[squid-users] Re: squid port

2010-07-26 Thread squidACL

thanks

in squid file I have :
cl SSL_ports port 443
acl Safe_ports port 80 # http
acl Safe_ports port 21 # ftp
acl Safe_ports port 443 # https
acl Safe_ports port 70 # gopher
acl Safe_ports port 210 # wais
acl Safe_ports port 1025-65535 # unregistered ports
acl Safe_ports port 280 # http-mgmt
acl Safe_ports port 488 # gss-http
acl Safe_ports port 591 # filemaker
acl Safe_ports port 777 # multiling http
acl Safe_ports port  # TCP


# Deny requests to unknown ports
http_access deny !Safe_ports
# Deny CONNECT to other than SSL ports
http_access deny CONNECT !SSL_ports

so if I want just This Three port HTTP , HTTPS and FTP and to close the
others , if you have the idea how can I do  will be thankful

Thank you 
-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/squid-port-tp2300195p2302377.html
Sent from the Squid - Users mailing list archive at Nabble.com.


[squid-users] squid port

2010-07-23 Thread squidACL

Hello

I would like to bloque all the port in the squid and live just http and
https working , if someone know how we can do it I will be thankful .


Thank you 
-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/squid-port-tp2300195p2300195.html
Sent from the Squid - Users mailing list archive at Nabble.com.


[squid-users] squidGuard Stopped

2010-07-12 Thread squidACL

Good Day

I work with squidGuard to do the filtre , it's working well but i dont know
after each tow days  the squidGuard stopped 

I did  squidGuard -C all  and  squid -k reconfigure 

how can i do to live the squidGuard stay started ? 

I will be thankfull if you can help me about this issue 

2010-07-12 09:36:24 [12169] New setting: dbhome: /var/squidGuard/blacklists
2010-07-12 09:36:24 [12169] New setting: logdir: /var/log/squid
2010-07-12 09:36:24 [12169] init domainlist
/var/squidGuard/blacklists/adult/domains
2010-07-12 09:36:24 [12169] loading dbfile
/var/squidGuard/blacklists/adult/domains.db
2010-07-12 09:36:24 [12166] init urllist
/var/squidGuard/blacklists/hacking/urls
2010-07-12 09:36:24 [12166] loading dbfile
/var/squidGuard/blacklists/hacking/urls.db
2010-07-12 09:36:24 [12166] init domainlist
/var/squidGuard/blacklists/games/domains
2010-07-12 09:36:24 [12166] loading dbfile
/var/squidGuard/blacklists/games/domains.db
2010-07-12 09:36:24 [12166] init urllist
/var/squidGuard/blacklists/games/urls
2010-07-12 09:36:24 [12166] loading dbfile
/var/squidGuard/blacklists/games/urls.db
2010-07-12 09:36:24 [12166] init domainlist
/var/squidGuard/blacklists/audio-video/domains
2010-07-12 09:36:24 [12166] loading dbfile
/var/squidGuard/blacklists/audio-video/domains.db
2010-07-12 09:36:24 [12166] init urllist
/var/squidGuard/blacklists/audio-video/urls
2010-07-12 09:36:24 [12166] loading dbfile
/var/squidGuard/blacklists/audio-video/urls.db
2010-07-12 09:36:24 [12166] init domainlist
/var/squidGuard/blacklists/redirector/domains
2010-07-12 09:36:24 [12166] loading dbfile
/var/squidGuard/blacklists/redirector/domains.db
2010-07-12 09:36:24 [12166] init urllist
/var/squidGuard/blacklists/redirector/urls
2010-07-12 09:36:24 [12166] loading dbfile
/var/squidGuard/blacklists/redirector/urls.db
2010-07-12 09:36:24 [12168] init domainlist
/var/squidGuard/blacklists/warez/domains
2010-07-12 09:36:24 [12168] loading dbfile
/var/squidGuard/blacklists/warez/domains.db
2010-07-12 09:36:24 [12168] init urllist
/var/squidGuard/blacklists/warez/urls
2010-07-12 09:36:24 [12168] loading dbfile
/var/squidGuard/blacklists/warez/urls.db
2010-07-12 09:36:24 [12168] init domainlist
/var/squidGuard/blacklists/chat/domains
2010-07-12 09:36:24 [12168] loading dbfile
/var/squidGuard/blacklists/chat/domains.db
2010-07-12 09:36:24 [12167] init domainlist
/var/squidGuard/blacklists/aggressive/domains
2010-07-12 09:36:24 [12167] loading dbfile
/var/squidGuard/blacklists/aggressive/domains.db
2010-07-12 09:36:24 [12167] init urllist
/var/squidGuard/blacklists/aggressive/urls
2010-07-12 09:36:24 [12167] loading dbfile
/var/squidGuard/blacklists/aggressive/urls.db
2010-07-12 09:36:24 [12167] init domainlist
/var/squidGuard/blacklists/blog/domains
2010-07-12 09:36:24 [12167] loading dbfile
/var/squidGuard/blacklists/blog/domains.db
2010-07-12 09:36:24 [12167] init urllist
/var/squidGuard/blacklists/blog/urls
2010-07-12 09:36:24 [12167] loading dbfile
/var/squidGuard/blacklists/blog/urls.db
2010-07-12 09:36:24 [12167] init domainlist
/var/squidGuard/blacklists/hacking/domains
2010-07-12 09:36:24 [12167] loading dbfile
/var/squidGuard/blacklists/hacking/domains.db
2010-07-12 09:36:24 [12167] init urllist
/var/squidGuard/blacklists/hacking/urls
2010-07-12 09:36:24 [12167] loading dbfile
/var/squidGuard/blacklists/hacking/urls.db
2010-07-12 09:36:24 [12169] init urllist
/var/squidGuard/blacklists/adult/urls
2010-07-12 09:36:24 [12169] loading dbfile
/var/squidGuard/blacklists/adult/urls.db
2010-07-12 09:36:24 [12169] init domainlist
/var/squidGuard/blacklists/publicite/domains
2010-07-12 09:36:24 [12169] loading dbfile
/var/squidGuard/blacklists/publicite/domains.db
2010-07-12 09:36:24 [12169] init urllist
/var/squidGuard/blacklists/publicite/urls
2010-07-12 09:36:24 [12169] loading dbfile
/var/squidGuard/blacklists/publicite/urls.db
2010-07-12 09:36:24 [12169] init domainlist
/var/squidGuard/blacklists/warez/domains
2010-07-12 09:36:24 [12169] loading dbfile
/var/squidGuard/blacklists/warez/domains.db
2010-07-12 09:36:24 [12169] init urllist
/var/squidGuard/blacklists/warez/urls
2010-07-12 09:36:24 [12169] loading dbfile
/var/squidGuard/blacklists/warez/urls.db
2010-07-12 09:36:24 [12170] New setting: dbhome: /var/squidGuard/blacklists
2010-07-12 09:36:24 [12170] New setting: logdir: /var/log/squid
2010-07-12 09:36:24 [12170] init domainlist
/var/squidGuard/blacklists/adult/domains
2010-07-12 09:36:24 [12170] loading dbfile
/var/squidGuard/blacklists/adult/domains.db
2010-07-12 09:36:24 [12170] init urllist
/var/squidGuard/blacklists/adult/urls
2010-07-12 09:36:24 [12170] loading dbfile
/var/squidGuard/blacklists/adult/urls.db
2010-07-12 09:36:24 [12166] init domainlist
/var/squidGuard/blacklists/strong_redirector/domains
2010-07-12 09:36:24 [12166] loading dbfile
/var/squidGuard/blacklists/strong_redirector/domains.db
2010-07-12 09:36:24 [12166] init urllist
/var/squidGuard/blacklists/strong_redirector/urls
2010-07-12 09:36:24 [12166] 

[squid-users] Re: Conf squid cache [

2010-07-07 Thread squidACL

hi 

excuse me but my configuration is working very well ,and the cache of the
server is empty :

 proxy previously did not require authentication if the pc are from the
domaine (of course we add in the browser of Mozzila or IE the ip of proxy
and port) but if they are not in our domaine , he will ask him user and
password  it's working very well befor now i don't no why i have this
probleme


please if you can help me i will be thankful

many Thanks


-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/Cache-Access-Denied-Error-tp2279358p2280780.html
Sent from the Squid - Users mailing list archive at Nabble.com.


[squid-users] Conf squid cache [

2010-07-06 Thread squidACL

I have Fedora10 when trying to access Internet through PROXY using Mozilla i
was allways connected automaticaly without user and password . Recently they
ask me a login. I automatically get
Cache Access Denied Error saying i need to authenticate. I allready removed
all of the cookies and cleared the cache...  all services started squid ,
samba and  winbind  , i don't no why a have this probleme

i hope if can someone help me 

Thank you 
-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/Conf-squid-cache-tp2279358p2279358.html
Sent from the Squid - Users mailing list archive at Nabble.com.


[squid-users] Re: Conf squid cache [

2010-07-06 Thread squidACL

my proxy working very well but after the update i have this probleme my squid
conf:

auth_param ntlm program /usr/bin/ntlm_auth
--helper-protocol=squid-2.5-ntlmssp 
auth_param ntlm children 5
auth_param ntlm keep_alive on

auth_param basic program /usr/bin/ntlm_auth
--helper-protocol=squid-2.5-basic 
auth_param basic children 5
auth_param basic realm Squid AD
auth_param basic credentialsttl 2 hours

acl ntlm proxy_auth REQUIRED

acl manager proto cache_object
acl localhost src 127.0.0.1/32
acl to_localhost dst 127.0.0.0/8

acl localnet src 10.0.0.0/8 # RFC1918 possible internal network
acl localnet src 172.16.0.0/12 # RFC1918 possible internal network
acl localnet src 192.168.0.0/16 # RFC1918 possible internal network

acl SSL_ports port 443
acl Safe_ports port 80 # http
acl Safe_ports port 21 # ftp
acl Safe_ports port 443 # https
acl Safe_ports port 70 # gopher
acl Safe_ports port 210 # wais
acl Safe_ports port 1025-65535 # unregistered ports
acl Safe_ports port 280 # http-mgmt
acl Safe_ports port 488 # gss-http
acl Safe_ports port 591 # filemaker
acl Safe_ports port 777 # multiling http
acl Safe_ports port  # TCP
acl CONNECT method CONNECT
acl reefer src 10.60.3.61
acl gate1 src 10.60.3.72
acl gate2 src 10.60.3.73
acl GATE src 10.60.3.86 

http_access deny reefer
http_access deny gate1
http_access deny gate2
http_access deny GATE
http_access allow ntlm

http_access allow manager localhost
http_access deny manager
http_access deny !Safe_ports
http_access deny CONNECT !SSL_ports

http_access allow localnet

http_access allow localhost
http_access deny all

icp_access allow localnet
icp_access deny all
htcp_access allow localnet
htcp_access deny all

the people that are in our domaine they don't need to use the login and
password just the people that come from outside 

I use squid/3.0.STABLE20

Thank you 

-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/Cache-Access-Denied-Error-tp2279358p2279442.html
Sent from the Squid - Users mailing list archive at Nabble.com.


[squid-users] Re: Conf squid cache [

2010-07-06 Thread squidACL



in the access.log i have like this :


1278422801.999  5 10.60.3.190 TCP_DENIED/407 2163 CONNECT
68.103.163.219:443 - NONE/- text/html
1278422806.321  0 10.60.3.54 TCP_DENIED/407 2154 CONNECT
122.120.112.24:443 - NONE/- text/html
1278422806.324  2 10.60.3.54 TCP_DENIED/407 2152 CONNECT
122.120.112.24:443 - NONE/- text/html

thank you 

-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/Cache-Access-Denied-Error-tp2279358p2279583.html
Sent from the Squid - Users mailing list archive at Nabble.com.


[squid-users] The request or reply is too large

2010-06-14 Thread squidACL

hello ,

The following error was encountered while trying to retrieve the URL:
http://www.rekrute.com/
The request or reply is too large.
If you are making a POST or PUT request, then the item you are trying to
upload is too large.
If you are making a GET request, then the item you are trying to download is
too large.
These limits have been established by the Internet Service Provider who
operates this cache. Please contact them directly if you feel this is an
error.

I can't access to the web site if you have any idea about this error I will
be thankful

tahnk you



-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/The-request-or-reply-is-too-large-tp2254429p2254429.html
Sent from the Squid - Users mailing list archive at Nabble.com.


[squid-users] creat a groupe in squid and squidGuard

2010-06-01 Thread squidACL

Good day,

I have squid and squidGuard installed with domaine controller , i need to
create groups in this (some groups have access to intenet the other no) I
need to use the groups and users that i have in my active directory

it s possible to do this?

I will be thankful if you can help me .

Thank you 
-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/creat-a-groupe-in-squid-and-squidGuard-tp2239038p2239038.html
Sent from the Squid - Users mailing list archive at Nabble.com.


[squid-users] OAFIID:GNOME

2010-05-27 Thread squidACL

Hi

I have a big problem when I strat fedora give me this three error message :


The panel has encountered a problem loading:OAFIID:GNOME_System TrayApplet
Would you like to delete the applet from your configuration?

The panel has encountered a problem
loading:OAFIID:GNOME_FastUserSwitchApplet
Would you like to delete the applet from your configuration?

The panel has encountered a problem loading:OAFIID:GNOME_MixerApplet
Would you like to delete the applet from your configuration?


please  if you have any idea i will be thankful


Thank you 

-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/OAFIID-GNOME-tp2232741p2232741.html
Sent from the Squid - Users mailing list archive at Nabble.com.


[squid-users] Autostart services

2010-05-26 Thread squidACL

Hi

I want to autostart services squid ans samba , if someone can help me i will
be thankful 

Many Thanks


-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/Autostart-services-tp2231256p2231256.html
Sent from the Squid - Users mailing list archive at Nabble.com.


[squid-users] Re: Autostart services

2010-05-26 Thread squidACL

Thanks but in this file I have just:
#!/bin/sh
#
# This script will be executed *after* all the other init scripts.
# You can put your own initialization stuff in here if you don't
# want to do the full Sys V style init stuff.

touch /var/lock/subsys/local


I add in this file just :

service smb start
service squid start

if you can please give me more detail i will be thankful

Many Thanks
-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/Autostart-services-tp2231256p2231462.html
Sent from the Squid - Users mailing list archive at Nabble.com.


[squid-users] Re: Autostart services

2010-05-26 Thread squidACL

excuse me , but i have one Erreur message :

The panel has encountered a problem loading:OAFIID:GNOME_System TrayApplet
Would you like to delete the applet from your configuration?

The panel has encountered a problem
loading:OAFIID:GNOME_FastUserSwitchApplet
Would you like to delete the applet from your configuration?

The panel has encountered a problem loading:OAFIID:GNOME_MixerApplet
Would you like to delete the applet from your configuration?


please  if you have any idea i will be thankful 

many Thanks




-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/Autostart-services-tp2231256p2232011.html
Sent from the Squid - Users mailing list archive at Nabble.com.


[squid-users] Re: ACL in SQUID

2010-05-13 Thread squidACL

Hi

Thank you for your answer , I take all the groups and users from Active
Directory ,it's possible to use this groups to create ACL with groups that i
have in active directory (access, deny)?

Thank you 
-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/ACL-in-SQUID-tp2195830p2197264.html
Sent from the Squid - Users mailing list archive at Nabble.com.


[squid-users] Re: ACL in SQUID

2010-05-13 Thread squidACL

Hi

Thank you for your answer , I take all the groups and users from Active
Directory ,it's possible to use this groups to create ACL with groups that i
have in active directory (access, deny)?

the people that inside the domaine i add just the ip adresse and port of
proxy in the browser they can connect , the people from outside of the
domaine they ask him the user and password .
the squid file:

auth_param ntlm program /usr/bin/ntlm_auth
--helper-protocol=squid-2.5-ntlmssp 
auth_param ntlm children 5
auth_param ntlm keep_alive on

auth_param basic program /usr/bin/ntlm_auth
--helper-protocol=squid-2.5-basic
auth_param basic children 5
auth_param basic realm Squid AD
auth_param basic credentialsttl 2 hours

 acl ntlm proxy_auth REQUIRED
http_access allow localhost
http_access deny all
icp_access allow localnet
icp_access deny all
htcp_access allow localnet
htcp_access deny all

url_rewrite_program /usr/bin/squidGuard -c /etc/squid/squidGuard.conf

squidGuard:
pass !porn !adult !publicite !warez !manga !aggressive !blog !hacking !games
!audio-video !redirector  !malware all
redirect http://127.0.0.1/index.html

The idea is to use the same groups of active directory OU(organistation
units) with acl

exemple :

Finance OU
{
pass !porn !adult !publicite !warez !manga !aggressive !blog all
redirect http://127.0.0.1/index.html
}

admin OU

{
 pass all
}

it s possible or if you have any idea I will be thankful

Thank you 
-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/ACL-in-SQUID-tp2195830p2197299.html
Sent from the Squid - Users mailing list archive at Nabble.com.


[squid-users] ACL in SQUID

2010-05-12 Thread squidACL

Hi

I have squid and squidGuard installed and working very well , but now I need
to creat groups ( I use the Active Directory user)

you know how can I create the ACL groups ?

Many Thanks 
-- 
View this message in context: 
http://squid-web-proxy-cache.1019090.n4.nabble.com/ACL-in-SQUID-tp2195830p2195830.html
Sent from the Squid - Users mailing list archive at Nabble.com.