[squid-users] MSN causing a breach.. help!

From: Roland Roland <R_O_L_A_N_D_at_hotmail.com>
Date: Tue, 12 Jan 2010 13:56:55 +0200

i have the following config set to allow msn messenger to connect
through my squid.

acl msnport port 1863
http_access allow connect msnport
http_access allow msnport

i have a security breach where one of the users may be using port 1863
to reach a paid proxy that he acquired.
is there a way to allow port 1863 to only work with msn messenger
destinations? i've already denied access to that domain and warned the
user but i want a more permanent solution
the simplest way possible is to do an AND access rule with msn's domains
but there's a vast list of domains that should be added and i dont have
them all..
so is there another way ?

PS: i'm using ADIUM client to connect to msn so when using msn's mime
type its not working not sure why...
Received on Tue Jan 12 2010 - 11:57:07 MST

This archive was generated by hypermail 2.2.0 : Wed Jan 13 2010 - 12:00:03 MST