integration-docs
Loading

Squid Proxy

Version 1.3.0 (View all)
Compatible Kibana version(s) 8.14.1 or higher
9.0.0 or higher
Supported Serverless project types
What's this?
Security
Observability
Subscription level
What's this?
Basic
Level of support
What's this?
Elastic

Squid is a caching and forwarding HTTP web proxy. Use the Squid Proxy integration to monitor Squid Proxy access logs.

This integration supports ingestion of logs from Squid Proxy, via the Filestream, TCP, and/or UDP inputs.

Log is used to retrieve access log messages generated by Squid Proxy. For more details, refer to access.log and Squid native access.log format in detail.

You need Elasticsearch for storing and searching your data and Kibana for visualizing and managing it. You can use our hosted Elasticsearch Service on Elastic Cloud, which is recommended, or self-manage the Elastic Stack on your own hardware.

Elastic Agent must be installed. For more details, check the Elastic Agent installation instructions.

The minimum Kibana version required is 8.14.1.

Configure Squid to export access logs using one of the supported methods (file (Module: Standard I/O), udp (Module: UDP Receiver), or tcp (Module: TCP Receiver)).

The integration supports the following format: Native log file.

  1. In Kibana go to Management > Integrations.
  2. In the Search for integrations bar, type Squid Proxy.
  3. Select the Squid Proxy integration from the search results.
  4. Click Add Squid Proxy to add the integration.
  5. Add all the required integration configuration parameters according to the enabled input type.
  6. Save the integration.

The log dataset collects Squid logs.