2005 19:25:10
Original commit files touched by this commit This port version is marked as vulnerable.
flz search for other commits by this committer
- Update transparent patch.

PR:             ports/82838
Submitted by:   maintainer
2.5.10_3
29 Jun 2005 20:41:27
Original commit files touched by this commit This port version is marked as vulnerable.
jylefort search for other commits by this committer
Update the chroot vendor patch to version 2, cf
http://www.squid-cache.org/Versions/v2/2.5/bugs/#squid-2.5.STABLE10-chroot

PR:             ports/82739
Submitted by:   maintainer
2.5.10_2
28 Jun 2005 02:38:39
Original commit files touched by this commit This port version is marked as vulnerable.
ahze search for other commits by this committer
- Integrate the following vendor patches as published on
  <http://www.squid-cache.org/Versions/v2/2.5/bugs/>:

  + double content-length often harmless (squid bug #1305)
  + update spanish error pages
  + squid internal icons were served with slightly incorrect headers
    (squid bug #1275)
  + squid -k fails in combination with chroot (squid bug #1307)
  + core dump with --enable-ipf-transparent if access to NAT device is denied
    (squid bug #1313)
  + http_accel_single_host incompatible with redirection (squid bug #1314)
  + squid -k reconfigure caused data corruption when a cache_dir type had been
    changed (squid bug #1308)
  + SNMP getnext failed if the given OID was outside the squid MIB (squid bug
    #1317)

PR:             ports/82703
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
2.5.10_1
22 May 2005 13:49:22
Original commit files touched by this commit This port version is marked as vulnerable.
jylefort search for other commits by this committer
- Read cachemgr.conf rather than cachemgr.conf.default
- Add a missing %SUBDIR% in MASTER_SITES

PR:             ports/81319
Submitted by:   maintainer
2.5.10
19 May 2005 14:17:01
Original commit files touched by this commit This port version is marked as vulnerable.
pav search for other commits by this committer
- Update Squid to 2.5.STABLE10

PR:             ports/81213
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
2.5.9_5
27 Apr 2005 07:31:36
Original commit files touched by this commit This port version is marked as vulnerable.
vs search for other commits by this committer
- update distinfo for the updated syslog patch
- remove local patch that is now incorporated into the corresponding
  vendor patch (with slightly different wording)

PR:             ports/80367
Submitted by:   maintainer
2.5.9_5
21 Apr 2005 08:57:57
Original commit files touched by this commit This port version is marked as vulnerable.
leeym search for other commits by this committer
- Update distinfo for the 2GB patch, this includes a fix for
  squid bugs #1283, 1287 and 1288 (assertion failed in store_client.c:343).
  (already committed)

- Bump portrevision as a datapoint for this bugfix.

PR:             80163
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
2.5.9_4
20 Apr 2005 23:53:28
Original commit files touched by this commit This port version is marked as vulnerable.
leeym search for other commits by this committer
- according web page, the patch file is rerolled at 2005-04-20 14:59 again
  http://www.squid-cache.org/Versions/v2/2.5/bugs/#squid-2.5.STABLE9-2GB

Noticed by:     kris
2.5.9_4
18 Apr 2005 07:09:02
Original commit files touched by this commit This port version is marked as vulnerable.
leeym search for other commits by this committer
- the patch is repacked at 2005-04-18 00:57, after maintainer submit PR 80028

- diff is listed below:

--- /tmp/squid-2.5.STABLE9-2GB.patch    Mon Apr  4 17:09:16 2005
+++ /usr/ports/distfiles/squid2.5/squid-2.5.STABLE9-2GB.patch   Mon Apr 18
08:57:57 2005
@@ -3000,7 +3000,7 @@
       }
       /* there are some things we cannot do yet */
 Index: squid/src/protos.h
-diff -c squid/src/protos.h:1.420.2.28 squid/src/protos.h:1.420.2.32
+diff -c squid/src/protos.h:1.420.2.28 squid/src/protos.h:1.420.2.30
 *** squid/src/protos.h:1.420.2.28      Fri Mar 18 17:01:52 2005
 --- squid/src/protos.h Sat Mar 26 10:36:01 2005
 ***************
(Only the first 15 lines of the commit message are shown above View all of this commit message)
2.5.9_4
18 Apr 2005 01:05:35
Original commit files touched by this commit This port version is marked as vulnerable.
leeym search for other commits by this committer
Integrate the following vendor patches as published on
<http://www.squid-cache.org/Versions/v2/2.5/bugs/>:

- Correct several minor aufs issues (squid bug #671)
- Basic authentification fails when login+password totalled to more than
  64 characters (squid bug #1171)
- Fix an assertion that could occur when traffic other than HTTPS was
  tunneled through squid via the CONNECT method (squid bug #1269)
- Make the --disable-hostname-check configuration option actually work
  (squid bug #1270)
- Fix aufs warning about open filedescriptors when the cache was shut down
  (squid bug #671)
- Allow squid to process requests for files larger than 2GB in size
  (squid bug #437)
(Only the first 15 lines of the commit message are shown above View all of this commit message)
2.5.9_3
15 Mar 2005 22:50:50
Original commit files touched by this commit This port version is marked as vulnerable.
ahze search for other commits by this committer
- Chase checksum of the updated pid_t patch

PR:             ports/78897
Submitted by:   maintainer
2.5.9_2
13 Mar 2005 19:32:53
Original commit files touched by this commit This port version is marked as vulnerable.
ahze search for other commits by this committer
- Integrate the following vendor patches as published on
  <http://www.squid-cache.org/Versions/v2/2.5/bugs/>:
  + Handle odd data formats (squid bug #321)
  + reload_into_ims fails to revalidate negatively cached entries
    (squid bug #1159)
  + Clarify delay_access function (squid bug #1245)
  + Check several squid.conf directives for int overflows (squid bug #1247)
  + Use memset(3) instead of bzero(3) (squid bug #1256)
  + Fix compile warnings due to pid_t not being an int (squid bug #1257)
  + Fix incorrect use of ctype functions (squid bug #1259)
  + Defer digest fetch if the peer is not allowed to be used (squid bug #1262)
  + Extend relaxed_header_parser to work around "excess data from" errors from
    many major web servers (squid bug #1265)

- Enable IPFilter based transparent proxying on all FreeBSD versions where
  IPFilter headers are part of the base system (i.e. RELENG_4 < 4.7-RELEASE,
  RELENG_5 and 6-CURRENT). Create a new OPTION WITH_SQUID_IPFILTER for this
  purpose. Thanks to sem@ for keeping track of this issue!

PR:             ports/78780
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
2.5.9_1
08 Mar 2005 23:27:46
Original commit files touched by this commit This port version is marked as vulnerable.
pav search for other commits by this committer
Integrate the following vendor patches as published on
- correct a race condition related to the Set-Cookie header
- correct the FTP parser with regards to the EPLF format
  (squid bug #1252)
- correct FTP listing output when the URL was requested without a trailing
  slash (squid bug #1253)
- make ACL configuration errors fatal (squid bug #1255)

PR:             ports/78446
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
2.5.9
26 Feb 2005 15:56:49
Original commit files touched by this commit This port version is marked as vulnerable.
pav search for other commits by this committer
- Update to 2.5.STABLE9

PR:             ports/78079
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
2.5.8_1
20 Feb 2005 17:45:36
Original commit files touched by this commit This port version is marked as vulnerable.
pav search for other commits by this committer
* Vendor patches:
- fix some cross-platform build format warnings
- allow high characters in generated FTP and Gopher directory listings
  (squid bug #1220)
  - cleanup generation of FTP URLs
  - relax the newly introduced strict HTTP parser slightly to work around some
    more malformed HTTP responses (squid bug #1242)

PR:             ports/77779
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
2.5.8
13 Feb 2005 17:21:02
Original commit files touched by this commit This port version is marked as vulnerable.
sem search for other commits by this committer
- Update to 2.5-STABLE8
- Integrate a vendor patch from:
  http://www.squid-cache.org/Versions/v2/2.5/bugs/
  it fixes a major problem regarding the handling of invalid DNS responses

PR:             ports/77423
Submitted by:   maintainer
2.5.7_13
10 Feb 2005 23:15:08
Original commit files touched by this commit This port version is marked as vulnerable.
pav search for other commits by this committer
- Update header_parsing.patch

PR:             ports/77360
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
2.5.7_12
08 Feb 2005 15:11:56
Original commit files touched by this commit This port version is marked as vulnerable.
nectar search for other commits by this committer
Integrate the following vendor patch as published on
<http://www.squid-cache.org/Versions/v2/2.5/bugs/>:

 - Address HTTP protocol mismatch related to oversized reply headers and
   enhance cache.log on reply header parsing failures (squid bug #1216)
 - correct the search request generated by the LDAP authentication helper
 - fix a race within the NTLM authentication mechanism (squid bug #1127)
 - fix handling of failed PUT/POST requests (squid bug #1224)
 - fix problems with persistent server connections after failed PUT/POST
   requests (squid bug #1122)
 - improve handling of forged WCCP packets (squid bug #1225)

PR:             ports/76967
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
Security:      
http://vuxml.freebsd.org/bfda39de-7467-11d9-9e1e-c296ac722cb3.html
2.5.7_11
01 Feb 2005 14:11:22
Original commit files touched by this commit This port version is marked as vulnerable.
sem search for other commits by this committer
- Fix fetching.
  * The response_splitting patch has been updated
    to correct a problem with cache digests.

PR:             ports/76889
Submitted by:   maintainer
2.5.7_10
29 Jan 2005 21:49:20
Original commit files touched by this commit This port version is marked as vulnerable.
sem search for other commits by this committer
- Integrate a vendor patch against a buffer overflow in the WCCP handling,
  see
<http://www.squid-cache.org/Versions/v2/2.5/bugs/#squid-2.5.STABLE7-wccp_buffer_overflow>
  and <http://www.squid-cache.org/Advisories/SQUID-2005_3.txt>.

PR:             ports/76827
Submitted by:   maintainer
2.5.7_9
29 Jan 2005 10:42:13
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
Sync follow-XFF with the latest vendor patch.

PR:             ports/76801
Submitted by:   maintainer
2.5.7_9
26 Jan 2005 17:56:25
Original commit files touched by this commit This port version is marked as vulnerable.
sem search for other commits by this committer
- Integrate vendor patches as published on
  <http://www.squid-cache.org/Versions/v2/2.5/bugs/>:
  + Reject malformed HTTP requests and responses that conflict with the HTTP
    specifications
    This issue is qualified as a security issue by the vendor.
  + PURGE is allowed to delete internal objects (squid bug #1112)
  + Disable Path-MTU discovery on intercepted requests (squid bug #1154)

  (VuXML vid=b4d94fa0-6e38-11d9-9e1e-c296ac722cb3)

- Clean up and correct package list generation. Now installed files
  and directories are visible via PLIST_FILES and PLIST_DIRS.
- Don't claim that squid related files or directories are still present
  after deinstallation when in fact they are not.
- Add "-g" to CFLAGS when WITH_SQUID_STACKTRACES is defined to make this
  option actually useful.

PR:             ports/76628
Submitted by:   maintainer
2.5.7_8
22 Jan 2005 09:31:33
Original commit files touched by this commit This port version is marked as vulnerable.
edwin search for other commits by this committer
[Maintainer/security] www/squid: protect against HTTP resonse split
attack and other patches

    Integrate vendor patches as published on
    <http://www.squid-cache.org/Versions/v2/2.5/bugs/>:

    - FTP data connection fails on some FTP servers when requesting
      a directory without a trailing slash (squid bug #1194)

    - Icons fail to load on non-anonymous FTP when using the
      short_icons_url configuration directive (squid bug #1203)

    - Strengthen squid against HTTP response splitting cache pollution
      attacks (squid bug #1200), classified as security issue by
      the vendor
(Only the first 15 lines of the commit message are shown above View all of this commit message)
2.5.7_7
19 Jan 2005 10:58:40
Original commit files touched by this commit This port version is marked as vulnerable.
edwin search for other commits by this committer
[Maintainer/Security] www/squid: integrate vendor patches

        Integrate vendor patches as published on
        <http://www.squid-cache.org/Versions/v2/2.5/bugs/>:

        - Sanity check usernames in squid_ldap_auth (squid bug #1187),
          classified as minor security issue by the vendor, see below for VuXML
          information
        - FQDN names truncated on compressed DNS responses (squid bug #1136)
        - Internal DNS memory leak on malformed responses (squid bug #1197)

PR:             ports/76364
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de>
2.5.7_6
12 Jan 2005 22:37:29
Original commit files touched by this commit This port version is marked as vulnerable.
simon search for other commits by this committer
- Integrate vendor patches as published on
  <http://www.squid-cache.org/Versions/v2/2.5/bugs/> for the following
  issues:
  + Prevent a possible denial of service attack via WCCP messages (squid bug
    #1190), classified as security issue by the vendor
  + Fix a buffer overflow in the Gopher to HTML conversion routine (squid bug
    #1189), classified as security issue by the vendor
  + Fix a null pointer access and plug memory leaks in the fake_auth NTLM
    helper (squid bug #1183) (this helper app is not installed by default by
    the port)
  + Stop closing open filedescriptors beyond stdin, stdout and stderr on
    startup (squid bug #1177)

- Unbreak the port on NO_NIS systems (thanks to "Alexander <freebsd AT
  nagilum.de>" for reporting this)

- Document the two security issues in VuXML.

PR:             ports/76173
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
Approved by:    erwin (mentor)
2.5.7_5
29 Dec 2004 08:59:49
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
Patch was rerolled because of some bug fixes.

Approved by:    maintainer
2.5.7_5
23 Dec 2004 12:15:30
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
Handle empty ACL definitions properly.

PR:             ports/75403
Submitted by:   maintainer
2.5.7_4
08 Dec 2004 23:16:53
Original commit files touched by this commit This port version is marked as vulnerable.
sem search for other commits by this committer
Integrate the following vendor patches as published on
http://www.squid-cache.org/Versions/v2/2.5/bugs/:

- a malformed hostname can cause squid to return random data as error messages,
  possibly leaking internal information from former requests (squid bug #1143).
  (This is classified as a minor security issue by the squid developers, so
  maintainer cc'ed security-team@. See VuXML entry.)
- the "httpd_accel_port 0" directive does not work on its own (squid bug #1121)
- fix crashes occuring when using cachemgr's "vm_objects" operation (squid
  bug #1149)

PR:             ports/74859
Submitted by:   maintainer
2.5.7_3
14 Nov 2004 09:55:41
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
- fix shutting down of helper applications on reconfigure or
  logrotation (squid bug #1118)
- properly close the client TCP connection when a malformed blank
  HTTP response was received from the server (squid bug #1116)

PR:             ports/73913
Submitted by:   maintainer
2.5.7_2
27 Oct 2004 08:48:52
Original commit files touched by this commit This port version is marked as vulnerable.
sergei search for other commits by this committer
- Integrate the following vendor patches:
  - document the LDAP helpers' -v option
  - correct the implementation of the req_header and resp_header acls
    (the original implementation submitted in squid bug #961 was faulty)
    See <http://www.squid-cache.org/Versions/v2/2.5/bugs/> for further details.
- Bump PORTREVISION

PR:             ports/73154
Submitted by:   Thomas-Martin Seck (maintainer)
2.5.7_1
18 Oct 2004 21:50:20
Original commit files touched by this commit This port version is marked as vulnerable.
sergei search for other commits by this committer
- Integrate a vendor patch that prevents squid from consuming 100%
  CPU for half closed PUT/POST requests (squid bugs #354, 1096).
  See <http://www.squid-cache.org/Versions/v2/2.5/bugs/> for further
  details.
- Adapt the follow_xff patch to changes in some of squid's data
  structures and unbreak the WITH_SQUID_FOLLOW_XFF option.
- Bump PORTREVISION.

PR:             ports/72840
Submitted by:   Thomas-Martin Seck (maintainer)
2.5.7
13 Oct 2004 09:43:48
Original commit files touched by this commit This port version is marked as vulnerable.
sergei search for other commits by this committer
- Update to 2.5-STABLE7; this release fixes a security issue regarding
  the SNMP module
- Remove a patch that is now part of the distribution
- Miscellaneuous small fixes:
  + in squid.sh, make stop_command poll for the squid processes' exit in
    the rcNG case too; this eliminates the need to do this in restart_command
  + make the information regarding rcNG'ness in pkg-install easier to read
  + install unstripped binaries if WITH_SQUID_STACKTRACES is defined

PR:             ports/72581
Submitted by:   Thomas-Martin Seck (maintainer)
2.5.6_12
11 Oct 2004 07:43:34
Original commit files touched by this commit This port version is marked as vulnerable.
sergei search for other commits by this committer
- Unbreak fetching squid again:
  The recently updated client_db_gc patch has been reissued again;
  according to squid CVS to "finetune the client db garbage collection
  interval".  Update distinfo accordingly and bump PORTREVISION.

PR:             ports/72461 [1], ports/72463 [2]
Submitted by:   Sunpoet Po-Chuan Hsieh <sunpoet@sunpoet.net> [1],
                Thomas-Martin Seck (maintainer) [2]
Approved by:    portsmgr (krion)
2.5.6_11
07 Oct 2004 08:42:16
Original commit files touched by this commit This port version is marked as vulnerable.
sergei search for other commits by this committer
- Unbreak fetching:
  The client_db_gc patch contained a wrong debugging information
  and was thus reissued by the vendor.
  Update distinfo accordingly and bump PORTREVISION.

PR:             ports/72387
Submitted by:   Thomas-Martin Seck (maintainer)
Approved by:    portsmgr (krion)
2.5.6_10
02 Sep 2004 06:44:14
Original commit files touched by this commit This port version is marked as vulnerable.
sem search for other commits by this committer
Implement vendor patches for the following issues:
- try to prevent crashes of the digest helper (squid bug #1031)
- correct parsing of the acl_time directive when multiple time specifications
  are given (squid bug #1060)
- correct "cachemgr config" output for http_header_* directives
  (squid bug #1056)
- recognize the Content-Disposition header to be able to specify
  http_header_access directives using it (squid bug #961)

See <http://www.squid-cache.org/Versions/v2/2.5/bugs/> for further
information.

Reimplement the rcNG support. See UPDATING for details.

PR:             ports/71260
Submitted by:   maintainer
2.5.6_9
28 Aug 2004 20:51:36
Original commit files touched by this commit This port version is marked as vulnerable.
sem search for other commits by this committer
Integrate vendor patches for the following issues:
- close a memory leak when NTLM authentication without challenge reuse
  is used (squid bug #994)
- close a temporary memory leak when NTLM challenge response reuse is
  enabled (squid bug #910)
- when performing log rotation with 'squid -k rotate' do not crash if a
  swap state file or a cache directory is unwriteable (squid bug #1053)

See <http://www.squid-cache.org/Versions/v2/2.5/bugs/> for further
information.

PR:             ports/71082
Submitted by:   maintainer
2.5.6_8
21 Aug 2004 12:28:56
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
Fix grammatical and whitespace errors in squid.conf.default.

Set supplementary group membership correctly when running squid
as a non-root user and do not ignore the squid_group setting
when starting squid as root (squid bug #1021)

Enable the external_acl helper protocol to handle newlines
in the embedded data (squid bug #1038)

PR:             ports/70767
Submitted by:   maintainer
2.5.6_7
20 Aug 2004 13:54:30
Original commit files touched by this commit This port version is marked as vulnerable.
sem search for other commits by this committer
* Integrate a vendor patch for a possible DOS against the NTLM
  authentication helpers, see squid bug #1045.
* Bump PORTREVISION.

PR:             ports/70707
Submitted by:   maintainer
2.5.6_6
11 Aug 2004 19:18:07
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
The ldap_helpers patch has been updated again; see squid bug
#1032 for details.

PR:             ports/70312
Submitted by:   maintainer
2.5.6_5
07 Aug 2004 19:28:16
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
Integrate new vendor patches:
- fix a problem in the heap policy code that could cause memory
  corruption when a {cache,memory}_replacement_policy other
  than the default "lru" was used (squid bug #1009)
- correct quoting of unknown % escape codes when generating
  error pages (squid bug #1030)

PR:             ports/70110
Submitted by:   maintainer
2.5.6_5
29 Jul 2004 23:08:51
Original commit files touched by this commit This port version is marked as vulnerable.
edwin search for other commits by this committer
[Maintainer] www/squid: chase re-issued patch, unbreak fetching

    The concurrent_dns_lookups patch was reissued, update distinfo accordingly.

    See <http://www.squid-cache.org/bugs/show_bug.cgi?id=852> for
    further information.

PR:             ports/69764
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de>
2.5.6_4
28 Jul 2004 18:56:48
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
- integrate a new version of the LDAP update patch, the
  problems with the previous version are hopefully fixed (squid bug #1018)
- integrate a new NTLM authentication patch to address a problem with
  truncating NTLM authentication blobs (squid bug #1016)
- remove two patches which were withdrawn (see squid bugs #910
  and 994)

PR:             ports/69719
Submitted by:   maintainer
2.5.6_3
28 Jul 2004 02:10:54
Original commit files touched by this commit This port version is marked as vulnerable.
ijliao search for other commits by this committer
Fix a bug that disallowed explicit unsetting of the squid_flags variable.

PR:             69670
Submitted by:   maintainer
2.5.6_3
25 Jul 2004 16:30:43
Original commit files touched by this commit This port version is marked as vulnerable.
pav search for other commits by this committer
- Tweaks to RC script
- Fix dynamic plist generation to not include files that happen to be
  in target directories. This prevents their removal on deinstallation
  or upgrade.

PR:             ports/69552, ports/69266
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
2.5.6_2
24 Jul 2004 16:03:45
Original commit files touched by this commit This port version is marked as vulnerable.
sem search for other commits by this committer
Remove ldap_helpers.patch

PR:             ports/69487 (partially)
Submitted by:   maintainer
2.5.6_2
23 Jul 2004 12:25:45
Original commit files touched by this commit This port version is marked as vulnerable.
eik search for other commits by this committer
Remove squid-2.5.STABLE6-ldap_helpers.patch until it is fixed.
cf <http://www.squid-cache.org/bugs/show_bug.cgi?id=1018>

Do not bump PORTREVISION, since
a) ldap is not in the default configuration
b) we hope to have that fixed soon

PR:             69465
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
2.5.6_2
22 Jul 2004 06:09:06
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
The ldap_helpers patch has been rerolled (a missing return
statement was inserted).

PR:             ports/69408
Submitted by:   maintainer
2.5.6_1
19 Jul 2004 21:25:39
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
Integrate the following vendor patches as published on
http://www.squid-cache.org/Versions/v2/2.5/bugs/:

- fix a memory leak in client_db (squid bug #833)
- add delay pools information to cachemgr's active_requests
  page
- make basic authentication operate case insensitive by
  default, case sensitive operation can be enabled via
  squid.conf
- log if cache files cannot be created for some reason
- make sure that a HTTP HEAD request does not return stale data
- correctly log partial hits as TCP_MISS instead of TCP_HIT
- fix memory leaks within the NTLM authentication helper
- handle the request_header_max_size directive correctly
- avoid creating a large number of queued DNS lookups for the
  same domain in case of DNS problems
- update LDAP helper

PR:             ports/69307
Submitted by:   maintainer
2.5.6
14 Jul 2004 18:33:12
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
Update to 2.5-STABLE6

PR:             ports/69060
Submitted by:   maintainer
2.5.5_12
28 Jun 2004 16:56:04
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
Fix the patch that simulates the autotools bootstrap for the
follow-xff-patchset (thanks to Michael Ranner for spotting the
problem and testing the fix). While at it, wordsmith the
comments in the patch.

Use the official patch for the NTLM auth helper vulnerability,
see <http://www.squid-cache.org/Versions/v2/2.5/bugs/> for
details.

Build install the SMB basic authentication helpers by default

PR:             ports/68448
Submitted by:   maintainer
2.5.5_11
18 Jun 2004 11:49:45
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
Correct the patch for the NTLM helper vulnerability according
to <http://www.squid-cache.org/bugs/show_bug.cgi?id=998>

Apply some cleanups:
 + prefer PATCHDIR over FILEDIR when referring patches
 + remove unnecessary quotes
 + move all substitution tasks to the post-patch target
 + use "${FALSE}" instead of "exit 1" to generate error 1 from a shell

Bump PORTREVISION

PR:             ports/68078
Submitted by:   maintainer
2.5.5_10
10 Jun 2004 15:40:44
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
- Support systems where pf(4) must be installed from ports (see
  ports/67724, submitted by Michal F. Hanula)
- Change ": foo=${foo:=bar}" into "foo=${foo:-bar}" to make the
  shell scripts easier to read and understand
- Correct credits for the recently published NTLM auth
  vulnerability and fix a nearby braino, too
- Bump PORTREVISION

PR:             ports/67797
Submitted by:   maintainer
2.5.5_9
09 Jun 2004 20:34:00
Original commit files touched by this commit This port version is marked as vulnerable.
des search for other commits by this committer
Add a couple of patches, including one for a buffer overflow in the NTLM
authentication helper.

PR:             ports/67764
Submitted by:   maintainer
2.5.5_8
02 Jun 2004 18:10:02
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
- correct report of available cache memory for cache sizes >2GB
  in cache.log (squid bug #570)
- correct the least-load store directory selection algorithm
  for the cache directories using the "ufs" storage scheme (squid bug #676)
- correct the type of the cacheCurrentUnlinkRequests SNMP variable
  (squid bug #946)
- include client IP addresses in debug output (squid bug #948)
- correct the HTML doctype for autogenerated FTP directory listings
  (squid bug #969)
- if no resolv.conf is present the dns_servers variable now defaults
  to 127.0.0.1 (squid bug #991)
- update the documentation of the MSNT basic authentication helper
  (squid bug #717)

PR:             ports/67495
Submitted by:   maintainer
2.5.5_7
01 May 2004 20:48:47
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
- Add new vendor patches:
  + clarify the meaning of the ERR keyword in digest authentication
  + correct a spelling error in the Turkish ERR_DNS_FAIL error page
    (squid bug #950)
  + fix a problem regarding negatively cached 404 replies with VARY: header
    (squid bug #616)
  + correct a parsing bug which rejected a 'range_offset_limit -1 KB'
    statement in squid.conf (squid bug #968)
- Bump PORTREVISION

PR:             ports/66139
Submitted by:   maintainer
2.5.5_6
28 Apr 2004 19:49:18
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
- Fix plist
- Bump PORTREVISION
- Clean up pkg-deinstall:
  + remove an unnecessary variable
  + replace rmdir -p with two distinct rmdir calls since we
    do not want to delete $PKG_PREFIX too if it happens to be empty

PR:             ports/65918
Submitted by:   maintainer
2.5.5_5
19 Apr 2004 19:47:44
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
- Add a vendor patch to fix an assertion failure that could
  occur in certain rare conditions involving aborted POST/PUT
  requests (squid bug #943)
- Bump PORTREVISION

PR:             ports/65776
Submitted by:   maintainer
2.5.5_4
18 Apr 2004 17:04:26
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
- integrate a vendor patch to fix a segfault that occured when
  submitting a blank username in digest authentication (squid bug #954)
  and bump PORTREVISION
- follow Duane Wessel's squid book and use "storage scheme"
  instead of "store type"
- remove trailing whitespace
- no longer hardcode the path of the nologin binary in
  pkg-install and re-wrap pw(8)'s arguments for better readability

PR:             ports/65723
Submitted by:   maintainer
2.5.5_3
12 Apr 2004 13:27:47
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
- Integrate a vendor patch that fixes an assertion caused by
  truncated DNS replies (squid bug #962)
- Bump PORTREVISION

PR:             ports/65458
Submitted by:   maintainer
2.5.5_2
09 Apr 2004 18:54:13
Original commit files touched by this commit This port version is marked as vulnerable.
krion search for other commits by this committer
- Integrate two new vendor patches, please see
  <http://www.squid-cache.org/Versions/v2/2.5/bugs/> for details
- Correct OpenSSL support and, while at it, clean up CFLAGS and
  LDFLAGS handling (thanks to dinoex for lots of helpful advice!).
- better be safe than sorry and pass PTHREAD_CFLAGS through in
  case we are compiling with threads
- try to remove the errorpages directory silently since user
  defined directories might legitimately be present
- clean up shell scripting:
  + do not use too many variables
  + use /bin/sh's features instead of external commands

PR:             ports/65356
Submitted by:   maintainer
2.5.5_1
01 Apr 2004 14:12:37
Original commit files touched by this commit This port version is marked as vulnerable.
pav search for other commits by this committer
- Integrate four new vendor patches applicable to FreeBSD, see
  http://www.squid-cache.org/Versions/v2/2.5/bugs/ for details
- Fix OPTIONS parser to handle a default-to-on option correctly
  when either the portoptions file does not exist and/or is not read
  (i.e. the PACKAGE_BUILDING and BATCH cases)
- use IGNORE instead of .error to abort
- use ${ID} consistently
- inform the user of squid.sh's rcNG-ness when /etc/rc.subr is present
  at installation time
- bump PORTREVISION

PR:             ports/64946
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (maintainer)
2.5.5
17 Mar 2004 07:06:46
Original commit files touched by this commit This port version is marked as vulnerable.
sergei search for other commits by this committer
- update to squid-2.5.STABLE5, including two vendor patches issued so far
- provide more OPTIONS, including (untested) support for pf(4)
- integrate the follow-XFF-patch from devel.squid-cache.org (submitted by
  Michael Ranner), this should improve interaction with dansguardian
- use id 100 for the squid pseudo user instead of choosing the first free
  id greater than 3127, a behaviour introduced with PORTVERSION 2.5.4_6.
  Provide a 'changeuser' target to make migration from a high id to id 100
  possible (requested by Kris Kennaway)
- don't let the port CONFLICT with itself (criticized by Oliver Eikemeier)
- provide rcNG support in squid.sh only on systems with /etc/rc.subr

PR:             ports/64061
Submitted by:   Thomas-Martin Seck (maintainer)
2.5.4_10
23 Feb 2004 16:41:51
Original commit files touched by this commit This port version is marked as vulnerable.
eik search for other commits by this committer
- Integrate a new set of vendor patches, see
  http://www.squid-cache.org/Versions/v2/2.5/bugs/ for details
- Remove two local patches in favour of the respective vendor patches
- Bump PORTREVISION

PR:             63030
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de>
Obtained from:  http://www.squid-cache.org/Versions/v2/2.5/bugs/
2.5.4_9
17 Feb 2004 11:07:19
Original commit files touched by this commit This port version is marked as vulnerable.
sergei search for other commits by this committer
- integrate a new patch from squid-cache.org, see
  http://www.squid-cache.org/Versions/v2/2.5/bugs/#squid-2.5.STABLE4-ftp_telnet
  for details
- integrate a patch by Glen Gibb to enable ARP based ACLs and make this an
  OPTION; see also http://www.squid-cache.org/bugs/show_bug.cgi?id=909
  for his original bug report
- integrate additional vendor patches
- make --enable-underscores an OPTION
- set a tighter ACL on libexec/pinger
- use $SQUID_USER and $SQUID_GROUP in pkg-install
- wordsmith comments
- bump PORTREVISION

PR:             ports/62442
Submitted by:   maintainer

- Fix checksum for updated errorpages patch

PR:             ports/62923
Submitted by:   Michal Pasternak <dotz@irc.pl>
Approved by:    maintainer
2.5.4_8
02 Feb 2004 15:28:16
Original commit files touched by this commit This port version is marked as vulnerable.
sergei search for other commits by this committer
- Update distinfo for the http_workarounds patch (again)
  Please see http://www.squid-cache.org/bugs/show_bug.cgi?id=890 for details.
  Bump PORTREVISION
- Update to use new ports collection features:
  + USE_SIZE
  + use PORTDOCS and PLIST_FILES and extend the dynamic package list creation
    to include squid's icon files, too
  + move file and directory cleanup on deinstallation to pkg-deinstall
  + get rid of pkg-plist
  + use OPTIONS for the most commonly used options,
    leave SQUID_CONFIGURE_OPTIONS for more obscure options
- document known non-working features
- use lowercase for local variables
- other minor cleanups

PR:             ports/62222
Submitted by:   maintainer
2.5.4_7
20 Jan 2004 01:45:36
Original commit files touched by this commit This port version is marked as vulnerable.
ijliao search for other commits by this committer
The http_workarounds.patch has been updated, update distinfo accordingly.

PR:             61595
Submitted by:   maintainer
2.5.4_7
19 Jan 2004 03:03:11
Original commit files touched by this commit This port version is marked as vulnerable.
ijliao search for other commits by this committer
- integrate another patch from squid-cache.org, see
  http://www.squid-cache.org/Versions/v2/2.5/bugs/ for details
- cleanup dynamic plist generation:
  sort files, replace needlessly complex ex-scripting with a ${REINPLACE_CMD}
  one-liner
- integrate a patch to make the SMB-NTLM helper compile on 5.x and hook this
  helper up to the build (thanks to Stefano Tagliaferri for reporting the bug
  and testing the patch)
- bump PORTREVISION

PR:             61543
Submitted by:   maintainer
2.5.4_6
16 Jan 2004 21:18:20
Original commit files touched by this commit This port version is marked as vulnerable.
sergei search for other commits by this committer
- configure squid to run under a dedicated "squid" user by default; make use
  of SQUID_{UID,GID} which other squid-related ports already implemented.
  The user/group will be created on the fly if they do not already exist.
- introduce WITH_SQUID_LDAP_AUTH to pull in the necessary bits to compile and
  use the ldap_auth helper
- install some more authentication helper applications by default
- install helper applications to ${PREFIX}/libexec/squid instead of
  ${PREFIX}/libexec, add notes about it in pkg-install and pkg-descr
- cleanup the pre-installation tasks and move them from Makefile and pkg-plist
  into the pkg-install script; make 'make install' and 'pkg_add' actually do
  the same thing
- introduce a pkg-deinstall script
- make squid.sh rcNG compatible (when either /etc/rc_subr or
  ${PREFIX}/etc/rc_subr is present, the first one will be used, otherwise the
  script will work as a "rc classic" script so no additional dependency on
(Only the first 15 lines of the commit message are shown above View all of this commit message)
2.5.4_5
09 Jan 2004 17:19:32
Original commit files touched by this commit This port version is marked as vulnerable.
sergei search for other commits by this committer
- Integrate another patch for the LDAP authentication helper
  (see <http://www.squid-cache.org/Versions/v2/2.5/bugs/> for details)
- Correct MASTER_SITES:
  + fix URL for Melbourne University's ftp server
  + replace unreachable ftp mirror at Loughborough University with
    the one at LEO.org, Munich
- Bump PORTREVISION

PR:             61128
Submitted by:   maintainer
2.5.4_4
06 Jan 2004 08:12:55
Original commit files touched by this commit This port version is marked as vulnerable.
sergei search for other commits by this committer
- Integrate a new patch issued by the squid development team
  to correct the behaviour of the LDAP authentication helper wrt TLS,
  see <http://www.squid-cache.org/Versions/v2/2.5/bugs/> for details
- Reinstate the errorpages.patch and work around its partial brokenness
  by installing some Lithuanian error pages manually.
- Bump PORTREVISION

PR:             60950
Submitted by:   maintainer
2.5.4_3
05 Jan 2004 09:54:57
Original commit files touched by this commit This port version is marked as vulnerable.
will search for other commits by this committer
Change maintainer to Thomas-Martin Seck.

Approved by:    adrian
2.5.4_3
02 Jan 2004 00:28:12
Original commit files touched by this commit This port version is marked as vulnerable.
edwin search for other commits by this committer
More patches for squid, to keep up to date with the squid distribution.

Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (privately)
Approved by:    maintainer timeout (still)
2.5.4_2
30 Dec 2003 09:22:31
Original commit files touched by this commit This port version is marked as vulnerable.
edwin search for other commits by this committer
Add more patch files for www/squid

PR:             ports/59091 (based on)
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de>
2.5.4_1
28 Dec 2003 11:03:28
Original commit files touched by this commit This port version is marked as vulnerable.
edwin search for other commits by this committer
Uncomment the lines I needed to test the port. Mea Culpa.

*grabs pointy hat*
2.5.4_1
28 Dec 2003 09:58:21
Original commit files touched by this commit This port version is marked as vulnerable.
edwin search for other commits by this committer
[PATCH] www/squid: update to 2.5-STABLE4 (+ vendor patches)

[...]
- Add 2.5-STABLE4 vendor patches
  - cache.log message on "squid -k reconfigure" confusing
  - digest auth never detects password changes
  - login with space confuses redirector helpers
  - FQDNcache discards negative responses when using internal DNS
  - Full details at http://www.squid-cache.org/Versions/v2/2.5/bugs/#STABLE4
[...]

PR:             ports/58090
Submitted by:   Jonathan Noack <noackj@concordiacrusaders.org>
Approved by:    MAINTAINER TIMEOUT
2.5.4
28 Dec 2003 09:46:35
Original commit files touched by this commit This port version is marked as vulnerable.
edwin search for other commits by this committer
[PATCH] www/squid: update to 2.5 STABLE 4

        - Update to 2.5-STABLE4
        - plist is correct -- see ports/56392 for details on extra files

PR:             ports/56926
Submitted by:   Jonathan Noack <noackj@concordiacrusaders.org>
Approved by:    MAINTAINER TIMEOUT
2.5_4
13 Dec 2003 13:35:49
Original commit files touched by this commit This port version is marked as vulnerable.
kuriyama search for other commits by this committer
o Allow to use $SQUID_CONFIGURE_ARGS in /etc/make.conf for additional
  $CONFIGURE_ARGS.

No response from:       maintainer
2.5_4
27 Jul 2003 08:45:41
Original commit files touched by this commit This port version is marked as vulnerable.
adrian search for other commits by this committer
.. add the missing file.

PR:             ports/54153
2.5_4
27 Jul 2003 08:45:11
Original commit files touched by this commit This port version is marked as vulnerable.
adrian search for other commits by this committer
Massive upgrade to 2.5-stable3. Thanks!

PR:             ports/54153
Submitted by:   Jon Noack <noackjr@alumni.rice.edu>
2.5_3
09 Apr 2003 08:31:30
Original commit files touched by this commit This port version is marked as vulnerable.
adrian search for other commits by this committer
Bring the squid-2.5 port up to 2.5.STABLE2.
Expect another few commits soon to improve features :)
2.5_2
09 Mar 2003 10:59:08
Original commit files touched by this commit This port version is marked as vulnerable.
netchild search for other commits by this committer
Add vendor patches:
 - fixes for some security issues
 - fixes for Samba 2.2.6 or later
 - fixes for OpenSSL 0.9.7 or later
 - performance fixes
 - reliability fixes
 - stability fixes
 - documentation fixes
 - fixes/improvements for OpenLDAP 2.1.x or later
 - ...

Have a look at http://www.squid-cache.org/Versions/v2/2.5/bugs/ for a
more detailed description.

Maintainer timeout after:       ~3 months
Submitted by:   marius@alchemy.franken.de
Approved by:    kris
2.5_1
07 Mar 2003 06:12:57
Original commit files touched by this commit This port version is marked as vulnerable.
ade search for other commits by this committer
Clear moonlight beckons.
Requiem mors pacem pkg-comment,
And be calm ports tree.

E Nomini Patri, E Fili, E Spiritu Sancti.
2.5_1
31 Jan 2003 09:02:49
Original commit files touched by this commit This port version is marked as vulnerable.
adrian search for other commits by this committer
Grab the patch against squid24 from a PR..

PR:             42747
2.5_1
02 Jan 2003 20:21:40
Original commit files touched by this commit This port version is marked as vulnerable.
seanc search for other commits by this committer
Document the configure argument for reverse SSL proxies.
2.5_1
05 Nov 2002 00:48:06
Original commit files touched by this commit This port version is marked as vulnerable.
edwin search for other commits by this committer
Removed double USE_PERL5

Submitted by:   marius@alchemy.franken.de
2.5_1
04 Nov 2002 22:57:37
Original commit files touched by this commit This port version is marked as vulnerable.
edwin search for other commits by this committer
Half of these ones missed yesterday while converting to USE_REINPLACE.
The other half needs perl to build.

Noticed on bento and others (full mailbox :-)
2.5_1
04 Nov 2002 01:13:23
Original commit files touched by this commit This port version is marked as vulnerable.
edwin search for other commits by this committer
PERL -> REINPLACE
Noticed by: bento
2.5_1
14 Oct 2002 05:51:12
Original commit files touched by this commit This port version is marked as vulnerable.
adrian search for other commits by this committer
Update the port to squid-2.5.stable1.

Notable features:

* I'm building _all_ of the error page languages now
* I'm building a handful of the helper modules (the ones that don't
  require ldap or samba to be installed)
* underscores in hostnames are enabled - every few weeks we squid people
  get emails asking why someone can't get to some_user.geocities.com .
  Bad geocities. :)
2.4_10
13 Oct 2002 21:07:00
Original commit files touched by this commit This port version is marked as vulnerable.
knu search for other commits by this committer
- Use MASTER_SITE_SUBDIR.
- Add MASTER_SITE_RINGSERVER to MASTER_SITES.

Number of commits found: 299 (showing only 99 on this page)

«  1 | 2 | 3