[squid-users] Re: Squid Concerns

From: Superted666 <ruckafella_at_gmail.com>
Date: Tue, 22 Jun 2010 11:09:45 -0700 (PDT)

Thankyou for the prompt response!

Below is the squid config, trimmed most of the guff out.

Thanks

#Recommended minimum configuration:
acl manager proto cache_object
acl localhost src 127.0.0.1/32
acl to_localhost dst 127.0.0.0/8
#
# Example rule allowing access from your local networks.
# Adapt to list your (internal) IP networks from where browsing
# should be allowed
acl localnet src 10.0.0.0/8 # RFC1918 possible internal network
acl localnet src 172.16.0.0/12 # RFC1918 possible internal network
acl localnet src 192.168.0.0/16 # RFC1918 possible internal network

#
acl SSL_ports port 443
acl Safe_ports port 80 # http
acl Safe_ports port 21 # ftp
acl Safe_ports port 443 # https
acl Safe_ports port 70 # gopher
acl Safe_ports port 210 # wais
acl Safe_ports port 1025-65535 # unregistered ports
acl Safe_ports port 280 # http-mgmt
acl Safe_ports port 488 # gss-http
acl Safe_ports port 591 # filemaker
acl Safe_ports port 777 # multiling http
acl CONNECT method CONNECT

http_access allow manager localhost
http_access deny manager
# Deny requests to unknown ports
http_access deny !Safe_ports
# Deny CONNECT to other than SSL ports
#http_access deny CONNECT !SSL_ports
#http_access deny CONNECT

http_access allow localnet

# And finally deny all other access to this proxy
http_access allow all

htcp_access allow localnet
htcp_access deny all
http_port 77.92.76.176:80 transparent

-- 
View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/Squid-Concerns-tp2264334p2264547.html
Sent from the Squid - Users mailing list archive at Nabble.com.
Received on Tue Jun 22 2010 - 18:09:47 MDT

This archive was generated by hypermail 2.2.0 : Wed Jun 23 2010 - 12:00:04 MDT