+ Responder ao Tópico



  1. #1

    Padrão Squid autenticado Ajuda

    Sr Gostaria que meu squid so permitisse alguns sites e pra adm liberato total qual alteraçao tenho que fazer segue meu squid.conf !!!

    #Lacier Dias
    #msn: [email protected]
    #Squid.conf - 01/01/2005

    http_port 192.168.1.1:3128
    visible_hostname none
    hierarchy_stoplist cgi-bin ?
    acl QUERY urlpath_regex cgi-bin \?
    no_cache deny QUERY
    # memoria usada:
    cache_mem 32 MB
    #esvazia o cache:
    cache_swap_low 90
    cache_swap_high 93
    maximum_object_size 6144 KB
    minimum_object_size 0 KB
    maximum_object_size_in_memory 100 KB
    ipcache_size 1024
    ipcache_low 90
    ipcache_high 93
    cache_replacement_policy lru
    memory_replacement_policy lru



    # disco usado:
    cache_dir ufs /var/spool/squid/cache 5000 16 256
    cache_access_log /var/log/squid/access.log
    cache_log /var/log/squid/cache.log
    cache_store_log /var/log/squid/store.log


    acl sites_proibidos dstdomain "/etc/squid/regras/sites_proibidos"
    acl download_proibidos url_regex -i "/etc/squid/regras/download_proibidos"
    acl multimidia_proibidos urlpath_regex -i "/etc/squid/regras/multimidia_proibidos"


    http_access deny sites_proibidos
    http_access deny download_proibidos !multimidia_proibidos

    auth_param basic program /usr/lib/squid/ncsa_auth /etc/squid/passwd
    auth_param basic children 5
    auth_param basic realm Digite seu Login

    refresh_pattern ^ftp: 1440 20% 10080
    refresh_pattern ^gopher: 1440 0% 1440
    refresh_pattern . 0 20% 4320



    acl all src 0.0.0.0/0.0.0.0
    acl manager proto cache_object
    acl informatica proxy_auth REQUIRED
    acl localhost src 127.0.0.1/255.255.255.255

    acl informatica proxy_auth edu wanderson
    acl to_localhost dst 127.0.0.0/8
    acl SSL_ports port 443 563
    acl Safe_ports port 80 # http
    acl Safe_ports port 21 # ftp
    acl Safe_ports port 443 563 # https, snews
    acl Safe_ports port 70 # gopher
    acl Safe_ports port 210 # wais
    acl Safe_ports port 1025-65535 # unregistered ports
    acl Safe_ports port 280 # http-mgmt
    acl Safe_ports port 488 # gss-http
    acl Safe_ports port 591 # filemaker
    acl Safe_ports port 777 # multiling http

    acl CONNECT method CONNECT

    http_access allow localhost
    http_access allow informatica
    http_access allow manager localhost



    http_access deny manager
    http_access deny !Safe_ports
    http_access deny CONNECT !SSL_ports
    http_access deny all
    http_reply_access allow all


    icp_access allow all
    cache_effective_user squid
    cache_effective_group squid
    httpd_accel_port 80
    httpd_accel_host virtual
    httpd_accel_with_proxy on
    httpd_accel_uses_host_header on

  2. #2

    Padrão Re: Squid autenticado Ajuda

    Qual sua Distro?
    ... Me passe um propecto de sua nescecidade!
    Falows
    Citação Postado originalmente por edu_uti
    Sr Gostaria que meu squid so permitisse alguns sites e pra adm liberato total qual alteraçao tenho que fazer segue meu squid.conf !!!

    #Lacier Dias
    #msn: [email protected]
    #Squid.conf - 01/01/2005

    http_port 192.168.1.1:3128
    visible_hostname none
    hierarchy_stoplist cgi-bin ?
    acl QUERY urlpath_regex cgi-bin \?
    no_cache deny QUERY
    # memoria usada:
    cache_mem 32 MB
    #esvazia o cache:
    cache_swap_low 90
    cache_swap_high 93
    maximum_object_size 6144 KB
    minimum_object_size 0 KB
    maximum_object_size_in_memory 100 KB
    ipcache_size 1024
    ipcache_low 90
    ipcache_high 93
    cache_replacement_policy lru
    memory_replacement_policy lru



    # disco usado:
    cache_dir ufs /var/spool/squid/cache 5000 16 256
    cache_access_log /var/log/squid/access.log
    cache_log /var/log/squid/cache.log
    cache_store_log /var/log/squid/store.log


    acl sites_proibidos dstdomain "/etc/squid/regras/sites_proibidos"
    acl download_proibidos url_regex -i "/etc/squid/regras/download_proibidos"
    acl multimidia_proibidos urlpath_regex -i "/etc/squid/regras/multimidia_proibidos"


    http_access deny sites_proibidos
    http_access deny download_proibidos !multimidia_proibidos

    auth_param basic program /usr/lib/squid/ncsa_auth /etc/squid/passwd
    auth_param basic children 5
    auth_param basic realm Digite seu Login

    refresh_pattern ^ftp: 1440 20% 10080
    refresh_pattern ^gopher: 1440 0% 1440
    refresh_pattern . 0 20% 4320



    acl all src 0.0.0.0/0.0.0.0
    acl manager proto cache_object
    acl informatica proxy_auth REQUIRED
    acl localhost src 127.0.0.1/255.255.255.255

    acl informatica proxy_auth edu wanderson
    acl to_localhost dst 127.0.0.0/8
    acl SSL_ports port 443 563
    acl Safe_ports port 80 # http
    acl Safe_ports port 21 # ftp
    acl Safe_ports port 443 563 # https, snews
    acl Safe_ports port 70 # gopher
    acl Safe_ports port 210 # wais
    acl Safe_ports port 1025-65535 # unregistered ports
    acl Safe_ports port 280 # http-mgmt
    acl Safe_ports port 488 # gss-http
    acl Safe_ports port 591 # filemaker
    acl Safe_ports port 777 # multiling http

    acl CONNECT method CONNECT

    http_access allow localhost
    http_access allow informatica
    http_access allow manager localhost



    http_access deny manager
    http_access deny !Safe_ports
    http_access deny CONNECT !SSL_ports
    http_access deny all
    http_reply_access allow all


    icp_access allow all
    cache_effective_user squid
    cache_effective_group squid
    httpd_accel_port 80
    httpd_accel_host virtual
    httpd_accel_with_proxy on
    httpd_accel_uses_host_header on

  3. #3

    Padrão Re: Squid autenticado Ajuda

    olha alterei teu conf aonde acho necessário coloque ele e rode!!!
    Ow.... havisa dai ta!@!!!!


    Código :
    #Lacier Dias 
    #msn: [email][email protected][/email] 
    #Squid.conf - 01/01/2005 
     
    http_port 192.168.1.1:3128 
    visible_hostname none 
    hierarchy_stoplist cgi-bin ? 
    acl QUERY urlpath_regex cgi-bin \? 
    no_cache deny QUERY 
    # memoria usada: 
    cache_mem 32 MB 
    #esvazia o cache: 
    cache_swap_low 90 
    cache_swap_high 93 
    maximum_object_size 6144 KB 
    minimum_object_size 0 KB 
    maximum_object_size_in_memory 100 KB 
    ipcache_size 1024 
    ipcache_low 90 
    ipcache_high 93 
    cache_replacement_policy lru 
    memory_replacement_policy lru 
     
     
     
    # disco usado: 
    cache_dir ufs /var/spool/squid/cache 5000 16 256 
    cache_access_log /var/log/squid/access.log 
    cache_log /var/log/squid/cache.log 
    cache_store_log /var/log/squid/store.log 
     
    auth_param basic program /usr/lib/squid/ncsa_auth /etc/squid/passwd 
    auth_param basic children 5 
    auth_param basic realm Digite seu Login 
     
    refresh_pattern ^ftp: 1440 20% 10080 
    refresh_pattern ^gopher: 1440 0% 1440 
    refresh_pattern . 0 20% 4320 
     
    acl all src 0.0.0.0/0.0.0.0 
    acl manager proto cache_object 
    acl informatica proxy_auth REQUIRED 
    acl localhost src 127.0.0.1/255.255.255.255 
    acl sites_proibidos dstdomain "/etc/squid/regras/sites_proibidos" 
    acl download_proibidos url_regex -i "/etc/squid/regras/download_proibidos" 
    acl multimidia_proibidos urlpath_regex -i "/etc/squid/regras/multimidia_proibidos" 
    acl informatica proxy_auth edu wanderson 
    acl resto proxy_auth REQUIRED
     
    acl to_localhost dst 127.0.0.0/8 
    acl SSL_ports port 443 563 
    acl Safe_ports port 80 # http 
    acl Safe_ports port 21 # ftp 
    acl Safe_ports port 443 563 # https, snews 
    acl Safe_ports port 70 # gopher 
    acl Safe_ports port 210 # wais 
    acl Safe_ports port 1025-65535 # unregistered ports 
    acl Safe_ports port 280 # http-mgmt 
    acl Safe_ports port 488 # gss-http 
    acl Safe_ports port 591 # filemaker 
    acl Safe_ports port 777 # multiling http 
     
    acl CONNECT method CONNECT 
     
    http_access allow localhost 
    http_access allow informatica
    http_access deny sites_proibidos  
    http_access deny download_proibidos !multimidia_proibidos 
    http_access allow resto
    http_access allow manager localhost 
     
     
     
    http_access deny manager 
    http_access deny !Safe_ports 
    http_access deny CONNECT !SSL_ports 
    http_access deny all 
    http_reply_access allow all 
     
     
    icp_access allow all 
    cache_effective_user squid 
    cache_effective_group squid 
    httpd_accel_port 80 
    httpd_accel_host virtual 
    httpd_accel_with_proxy on 
    httpd_accel_uses_host_header on