Re: [squid-users] Securing a SQUID server

From: B <basti@dont-contact.us>
Date: Sat, 10 Sep 2005 21:54:59 +0200

so am i. cheers

Quoting Odhiambo Washington <wash@wananchi.com>:

> * On 08/09/05 05:45 +0300, turgut kalfaoglu wrote:
> > Dear all,
> >
> > I am now running our squid server (thanks to those who replied) as a
> > front for multiple web servers,
> > and it sure made a difference in speed!
> >
> > Originally I had set its ACLs pretty liberally, and now I would like to
> > curb it down so that only
> > traffic that is requesting web pages from our servers can access it.
> >
> > Does anyone have any ACLs that they can share?
>
> acl our_servers src cidr (e.g. a.b.c.d/29)
> http_access allow our_servers
> http_access deny all
>
> That simple! I am high on beer at the moment, but I believe that is how
> you do it. This is what I have on the top of my head after all the
> reading I have done on squid.conf.default.
>
>
> -Wash
>
> http://www.netmeister.org/news/learn2quote.html
>
> --
> +======================================================================+
> |\ _,,,---,,_ | Odhiambo Washington <wash@wananchi.com>
> Zzz /,`.-'`' -. ;-;;,_ | Wananchi Online Ltd. www.wananchi.com
> |,4- ) )-,_. ,\ ( `'-'| Tel: +254 20 313985-9 +254 20 313922
> '---''(_/--' `-'\_) | GSM: +254 722 743223 +254 733 744121
> +======================================================================+
> Never call a man a fool; borrow from him.
>

-

b .
Received on Sat Sep 10 2005 - 13:55:02 MDT

This archive was generated by hypermail pre-2.1.9 : Sat Oct 01 2005 - 12:00:03 MDT