Hello to all, i've tried the two acls you've proposed, without succes at the moment. #acl ip_sites url_regex ^http://[^/]\.[0.9]+(/|$) and acl ip_sites dstdom_regex ip_based ^[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3}$ http_access deny ip_sites Is there something I've missed ? --