Search squid archive

Re: HTTPS - THE PROXY SERVER IS REFUSING

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Thank you for your help (both L.P.H. van Belle & Amos Jeffries).

I changed my squid.conf but now, I don't obtain any url deny...
In fact, any http & https url are allowed even if they not in whitelist_primaire.
I made many tests but I can't find the good way...
Please find enclosed the conf for Firefox.

My new conf :
http_port 3128
acl localnet src 192.168.0.0/24 # RFC 1918 local private network (LAN)

acl SSL_ports port 443

acl Safe_ports port 80          # http
acl Safe_ports port 21          # ftp
acl Safe_ports port 443         # https
acl Safe_ports port 70          # gopher
acl Safe_ports port 210         # wais
acl Safe_ports port 280         # http-mgmt
acl Safe_ports port 488         # gss-http
acl Safe_ports port 591         # filemaker
acl Safe_ports port 777         # multiling http
acl Safe_ports port 1025-65535  # unregistered ports

acl CONNECT method CONNECT

http_access deny !Safe_ports
http_access deny CONNECT !SSL_ports
http_access allow localhost manager
http_access deny manager


acl whitelist_prim dstdomain "/etc/squid3/whitelist_primaire"
http_access deny !whitelist_prim

http_access allow localnet
http_access allow localhost
http_access deny all

coredump_dir /var/spool/squid3

refresh_pattern ^ftp:           1440    20%     10080
refresh_pattern ^gopher:        1440    0%      1440
refresh_pattern -i (/cgi-bin/|\?) 0     0%      0
refresh_pattern .               0       20%     4320








Attachment: 45852.png
Description: PNG image

_______________________________________________
squid-users mailing list
squid-users@xxxxxxxxxxxxxxxxxxxxx
http://lists.squid-cache.org/listinfo/squid-users

[Index of Archives]     [Linux Audio Users]     [Samba]     [Big List of Linux Books]     [Linux USB]     [Yosemite News]

  Powered by Linux