Mikrotik com squid 3.5.27

1. Mikrotik com squid 3.5.27

Luiz Barcelos
landsoft

(usa Debian)

Enviado em 30/05/2019 - 15:55h

Alguém já conseguiu fazer o squid funcionar em paralelo com o mikrotik?
O squid ate recebe a solicitação mas da acesso negado.
liberei tudo mas da bloqueado.

Esse é o squid.conf.

http_port 3128 intercept

cache_dir ufs /var/spool/squid 50000 16 256
access_log daemon:/var/log/squid/access.log squid
coredump_dir /var/spool/squid

acl mikrotik src 192.168.200.0/24
acl redelocal src 192.168.4.0/24

acl SSL_ports port 443
acl Safe_ports port 80 # http
acl Safe_ports port 21 # ftp
acl Safe_ports port 443 # https
acl Safe_ports port 70 # gopher
acl Safe_ports port 210 # wais
acl Safe_ports port 1025-65535 # unregistered ports
acl Safe_ports port 280 # http-mgmt
acl Safe_ports port 488 # gss-http
acl Safe_ports port 591 # filemaker
acl Safe_ports port 777 # multiling http
acl CONNECT method CONNECT


acl sites_bloqueados dstdomain "/etc/squid/sites_bloqueados"

acl maqs_liberadas src "/etc/squid/maquinas_liberadas"
acl ips_provisorios src "/etc/squid/ips_provisorios"
acl maqs_bloqueadas src "/etc/squid/maquinas_bloqueadas"
acl ips_liberados dst "/etc/squid/ips_liberados"
acl sites_liberados dstdomain "/etc/squid/sites_liberados"
acl sexo_liberado url_regex "/etc/squid/sexo_liberado"
acl sexo_bloqueado url_regex "/etc/squid/sexo_bloqueado"
acl musicas_liberadas url_regex "/etc/squid/musicas_liberadas"
acl musicas_bloqueadas url_regex "/etc/squid/musicas_bloqueadas"
acl palavras_bloqueadas url_regex "/etc/squid/palavras_bloqueadas"
#acl downloads urlpath_regex –i "/etc/squid/downloads_bloqueados"
#acl downliberados urlpath_regex –i "/etc/squid/downloads_liberados"


http_access deny !Safe_ports

http_access deny CONNECT !SSL_ports


http_access allow ips_liberados
http_access allow maqs_liberadas
http_access allow ips_provisorios
http_access allow sites_liberados
http_access allow musicas_liberadas
http_access allow sexo_liberado

#http_access deny maqs_bloqueadas
#http_access deny sites_bloqueados
#http_access deny palavras_bloqueadas
#http_access deny musicas_bloqueadas
#http_access deny sexo_bloqueado
#http_access deny downliberados
#http_access deny downloads
#http_access deny sites_bloqueados



http_access allow localhost manager
http_access deny manager


http_access allow mikrotik
http_access allow redelocal
http_access allow localhost
http_access allow all


error_directory /usr/share/squid-langpack/pt-br


refresh_pattern ^ftp: 1440 20% 10080
refresh_pattern ^gopher: 1440 0% 1440
refresh_pattern -i (/cgi-bin/|\?) 0 0% 0
refresh_pattern (Release|Packages(.gz)*)$ 0 20% 2880
refresh_pattern . 0 20% 4320

cache_effective_user proxy
cache_effective_group proxy
visible_hostname proxy


  






Patrocínio

Site hospedado pelo provedor RedeHost.
Linux banner

Destaques

Artigos

Dicas

Tópicos

Top 10 do mês

Scripts