Re: [squid-users] setting up a blacklist

From: Schelstraete Bart <bart@dont-contact.us>
Date: Fri, 19 Sep 2003 22:51:32 +0200

Bill,

--
acl porn dstdom_regex "/usr/share/squid/blacklists/porn/urls"
acl porn dstdom_regex "/usr/share/squid/blacklists/porn/domains"
acl porn "/usr/share/squid/blacklists/porn/expressions"
--
As far as I know this is not correct.
Other Squid users: Pls correct me if I'm wrong.
rgrds,
		Bart
Bill McCormick wrote:
>>>Squid brings my dual Xeon Dell to it's knees on startup and
>>>      
>>>
>>shutdown.
>>
>>Can you post your squid.conf (without comments or blank lines)?
>>
>>Adam
>>
>>
>>    
>>
>
>Here ya go ...
>
>hierarchy_stoplist cgi-bin ?
>acl QUERY urlpath_regex cgi-bin \?
>no_cache deny QUERY
>auth_param basic children 5
>auth_param basic realm Squid proxy-caching web server
>auth_param basic credentialsttl 2 hours
>refresh_pattern ^ftp:           1440    20%     10080
>refresh_pattern ^gopher:        1440    0%      1440
>refresh_pattern .               0       20%     4320
>acl all src 0.0.0.0/0.0.0.0
>acl manager proto cache_object
>acl localhost src 127.0.0.1/255.255.255.255
>acl to_localhost dst 127.0.0.0/8
>acl SSL_ports port 443 563
>acl Safe_ports port 80          # http
>acl Safe_ports port 21          # ftp
>acl Safe_ports port 443 563     # https, snews
>acl Safe_ports port 70          # gopher
>acl Safe_ports port 210         # wais
>acl Safe_ports port 1025-65535  # unregistered ports
>acl Safe_ports port 280         # http-mgmt
>acl Safe_ports port 488         # gss-http
>acl Safe_ports port 591         # filemaker
>acl Safe_ports port 777         # multiling http
>acl CONNECT method CONNECT
>http_access allow manager localhost
>http_access deny manager
>http_access deny !Safe_ports
>http_access deny CONNECT !SSL_ports
>acl homenet src 192.168.212.0/24
>http_access allow homenet
>http_access allow localhost
>http_access deny all
>acl porn dstdom_regex "/usr/share/squid/blacklists/porn/urls"
>acl porn dstdom_regex "/usr/share/squid/blacklists/porn/domains"
>acl porn "/usr/share/squid/blacklists/porn/expressions"
>deny_info ERR_NO_PORNO porn
>http_access deny porn
>http_reply_access allow all
>icp_access allow all
>visible_hostname billinux
>coredump_dir /var/spool/squid
>---
>Outgoing mail is certified Virus Free.
>Checked by AVG anti-virus system (http://www.grisoft.com).
>Version: 6.0.518 / Virus Database: 316 - Release Date: 9/11/2003
>
>
>  
>
Received on Fri Sep 19 2003 - 14:51:29 MDT

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 17:19:58 MST