Squid 2.1 pre3 ACL's

From: Clint Sim <cbs@dont-contact.us>
Date: Fri, 6 Nov 1998 09:32:02 +0200 (CAT)

Hi,

For bandwidth related reasons, we have decided to deny access to smut
sites, I have the following in my squid.conf

acl porn.domain dstdomain "/usr/apps/squid/etc/filters/porn.domain"
acl porn.ip dst "/usr/apps/squid/etc/filters/porn.ip"
http_access deny porn.domain
http_access deny porn.ip

The files that contain the domains and I.P's are in a one site per line
format.

The strange thing is that:

1) Some of the sites listed can still be accessed. I have tried sites at
the beginning, middle and end of the file and their position doesn't seem
to affect the decision to allow or deny them. I have tried changing the
format of the files to all the sites on one line, no difference.

2) The limited blocking only seems to work for about a day, then all
denied sites are allowed thru. A "squid -k reconfigure" sets things back
to the limited blocking.

Is this a problem with squid 2 ? I upgraded to 2.1 because this was
happening with squid 2.0 as well.

Any suggestions?

Thanks

Clint Sim
Systems Administrator
Data Control & Systems
Phone: +263-4-758194/5/6
Fax: +263-4-773971
Received on Fri Nov 06 1998 - 00:31:41 MST

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 16:42:58 MST