Re: [squid-users] Re: IpIntercept.cc(137) NetfilterInterception: NF getsockopt(SO_ORIGINAL_DST) failed on FD 4125: (2) No such file or directory

From: Amos Jeffries <squid3_at_treenet.co.nz>
Date: Tue, 19 Nov 2013 23:17:43 +1300

On 19/11/2013 10:50 p.m., Omid Kosari wrote:
> Amos Jeffries-2 wrote
>> This is how you do the exact same thing with only Squid instead of using
>> jesred:
>>
>> acl domains_to_redirect dstdomain
>> "/etc/squid3/to_redirect_program.acl"
>> acl netshar_regex url_regex "/etc/squid3/netshar_regex.acl"
>> deny_info 302:http://www.netshahr.com/website-unavailable/
>> netshar_regex
>> adapted_http_access deny domains_to_redirect redirect_regex
>
> One more question . What is the job of last line ? I mean
> "adapted_http_access deny domains_to_redirect redirect_regex" . Seems it has
> no effect !
>

It is to deny the requests which match those ACLs and make it past
ICAP/eCAP and URL-rewriting.

It operates exactly like http_access on the altered URL details.

Ah, sorry I typo'd. That should have been:

 adapted_http_access deny domains_to_redirect netshar_regex

Amos
Received on Tue Nov 19 2013 - 10:17:50 MST

This archive was generated by hypermail 2.2.0 : Tue Nov 19 2013 - 12:00:04 MST