squid.conf
时间: 2008.12.24 22:12:00
标签:
http_port 192.168.127.3:3128
acl all src 0/0
# 定义客户端访问来源
acl manager proto cache_object
acl localhost src 127.0.0.1/32
request_body_max_size 2 KB
request_header_max_size 1 KB
#request_size 100 KB
# 定义管理
acl SSL_ports port 443 563
acl Safe_ports port 80
# 定义 安全端口
acl CONNECT method CONNECT
# 定义链接
acl IPForHostname dstdom_regex ^[0-9]+/.[0-9]+/.[0-9]+/.[0-9]+$
# 定义使用IP地址的访问地址
#acl allow_list url_regex "/usr/local/squid/etc/acl/allow.list"
#acl deny_list url_regex "/usr/local/squid/etc/acl/deny.list"
# 定义allow.list和deny.list路径
http_access allow manager localhost
http_access deny manager
# 仅允许本地的管理
#http_access deny !Safe_ports
#http_access deny CONNECT !SSL_ports
# 拒绝非安全端口的访问
#http_access deny IPForHostname
# 拒绝基于IP地址的对本机的访问
#http_access allow allow_list
# 允许allow.list 的域名列表被访问
#http_access deny deny_list
# 拒绝deny.list 的域名列表被访问
#http_access deny all
# 除上以外,拒绝一切
acl advance src 192.168.127.2-192.168.127.255/32
acl normal src 192.168.127.11-192.168.127.255/32
#acl baduser src 192.168.127.100/32
#acl baddst dst www.soocol.com
#此语句有警告
#acl all src 0.0.0.0/0
#http_access deny baduser
http_access allow advance
http_access allow normal
#http_access deny all
acl all src 0/0
# 定义客户端访问来源
acl manager proto cache_object
acl localhost src 127.0.0.1/32
request_body_max_size 2 KB
request_header_max_size 1 KB
#request_size 100 KB
# 定义管理
acl SSL_ports port 443 563
acl Safe_ports port 80
# 定义 安全端口
acl CONNECT method CONNECT
# 定义链接
acl IPForHostname dstdom_regex ^[0-9]+/.[0-9]+/.[0-9]+/.[0-9]+$
# 定义使用IP地址的访问地址
#acl allow_list url_regex "/usr/local/squid/etc/acl/allow.list"
#acl deny_list url_regex "/usr/local/squid/etc/acl/deny.list"
# 定义allow.list和deny.list路径
http_access allow manager localhost
http_access deny manager
# 仅允许本地的管理
#http_access deny !Safe_ports
#http_access deny CONNECT !SSL_ports
# 拒绝非安全端口的访问
#http_access deny IPForHostname
# 拒绝基于IP地址的对本机的访问
#http_access allow allow_list
# 允许allow.list 的域名列表被访问
#http_access deny deny_list
# 拒绝deny.list 的域名列表被访问
#http_access deny all
# 除上以外,拒绝一切
acl advance src 192.168.127.2-192.168.127.255/32
acl normal src 192.168.127.11-192.168.127.255/32
#acl baduser src 192.168.127.100/32
#acl baddst dst www.soocol.com
#此语句有警告
#acl all src 0.0.0.0/0
#http_access deny baduser
http_access allow advance
http_access allow normal
#http_access deny all