Hi,
Do you have any patches applied on 2.6.10 apart from tproxy? Vanilla 2.6.10 had a TCP connection tracking bug which caused some TCP connections linger in the conntrack table for way too much time. Please take a look at the original tproxy for 2.6.10 announcement in the mailing list archives:
https://lists.balabit.hu/pipermail/tproxy/2005-February/000171.html
I hadnt applied the patch you mentioned. I will try this patch and i hope that solves the problems.
lthough this value depends on your traffic pattern, I'd say 32000 is bit too low for a dedicated squid proxy. With 512MB RAM you could afely set that to a higher value (64k for example).
and i would experiment with this too :) Thank you, Mohammed Riyaz P. -- http://www.fastmail.fm - mmm... Fastmail...