ThEcHaCaL wrote:
> jmhenrique wrote:
>   
>> --- Em [email protected], ThEcHaCaL <[EMAIL PROTECTED]> escreveu
>>   
>>     
>>> henrique wrote:
>>>     
>>>       
>>>> (...)
>>>>
>>>>   
>>>>       
>>>>         
>>>>>>>> acho que deve ser alguma coisa no squid.conf , se alguém já passou
>>>>>>>> por
>>>>>>>> isso ou se alguém usa essa dupla e poder me ajudar fico
>>>>>>>>           
>>>>>>>>               
>>>>>>>>                 
>>>> agradecido.
>>>>   
>>>>       
>>>>         
>>>>>>>> Valeu
>>>>>>>>
>>>>>>>>           
>>>>>>>>               
>>>>>>>>                 
>>>>>>> Olá,
>>>>>>> vc apenas postou os logs do squid. Poste os logs do squidguard
>>>>>>>         
>>>>>>>             
>>>>>>>               
>>>> tambem.
>>>>   
>>>>       
>>>>         
>>>>>>> [ ]s, Henry.
>>>>>>>
>>>>>>>
>>>>>>>         
>>>>>>>             
>>>>>>>               
>>>>> só por curiosidade, vc postou o seu squidGuard.conf inteiro, ou
>>>>>     
>>>>>         
>>>>>           
>>>> somente uma
>>>>   
>>>>       
>>>>         
>>>>> parte ?
>>>>> (digo isto porque estão faltando as classes "dest" de cada destino. )
>>>>>
>>>>> p.s.: a proposito, nao faça top-post, responda abaixo desta
>>>>>     
>>>>>         
>>>>>           
>>>> mensagem... fica
>>>>   
>>>>       
>>>>         
>>>>> mais legivel para quem for ler a mensagem
>>>>>
>>>>> [ ]s, Henry
>>>>>
>>>>>
>>>>>     
>>>>>         
>>>>>           
>>>>   
>>>>       
>>>>         
>>>>> Coloquei somente uma parte do squidGuard.conf, as dest estão 
>>>>> funcionando direitinho, mas como falei, se eu setar a opcão time
>>>>>         
>>>>>           
>> da o 
>>   
>>     
>>>>> erro e o squid é killado.
>>>>>     
>>>>>         
>>>>>           
>>>>   
>>>>       
>>>>         
>>>>> ThEcHaCaL
>>>>> thechacal.net
>>>>>     
>>>>>         
>>>>>           
>>>> Olá. Se o seu squid está sendo kilado, eh porque existe algum erro no
>>>> seu helper. E portanto, eh um problema do squidguard e não do squid. 
>>>>
>>>> faça o teste sugerido pela propria aplicação, como root, digite em um
>>>> terminal: 
>>>>
>>>> echo "http://www.example.com 10.0.0.1/ - - GET" | squidGuard -c
>>>> /etc/squid/squidGuard.conf -d
>>>>
>>>> (respeitando a sua classe de ips liberados ou bloqueados, algum site
>>>> especifico que vc tenha em alguma black - ou white - list, e
>>>> principalmente, a localização do seu arquivo de configuração do
>>>> squidguard)
>>>>
>>>> e vá debugando as mensagens de erro. Pelo menos no meu, ele não mostra
>>>> todos os erros de uma vez só, a medida que vc vá consertando os erros
>>>> mostrados, ele vai informando os novos. 
>>>> E posso apostar grande quantia que o problema são os seus "*".
>>>> Experimente colocar as opçoes literais para dias da semana. Parece
>>>>       
>>>>         
>> meio
>>   
>>     
>>>> "lusitano", mas aqui eh assim que eu as tenho. 
>>>> (se for somente este o problema). 
>>>>
>>>> [ ]s, e divirta-se
>>>> Henry.
>>>>       
>>>>         
>>   
>>     
>>> Vamos lá, vou colar a saída do echo:
>>>
>>> trinity:/var/log/squid/squidGuard/logs# echo "http://finddestiny.com/
>>> 10.0.0.1/ - - GET" | squidGuard -c /etc/squid/squidGuard.conf -d
>>> 2007-11-20 07:59:42 [3138] init iplist /etc/squid/diretoria.txt
>>> 2007-11-20 07:59:42 [3138] init domainlist
>>> /var/log/squid/squidGuard/db/blacklists/ads/domains
>>> 2007-11-20 07:59:42 [3138] loading dbfile
>>> /var/log/squid/squidGuard/db/blacklists/ads/domains.db
>>> 2007-11-20 07:59:42 [3138] init urllist
>>> /var/log/squid/squidGuard/db/blacklists/ads/urls
>>> 2007-11-20 07:59:42 [3138] loading dbfile
>>> /var/log/squid/squidGuard/db/blacklists/ads/urls.db
>>> .
>>> .
>>> .
>>> .
>>> 2007-11-20 07:59:42 [3138] loading dbfile
>>> /var/log/squid/squidGuard/db/blacklists/sect/domains.db
>>> 2007-11-20 07:59:42 [3138] init domainlist
>>> /var/log/squid/squidGuard/db/blacklists/whitelist/domains
>>> 2007-11-20 07:59:42 [3138] loading dbfile
>>> /var/log/squid/squidGuard/db/blacklists/whitelist/domains.db
>>> 2007-11-20 07:59:42 [3138] init urllist
>>> /var/log/squid/squidGuard/db/blacklists/whitelist/urls
>>> 2007-11-20 07:59:42 [3138] loading dbfile
>>> /var/log/squid/squidGuard/db/blacklists/whitelist/urls.db
>>> 2007-11-20 07:59:42 [3138] squidGuard 1.2.0 started (1195556382.173)
>>> 2007-11-20 07:59:42 [3138] squidGuard ready for requests
>>>     
>>>       
>> (1195556382.191)
>>   
>>     
>>> 2007-11-20 07:59:42 [3138] Request(default/adult/-)
>>> http://finddestiny.com/ 10.0.0.1/- - -
>>> http://192.168.0.3/deny.html 10.0.0.1/- - -
>>> 2007-11-20 07:59:42 [3138] squidGuard stopped (1195556382.191)
>>> trinity:/var/log/squid/squidGuard/logs#
>>>
>>>
>>> No meu squidGuard.conf tirei os "*" que você disse ficando da seguinte
>>> forma:
>>>
>>>
>>> logdir /var/log/squid/squidGuard/logs
>>> dbhome /var/log/squid/squidGuard/db/blacklists
>>>
>>> src diretoria {
>>>         iplist  /etc/squid/diretoria.txt
>>> }
>>>
>>> dest ads{
>>>         domainlist ads/domains
>>>         urllist    ads/urls
>>>         log        /var/log/squid/squidGuard/logs/squidguard-access.log
>>> }
>>>
>>> dest adult{
>>>         domainlist adult/domains
>>>         urllist    adult/urls
>>>         log        /var/log/squid/squidGuard/logs/squidguard-access.log
>>> }
>>> .
>>> .
>>> .
>>> .
>>> dest whitelist{
>>>         domainlist whitelist/domains
>>>         urllist    whitelist/urls
>>>         log        /var/log/squid/squidGuard/logs/squidguard-access.log
>>> }
>>>
>>> time afterwork {
>>>        weekly Tuesdays 12:00 - 14:00
>>> }
>>>
>>> acl {
>>>         diretoria {
>>>                 pass !in-addr whitelist !adult !antispyware !sexuality
>>> !virusinfected !hacking !phishing !porn !proxy !spyware all
>>>         }
>>>         default within afterwork {
>>>                 pass !in-addr whitelist !adult !antispyware !sexuality
>>> !virusinfected !hacking !phishing !porn !proxy !spyware all
>>>         }else{
>>>                 pass !in-addr whitelist !ads !adult !antispyware
>>> !astrology !artnudes !beerliquorinfo !sexuality !games !onlinegames
>>> !virusinfected !shopping !culinary !blog !chat !naturism !aggressive
>>> !audio-video !drugs !gambling !hacking !mail !phishing !porn !proxy
>>> !spyware !violence !warez !guns !reaffected !entertainment !cleaning
>>> !banking !socialnetworking !onlineauctions !kidstimewasting !ecommerce
>>> !radio !government !childcare !news !jobsearch !gardening !verisign
>>> !jewelry !dialers !cellphones !instantmessaging !mobile-phone
>>> !marketingware !filehosting !clothing !religion !onlinepayment
>>> !searchengines !ringtones !desktopsillies !vacation !sports
>>> !personalfinance !updatesites !mixed_adult !dating !weapons
>>> !beerliquorsale !financial !homerepair !medical !weather
>>> !frencheducation !hygiene !pets !webmail !sect  all
>>>                 redirect http://192.168.0.3/deny.html
>>>         }
>>> }
>>>
>>> trinity:/var/log/squid# /etc/init.d/squid restart
>>> Restarting Squid HTTP proxy: squid Waiting.....................done.
>>> .
>>> trinity:/var/log/squid#
>>>
>>> trinity:/var/log/squid# cat /var/log/squid/cache.log
>>>
>>> 2007/11/20 08:36:17| Starting Squid Cache version 2.6.STABLE5 for
>>> i386-debian-linux-gnu...
>>> 2007/11/20 08:36:17| Process ID 5649
>>> 2007/11/20 08:36:17| With 1024 file descriptors available
>>> 2007/11/20 08:36:17| Using epoll for the IO loop
>>> 2007/11/20 08:36:17| DNS Socket created at 0.0.0.0, port 48352, FD 6
>>> 2007/11/20 08:36:17| Adding domain cabonatal.com.br from
>>>     
>>>       
>> /etc/resolv.conf
>>   
>>     
>>> 2007/11/20 08:36:17| Adding nameserver 201.76.155.68 from
>>>     
>>>       
>> /etc/resolv.conf
>>   
>>     
>>> 2007/11/20 08:36:17| helperOpenServers: Starting 5 'squidGuard'
>>>     
>>>       
>> processes
>>   
>>     
>>> 2007/11/20 08:36:17| User-Agent logging is disabled.
>>> 2007/11/20 08:36:17| Referer logging is disabled.
>>> 2007/11/20 08:36:17| Unlinkd pipe opened on FD 16
>>> 2007/11/20 08:36:17| Swap maxSize 102400 KB, estimated 7876 objects
>>> 2007/11/20 08:36:17| Target number of buckets: 393
>>> 2007/11/20 08:36:17| Using 8192 Store buckets
>>> 2007/11/20 08:36:17| Max Mem  size: 8192 KB
>>> 2007/11/20 08:36:17| Max Swap size: 102400 KB
>>> 2007/11/20 08:36:17| Local cache digest enabled; rebuild/rewrite every
>>> 3600/3600 sec
>>> 2007/11/20 08:36:17| Rebuilding storage in /var/spool/squid (DIRTY)
>>> 2007/11/20 08:36:17| Using Least Load store dir selection
>>> 2007/11/20 08:36:17| Set Current Directory to /var/spool/squid
>>> 2007/11/20 08:36:17| Loaded Icons.
>>> 2007/11/20 08:36:17| Accepting transparently proxied HTTP connections at
>>> 0.0.0.0, port 3128, FD 18.
>>> 2007/11/20 08:36:17| Accepting ICP messages at 0.0.0.0, port 3130,
>>>     
>>>       
>> FD 19.
>>   
>>     
>>> 2007/11/20 08:36:17| HTCP Disabled.
>>> 2007/11/20 08:36:17| WCCP Disabled.
>>> 2007/11/20 08:36:17| Ready to serve requests.
>>> 2007/11/20 08:36:17| WARNING: url_rewriter #3 (FD 9) exited
>>> 2007/11/20 08:36:17| WARNING: url_rewriter #1 (FD 7) exited
>>> 2007/11/20 08:36:17| WARNING: url_rewriter #2 (FD 8) exited
>>> 2007/11/20 08:36:17| Too few url_rewriter processes are running
>>> FATAL: The url_rewriter helpers are crashing too rapidly, need help!
>>>
>>> Squid Cache (Version 2.6.STABLE5): Terminated abnormally.
>>> CPU Usage: 0.028 seconds = 0.016 user + 0.012 sys
>>> Maximum Resident Size: 0 KB
>>> Page faults with physical i/o: 0
>>> Memory usage for squid via mallinfo():
>>>         total space in arena:    2640 KB
>>>         Ordinary blocks:         2569 KB      2 blks
>>>         Small blocks:               0 KB      0 blks
>>>         Holding blocks:           240 KB      1 blks
>>>         Free Small blocks:          0 KB
>>>         Free Ordinary blocks:      70 KB
>>>         Total in use:            2809 KB 98%
>>>         Total free:                70 KB 2%
>>>
>>>
>>> Squid killado.......
>>>
>>>
>>> Valeu
>>>
>>>     
>>>       
>> Bem, eu tentei fazer com o nome do dia, igual vc fez, e deu erro
>> tambem. Eu sempre uso aqui a inicial do nome do dia em ingles(salvo
>> umas  exceções). 
>> ou seja, para setar a  semana toda - seg a sex, eu utilizo:
>>
>> weekly mtwhf 00:00 - 23:59
>>
>>
>>
>> a unica coisa estranha de vc ter feito os testes e não ter dado nenhum
>> erro, eu digo porque olhe so a saida do meu comando com um asterisco
>> para a semana toda, por ex: 
>>
>> tulipa:/var/lib/squidguard/db/adult# echo "http://zzzsex.com 10.0.0.1/
>> - - GET" | squidGuard -c /etc/squid/squidGuard.conf -d
>> 2007-11-20 10:56:23 [24569] init iplist /etc/squid/diretoria.txt
>> 2007-11-20 10:56:23 [24569] syntax error in configfile
>> /etc/squid/squidGuard.conf line 12
>>
>> Eis a linha 12: 
>>
>> weekly  * 17:00 -       19:00
>>
>> dai eu a troco para 
>>
>> weekly  mtwhfa 17:00 -       19:00
>>
>> e olhe o resultado, ele chama a pagina de http://localhost/deny.html. 
>>
>> tulipa:/var/lib/squidguard/db/adult# echo "http://zzzsex.com 10.0.0.1/
>> - - GET" | squidGuard -c /etc/squid/squidGuard.conf -d
>> 2007-11-20 10:57:37 [24596] init iplist /etc/squid/diretoria.txt
>> 2007-11-20 10:57:37 [24596] init domainlist
>> /var/lib/squidguard/db/adult/domains
>> 2007-11-20 10:57:37 [24596] loading dbfile
>> /var/lib/squidguard/db/adult/domains.db
>> 2007-11-20 10:57:37 [24596] init urllist /var/lib/squidguard/db/adult/urls
>> 2007-11-20 10:57:37 [24596] loading dbfile
>> /var/lib/squidguard/db/adult/urls.db
>> 2007-11-20 10:57:37 [24596] init domainlist
>> /var/lib/squidguard/db/branco/domains
>> 2007-11-20 10:57:37 [24596] loading dbfile
>> /var/lib/squidguard/db/branco/domains.db
>> 2007-11-20 10:57:37 [24596] init urllist
>> /var/lib/squidguard/db/branco/urls
>> 2007-11-20 10:57:37 [24596] loading dbfile
>> /var/lib/squidguard/db/branco/urls.db
>> 2007-11-20 10:57:37 [24596] squidGuard 1.2.0 started (1195563457.693)
>> 2007-11-20 10:57:37 [24596] recalculating alarm in 3743 seconds
>> 2007-11-20 10:57:37 [24596] squidGuard ready for requests (1195563457.696)
>> http://localhost/deny.html 10.0.0.1/- - -
>>
>>
>> Daí,alterei a minha linha 12 para igual a sua, 
>>
>> weekly Tuesdays 12:00 - 14:00
>>
>> e olhe o erro que encontrei: 
>>
>>
>> tulipa:/var/lib/squidguard/db/adult# echo "http://zzzsex.com 10.0.0.1/
>> - - GET" | squidGuard -c /etc/squid/squidGuard.conf -d
>> 2007-11-20 11:00:08 [24651] init iplist /etc/squid/diretoria.txt
>> 2007-11-20 11:00:08 [24651] squidGuard: weekday formaterror in
>> /etc/squid/squidGuard.conf line 12
>>
>>
>> Colocando um Tuesdays em minusculas, obtenho (veja que o erro mudou): 
>>
>>
>> tulipa:/var/lib/squidguard/db/adult# echo "http://zzzsex.com 10.0.0.1/
>> - - GET" | squidGuard -c /etc/squid/squidGuard.conf -d
>> 2007-11-20 11:00:49 [24663] init iplist /etc/squid/diretoria.txt
>> 2007-11-20 11:00:49 [24663] syntax error in configfile
>> /etc/squid/squidGuard.conf line 12
>>
>>
>> colocando tuesday, obtenho: 
>>
>> tulipa:/var/lib/squidguard/db/adult# echo "http://zzzsex.com 10.0.0.1/
>> - - GET" | squidGuard -c /etc/squid/squidGuard.conf -d
>> 2007-11-20 11:02:16 [24690] init iplist /etc/squid/diretoria.txt
>> 2007-11-20 11:02:16 [24690] syntax error in configfile
>> /etc/squid/squidGuard.conf line 12
>>
>>
>> colocando tue, obtenho:
>>
>> tulipa:/var/lib/squidguard/db/adult# echo "http://zzzsex.com 10.0.0.1/
>> - - GET" | squidGuard -c /etc/squid/squidGuard.conf -d
>> 2007-11-20 11:03:46 [24726] init iplist /etc/squid/diretoria.txt
>> 2007-11-20 11:03:46 [24726] syntax error in configfile
>> /etc/squid/squidGuard.conf line 12
>>
>> mas colocando apenas t, obtenho o resultado correto e esperado(isto
>> apenas para terça-feira, para os outros dias da semana são as letras
>> correspondentes.)
>>
>>
>>
>> Bem, vc não disse  - ou pelo menos eu não me lembro de vc ter dito - a
>> sua versão do squidguard, nem do squid, nem do seu SO.
>> Eu particularmente agora estou em um debian sid, com squid Version
>> 2.6.STABLE16 e squidguard SquidGuard: 1.2.0 Sleepycat Software:
>> Berkeley DB 4.3.29: (September  6, 2005).
>>
>> Não compilei, apenas instalei a que vem na distribuiçao. 
>>
>> [ ]s, Henry
>>
>>
>>
>>
>> Enviar mensagem: [email protected] 
>> Assinar:  [EMAIL PROTECTED] 
>> Cancelar assinatura:  [EMAIL PROTECTED] 
>> Proprietário da lista:  [EMAIL PROTECTED]
>>
>>
>>  
>> Links do Yahoo! Grupos
>>
>>  
>>
>>   
>>     
>
> Cara, que coisa estranha, botei o weekly mtwhf 12:00 - 14:00 e o erro
> sumiu, mas ele não ná liberando no horário que eu botei, a conf tá assim:
>
> time afterwork {
>         weekly mtwhf 12:00 - 14:00
> }
>
> acl {
>         diretoria {
>                 pass all
>         }
>         default within afterwork {
>                 pass all
>         }else{
>                 pass !in-addr whitelist !ads !adult !antispyware
> !astrology !artnudes !beerliquorinfo !sexuality !games !onlinegames
> !virusinfected !shopping                       !culinary !blog !chat
> !naturism !aggressive !audio-video !drugs !gambling !hacking !mail
> !phishing !porn !proxy !spyware !violence !warez !guns                
> !reaffected !entertainment !cleaning !banking !socialnetworking
> !onlineauctions !kidstimewasting !ecommerce !radio !government
> !childcare                     !news !jobsearch !gardening !verisign
> !jewelry !dialers !cellphones !instantmessaging !mobile-phone
> !marketingware !filehosting !clothing                         !religion
> !onlinepayment !searchengines !ringtones !desktopsillies !vacation
> !sports !personalfinance !updatesites !mixed_adult !dating !weapons    
>             !beerliquorsale !financial !homerepair !medical !weather
> !frencheducation !hygiene !pets !webmail !sect  all
>
>                 redirect http://192.168.0.3/deny.html
>         }
> }
>
>
> 2007-11-20 13:10:52 [29020] loading dbfile
> /var/log/squid/squidGuard/db/blacklists/whitelist/urls.db
> 2007-11-20 13:10:52 [29020] squidGuard 1.2.0 started (1195575052.000)
> 2007-11-20 13:10:52 [29020] recalculating alarm in 2948 seconds
> 2007-11-20 13:10:52 [29020] squidGuard ready for requests (1195575052.019)
> 2007-11-20 13:10:52 [29020] Request(default/adult/-)
> http://finddestiny.com/ 10.0.0.1/- - -
> http://192.168.0.3/deny.html 10.0.0.1/- - -
> 2007-11-20 13:10:52 [29020] squidGuard stopped (1195575052.019)
>
>
> Quando dou o echo numa página bloqueada, ele redireciona pra deny.html,
> não era pra liberar já que está dentro do horário livre?
>
>
> Valeu fera.
>
>
> Enviar mensagem: [email protected] 
> Assinar:  [EMAIL PROTECTED] 
> Cancelar assinatura:  [EMAIL PROTECTED] 
> Proprietário da lista:  [EMAIL PROTECTED]
>
>
>  
> Links do Yahoo! Grupos
>
>  
>
>   


Consegui filtrar do jeito que eu queria, obrigado pelas dicas henrique.

[ ] 's


ThEcHaCaL

Responder a