I didn't test this, but i think it works better:
http_access deny banned_sites !good_facebook
is it works?
2016-01-18 16:35 GMT-02:00 Lucía Guevgeozian <lulumailgo@xxxxxxxxx>:
LuciaOk, thanks again for the quick reply, I'm upgrading :)Regards,2016-01-18 14:58 GMT-03:00 Yuri Voinov <yvoinov@xxxxxxxxx>:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
18.01.16 23:56, Lucía Guevgeozian пишет:
> Thank you very much for your responses.
>
> I understand from http://www.squid-cache.org/Doc/config/http_access/ that
> http_access will not work with https in version of squid older than 3.3.
>
> Do you know if an alternative config exists without upgrading?
We don't know it. HTTPS-ops required updrade.-----BEGIN PGP SIGNATURE-----
>
>
> Regards,
> Lucia
>
> 2016-01-18 14:38 GMT-03:00 Antony Stone <Antony.Stone@xxxxxxxxxxxxxxxxxxxx>:
>
>> On Monday 18 January 2016 at 18:31:40, Yuri Voinov wrote:
>>
>>> Facebook (like more others) uses Akamai CDN as background delivery
>> service.
>>>
>>> So, facebook.* domain is a little part of whole big fat Facebook :)
>>
>> True, but that should still match *request* URLs (once the HTTP/S problem
>> is
>> sorted out), no?
>>
>>> 18.01.16 23:29, Antony Stone пишет:
>>>> On Monday 18 January 2016 at 18:22:24, Lucía Guevgeozian wrote:
>>>>> acl good_facebook urlpath_regex groups
>>>>> acl banned_sites url_regex "/etc/squid/config/banned_sites"
>>>>>
>>>>> inside banned_sites I have the word facebook
>>>>>
>>>>> http_access allow good_facebook
>>>>> http_access deny banned_sites
>>>>
>>>> Okay, so you've set up some HTTP access controls... so far, so good.
>>>>
>>>>> If I try accessing https://www.facebook.com/groups I get blocked
>>>>
>>>> That's an HTTPS URL, not HTTP :)
>>>>
>>>>> ps: I'm using this squid version
>>>>> Squid Cache: Version 3.0.STABLE18
>>>>
>>>> That's old - you are strongly recommended to upgrade.
>>>>
>>>>
>>>> Antony.
>>
>> --
>> Perfection in design is achieved not when there is nothing left to add, but
>> rather when there is nothing left to take away.
>>
>> - Antoine de Saint-Exupery
>>
>> Please reply to the
>> list;
>> please *don't* CC
>> me.
>> _______________________________________________
>> squid-users mailing list
>> squid-users@xxxxxxxxxxxxxxxxxxxxx
>> http://lists.squid-cache.org/listinfo/squid-users
>>
>
>
>
> _______________________________________________
> squid-users mailing list
> squid-users@xxxxxxxxxxxxxxxxxxxxx
> http://lists.squid-cache.org/listinfo/squid-users
Version: GnuPG v2
iQEcBAEBCAAGBQJWnSevAAoJENNXIZxhPexGG9EH/0Rmqad38Lf8vHArd7ZrYrIo
Ie6viHuydYgsJOa+Ii/gqbsmIeiubPA8gY5mzJFzAo44k+Q0v8iUv8Qm2bQsD7v5
DhsEqenkfazw3Gv3PTQM27aUUk6ucDBJhtrCiGGrofLnMzaHoqVlSU0Vwkv2cNfr
flXuTfzhJtqNrXbiyVw75v8lvesRxozpfBas3vOBimrBCn6UFqyFlkirQSvo+m3R
IRN/FXOVpJqRXSAfZWRPQayfmDxf+cZbX2nhQvwvBatyu8+Z8s4sl7m6Lf/KU4U2
mZaRon9h7cJGmC/sVNre1JFI7tTACg2nnGjINtv+Itm7uE9r95CNr+OGxYkLUcM=
=EES7
-----END PGP SIGNATURE-----
_______________________________________________
squid-users mailing list
squid-users@xxxxxxxxxxxxxxxxxxxxx
http://lists.squid-cache.org/listinfo/squid-users
_______________________________________________
squid-users mailing list
squid-users@xxxxxxxxxxxxxxxxxxxxx
http://lists.squid-cache.org/listinfo/squid-users
_______________________________________________ squid-users mailing list squid-users@xxxxxxxxxxxxxxxxxxxxx http://lists.squid-cache.org/listinfo/squid-users