Hello, I have a reverse cache server that has ANY port 80 access from the users of my site. I been noticing this on my logs. 1156192825.630 40 202.107.209.216 TCP_MISS/302 390 GET http://ad.marketingsector.com/imp? - DIRECT/208.67.66.11 - 1156192826.622 211 202.107.209.216 TCP_MISS/302 434 GET http://ad.yieldmanager.com/imp? - DIRECT/208.67.66.11 - 1156192827.483 160 202.107.209.216 TCP_MISS/200 6468 GET http://ad.yieldmanager.com/imp? - DIRECT/208.67.66.11 application/x-javascript 1156192831.959 90 202.107.209.216 TCP_MISS/302 609 GET http://ad.marketingsector.com/iframe3? - DIRECT/208.67.66.11 - 1156192832.700 30 202.107.209.216 TCP_MISS/302 1010 GET http://ad.yieldmanager.com/iframe3? - DIRECT/208.67.66.11 - 1156192834.343 942 202.107.209.216 TCP_MISS/200 15474 GET http://www.partypoker.com/marketing/cm.htm? - DIRECT/66.212.229.233 text/html 1156192859.819 40 202.107.209.216 TCP_MISS/302 390 GET http://ad.marketingsector.com/imp? - DIRECT/208.67.66.11 - 1156192863.545 30 202.107.209.216 TCP_MISS/302 434 GET http://ad.yieldmanager.com/imp? - DIRECT/208.67.66.11 - I am new to squid so my guess is that. Do I need to cut access to other sites from my squid? Does a ACL change should take care of this? need some advice Thanks Gustavo