[KLUG Members] Squid "no_cache"

Bruce Smith members@kalamazoolinux.org
21 Jan 2003 11:09:43 -0500


> Dang, you sure are hard to convince! :-)))))

Don't you just hate it when you ask a question, and all you get 
is more questions and opposition in return?  :-)

> OK, I'll try a different "attack"...
> 
> User1 on PC1 is reading an Email about super secret thingy1...  
> http://www.fastmail.fm/mail2/~aaaaaaaaaaa....
> 
> User2 on PC2 is reading an Email about super secret thingy2...  
> http://www.fastmail.fm/mail2/~bbbbbbbbbbb....
> 
> User3 is a part-time admin person I have manage my IPCop box (he/she has
> the Admin password).
> 
> User3 is pissed at me for asking he/she too many damn questions!
> 
> So, User3 logs into the IPCop box and proceeds to read User1's and
> User2's secret Emails.

Ah, but there is more to sessions than just the URL!  The URL you posted
to the list didn't work for me, because I didn't create the session!

And if your admin is pissed at you, you have A LOT more things to worry
about, like s/he sniffing your passwords from the firewall box.

> And, User3 learns about some secret "TheBS" thing trying to conquer the
> world!

That could be a good thing to know and foil!  :->

> So there!!

I'm still not convinced!  ;-)

Besides, I'm not going to answer your question anyway, because I've
never tried excluding sites from the cache, and I don't know how!  :-)

--------------------------------------------
Bruce Smith                bruce@armintl.com
System Administrator / Network Administrator
Armstrong International, Inc.
Three Rivers, Michigan  49093  USA
http://www.armstrong-intl.com/
--------------------------------------------