fsouza_ata
(usa Debian)
Enviado em 14/07/2015 - 20:02h
sanojonas escreveu:
Passa o seu arquivo de configuração do squid para que possamos analisar melhor.
Boa noite, segue o squid.conf
###################################
## PORTA DE ACESSO A INTERNET######
###################################
http_port 3128
###################################
## NOME DO SERVIDOR ###############
###################################
visible_hostname gw-scrp
###################################
## MEMORIA CACHE ##################
###################################
## quanto da memoria RAM sera usada pelo cache ##
cache_mem 900 MB
## Tamanho máimo dos objetos na RAM
maximum_object_size_in_memory 2 MB
## tamanho máimo dos objetos no cache
maximum_object_size 700 MB
quick_abort_min -1
## Tamanho míimo dos objetos geralmente 0
minimum_object_size 0 KB
##cache_replacement_policy lru
##memory_replacement_policy lru
## indicam a partir de que percentagem do tamanho total
## cache o squid começ a apagar os arquivos
cache_swap_low 90
cache_swap_high 95
## Define o tamnho total do cache em disco - O endereç refere a
## que diretóio se deseja utilizar como cache, seguido do tamanho
## máimo do cache no disco (em MB) e os dois útimos núeros da
## linha indicam a quantidade de pastas e subpastas que o Squid
## utilizarápara se organizar ao gravar o cache
cache_dir ufs /var/spool/squid3/cache1 3000 16 256
cache_dir ufs /var/spool/squid3/cache2 3000 16 256
cache_dir ufs /var/spool/squid3/cache3 3000 16 256
cache_dir ufs /var/spool/squid3/cache4 3000 16 256
cache_dir ufs /var/spool/squid3/cache5 3000 16 256
cache_dir ufs /var/spool/squid3/cache6 3000 16 256
cache_dir ufs /var/spool/squid3/cache7 3000 16 256
cache_dir ufs /var/spool/squid3/cache8 3000 16 256
cache_dir ufs /var/spool/squid3/cache9 3000 16 256
cache_dir ufs /var/spool/squid3/cache10 3000 16 256
## caminho para onde devem ser exportados os logs que depois
## poderã ser analisados, manualmente, com com algum gerador
## de relatóios como o SARG
cache_access_log /var/log/squid3/access.log
#Converte as mensagens geradas pelo squid par o Portuguê
error_directory /usr/share/squid3/errors/Portuguese
refresh_pattern ^ftp: 15 20% 2280
refresh_pattern ^gopher: 15 0% 2280
refresh_pattern . 15 20% 2280
###################################
##### Cache do Windows Update #####
###################################
#refresh_pattern au.download.windowsupdate.com/.*.(cab|exe|msi) 10080 100% 43200 reload-into-ims
#refresh_pattern download.microsoft.com/.*.(cab|exe|msi) 10080 100% 43200 reload-into-ims
#refresh_pattern msgruser.dlservice.microsoft.com/.*.(cab|exe|msi) 10080 100% 43200 reload-into-ims
#refresh_pattern windowsupdate.com/.*.(cab|exe|msi) 10080 100% 43200 reload-into-ims
#refresh_pattern microsoft.com/.*.(cab|exe|msi) 10080 100% 43200 reload-into-ims
###################################
##### ACL Dominios do Windows Update #####
###################################
#acl windowsupdate dstdomain au.download.windowsupdate.com
#acl windowsupdate dstdomain download.microsoft.com
#acl windowsupdate dstdomain msgruser.dlservice.microsoft.com
#acl windowsupdate dstdomain windowsupdate.com
#acl windowsupdate dstdomain microsoft.com
##range_offset_limit -1 windowsupdate
##range_offset_limit 0
acl all src all
acl manager proto cache_object
acl localhost src 127.0.0.1/32
acl to_localhost dst 127.0.0.0/8
acl localnet src 10.0.0.0/8
acl SSL_ports port 443 # https
acl SSL_ports port 563 # snews
acl SSL_ports port 873 # rsync
acl Safe_ports port 80 # http
acl Safe_ports port 21 # ftp
acl Safe_ports port 443 # https
acl Safe_ports port 70 # gopher
acl Safe_ports port 210 # wais
acl Safe_ports port 1025-65535 # unregistered ports
acl Safe_ports port 280 # http-mgmt
acl Safe_ports port 488 # gss-http
acl Safe_ports port 591 # filemaker
acl Safe_ports port 777 # multiling http
acl Safe_ports port 631 # cups
acl Safe_ports port 873 # rsync
acl Safe_ports port 901 # SWAT
acl purge method PURGE
acl CONNECT method CONNECT
acl todos src 0.0.0.0/0.0.0.0
cache allow todos
###################################
## LIBERAR MSN ####################
###################################
#acl libera_msn url_regex "/etc/squid/msn"
#http_access allow libera_msn
###################################
## IPS LIBERADOS ##################
###################################
acl ipsliberados src "/etc/squid/regras/ips_liberados"
http_access allow ipsliberados
###################################
## SITES BLOQUEADOS ##############
###################################
acl sites_bloqueados url_regex "/etc/squid/regras/sites_bloqueados"
http_access allow sites_bloqueados
##################################
## PALAVRAS BLOQUEADAS ###########
##################################
#acl noway url_regex "/etc/squid/negado"
#http_access deny noway
###################################
## ACESSO A REDE ##################
###################################
http_access allow manager localhost
http_access deny manager
http_access allow purge localhost
http_access deny purge
http_access deny !Safe_ports
http_access deny CONNECT !SSL_ports
http_access allow localhost
http_access deny all
icp_access allow localnet
icp_access deny all
hierarchy_stoplist cgi-bin ?
access_log /var/log/squid3/access.log squid
refresh_pattern ^ftp: 1440 20% 10080
refresh_pattern ^gopher: 1440 0% 1440
refresh_pattern -i (/cgi-bin/|\?) 0 0% 0
refresh_pattern (Release|Package(.gz)*)$ 0 20% 2880
refresh_pattern . 0 20% 4320
acl shoutcast rep_header X-HTTP09-First-Line ^ICY.[0-9]
upgrade_http0.9 deny shoutcast
acl apache rep_header Server ^Apache
broken_vary_encoding allow apache
extension_methods REPORT MERGE MKACTIVITY CHECKOUT
hosts_file /etc/hosts
coredump_dir /var/spool/squid3
######################################
## PAGINA DE BLOQUEIO ################
######################################
error_directory /usr/share/squid3/errors/pt-br