Re: [squid-users] Securing a SQUID server

From: Odhiambo Washington <wash@dont-contact.us>
Date: Sat, 10 Sep 2005 22:51:29 +0300

* On 08/09/05 05:45 +0300, turgut kalfaoglu wrote:
> Dear all,
>
> I am now running our squid server (thanks to those who replied) as a
> front for multiple web servers,
> and it sure made a difference in speed!
>
> Originally I had set its ACLs pretty liberally, and now I would like to
> curb it down so that only
> traffic that is requesting web pages from our servers can access it.
>
> Does anyone have any ACLs that they can share?

acl our_servers src cidr (e.g. a.b.c.d/29)
http_access allow our_servers
http_access deny all

That simple! I am high on beer at the moment, but I believe that is how
you do it. This is what I have on the top of my head after all the
reading I have done on squid.conf.default.

-Wash

http://www.netmeister.org/news/learn2quote.html

--
+======================================================================+
    |\      _,,,---,,_     | Odhiambo Washington    <wash@wananchi.com>
Zzz /,`.-'`'    -.  ;-;;,_ | Wananchi Online Ltd.   www.wananchi.com
   |,4-  ) )-,_. ,\ (  `'-'| Tel: +254 20 313985-9  +254 20 313922
  '---''(_/--'  `-'\_)     | GSM: +254 722 743223   +254 733 744121
+======================================================================+
Never call a man a fool; borrow from him.
Received on Sat Sep 10 2005 - 13:51:35 MDT

This archive was generated by hypermail pre-2.1.9 : Sat Oct 01 2005 - 12:00:03 MDT