Re: [squid-users] Squid, Dansguardian and follow_x_forwarded_for

From: Henrik Nordstrom <henrik@dont-contact.us>
Date: Thu, 16 Nov 2006 04:37:51 +0100

ons 2006-11-15 klockan 21:33 -0500 skrev Dean Searle:

> first cache after the user. When I use 'follow_x_forwarded_for allow
> localhost' or 'follow_x_forwarded_for allow all' and then try to access
> google.com it comes up with an Access Denied page from Squid, but my web
> log from sarg does show the proper IP coming through, but only denied.

Check your http_access rules. When using follow_x_forwarded_for the src
acl will match the original source IP.

To restrict direct Squid access tell Squid to only listen on localhost
(127.0.0.1:3128).

Regards
Henrik

Received on Wed Nov 15 2006 - 20:38:00 MST

This archive was generated by hypermail pre-2.1.9 : Fri Dec 01 2006 - 12:00:03 MST