[squid-users] is it possible to restrict the use of websocket for security reason?

2023-01-13 Thread Dieter Bloms
Hello, is it possible to restrict the use of websockets for seurity reason like prevent long-lived Websocket communication or define a limit for total size of transfered payload? -- Regards Dieter -- I do not get viruses because I do not use MS software. If you use Outlook then please do not

Re: [squid-users] is it possible to restrict the use of websocket for security reason?

2023-01-13 Thread Amos Jeffries
On 14/01/2023 12:13 am, Dieter Bloms wrote: Hello, is it possible to restrict the use of websockets for seurity reason like prevent long-lived Websocket communication or define a limit for total size of transfered payload? No. Squid support for WebSockets is only to reject its HTTP/1.1 mapping

Re: [squid-users] SSLBUMP for specific domains

2023-01-13 Thread Amos Jeffries
On 13/01/2023 10:47 am, andre.bolinhas wrote: So is a bug for 500 or a bad configuration? I have also tried this setup and seams to "fix" the tcp_tunnel/500 ... Basically the changes that I made is on peek step changing from ssl_bump peek ssl_step1 To acl NotPeek any-of Group26 You should

Re: [squid-users] eicar website not reachable

2023-01-13 Thread Amos Jeffries
On 12/01/2023 9:10 am, robert k Wild wrote: hi all, i have made a whitelist to go to some website, atm i have temp commented out #http_access deny to go to any website when i browse the web i can go on gmail,o365,hsbc,facebook etc but when i try to go to "eicar.org " i get