Ou seja, não adianta nada vc adicionar a
porta 1863 na safe_ports, se vc so libera os connects nas
ssl_ports sugestão1: modifique para http_access deny CONNECT
!SSL_ports !Safe_ports (nao recomendo, mas funciona bem demais,
escancara A ALMA do servidor pros seus clientes.
sugestão2:
crie uma acl só pro connect do msn acl Safe_ports_msn port 1863 #poha do
msn http_access deny CONNECT !SSL_ports !Safe_ports_msn
sugestão
all:
http_access deny !Safe_ports
logo após. Tem certeza que vc
quer que os seus usuarios queridos usando o squid acessem quaisquer portas
de outras maquinas fora da sua rede usando o seu squid?
[ ]s,
henry
----- Original Message --- Em Qua
22 Fev 2006 18:18, zeca escreveu: > e simples tambem .. esta
ai
http_port 192.168.1.3 3128 hierarchy_stoplist cgi-bin ? acl
QUERY urlpath_regex cgi-bin \? no_cache deny QUERY cache_mem 64
MB cache_swap_low 90 cache_swap_high 95 maximum_object_size 40960
KB cache_replacement_policy lru cache_dir ufs /usr/var/cache 5000 16
256 cache_access_log /usr/var/logs/access.log cache_log
/usr/var/logs/cache.log cache_store_log
/usr/var/logs/store.log mime_table /etc/squid/mime.conf log_mime_hdrs
on pid_filename /usr/var/logs/squid.pid ftp_passive on auth_param
basic children 5 auth_param basic realm Squid proxy-caching web
server auth_param basic credentialsttl 2 hours auth_param basic
casesensitive off refresh_pattern ^ftp: 1440 20% 10080 refresh_pattern
^gopher: 1440 0% 1440 refresh_pattern . 0 20% 4320 acl all src
0.0.0.0/0.0.0.0 acl manager proto cache_object acl localhost src
127.0.0.1/255.255.255.255 acl to_localhost dst 127.0.0.0/8 acl SSL_ports
port 443 563 acl Safe_ports port 80 # http acl Safe_ports port 21 #
ftp acl Safe_ports port 443 563 # https, snews acl Safe_ports port 70 #
gopher acl Safe_ports port 210 # wais acl Safe_ports port 1025-65535 #
unregistered ports acl Safe_ports port 280 # http-mgmt acl Safe_ports
port 488 # gss-http acl Safe_ports port 591 # filemaker acl Safe_ports
port 777 # multiling http acl Safe_ports port 9090 # brma admi acl
Safe_ports port 10001 # brma login acl Safe_ports port 3389 # Terminal
service acl Safe_ports port 3390 # Terminal service acl Safe_ports port
1863 # msn acl CONNECT method CONNECT acl manager proto cache
objetc acl rede_local src 192.168.1.0/255.255.255.0 acl porn url_regex
"/etc/squid/porn" acl noporn url_regex "/etc/squid/noporn" http_access
deny CONNECT !SSL_ports http_access allow noporn http_access deny
porn http_access allow manager localhost http_access allow
rede_local http_access deny all http_reply_access allow
all icp_access allow all visible_hostname
scorpiao.com.br httpd_accel_host virtual httpd_accel_port
80 httpd_accel_single_host on httpd_accel_with_proxy
on httpd_accel_uses_host_header on forwarded_for on error_directory
/usr/share/squid/errors/Portuguese coredump_dir
/usr/var/cache ----- Original Message ---