|
|
|
прозрачный прокси
|
|||
|---|---|---|---|
|
#18+
помогите мне пожалюста. Я установил прозрачный прокси но шас незнаю как использвовать Все IP адреса которые подключены в сеть никакой чат не могут использвовать Можно ли чтоб и AQENT и ICQ и SKYPE и MSN добавит в squid.conf и через firewall их перенаправит? На заранее спосибо большое ... |
|||
|
:
Нравится:
Не нравится:
|
|||
| 25.09.2008, 17:14:17 |
|
||
|
прозрачный прокси
|
|||
|---|---|---|---|
|
#18+
Qabrielпрозрачный прокси ... squid.conf squid - HTTP/HTTPS/FTP proxy Для прочих протоколов необходим, например, socks proxy. Dante или что-от подобное. ... |
|||
|
:
Нравится:
Не нравится:
|
|||
| 25.09.2008, 17:20:13 |
|
||
|
прозрачный прокси
|
|||
|---|---|---|---|
|
#18+
я установил rinetd ... |
|||
|
:
Нравится:
Не нравится:
|
|||
| 25.09.2008, 17:28:45 |
|
||
|
прозрачный прокси
|
|||
|---|---|---|---|
|
#18+
кто нибуд помогите ... |
|||
|
:
Нравится:
Не нравится:
|
|||
| 25.09.2008, 18:07:57 |
|
||
|
прозрачный прокси
|
|||
|---|---|---|---|
|
#18+
вот ето мой firewall add 009 allow ip from 192.168.11.69 any to me 21,22 add 010 allow all from any to any via em1 add 020 allow all from any to any via lo0 add 030 deny ip from any to 127.0.0.0/8 add 040 deny ip from 127.0.0.0/8 to any add 050 fwd 127.0.0.1,3129 tcp from 192.168.52.0/24 to any 20,21,22,23,80,443,5190 out via em0 add 050 fwd 127.0.0.1,3129 tcp from 192.168.11.0/24 to any 20,21,22,23,80,443,5190 out via em0 add 050 fwd 127.0.0.1,3129 tcp from 192.168.192.0/24 to any 20,21,22,23,80,443,5190 out via em0 add 050 fwd 127.0.0.1,3129 tcp from 192.168.194.0/24 to any 20,21,22,23,80,443,5190 out via em0 add 060 divert natd ip from any to any in via em0 add 070 check-state add 100 skipto 400 icmp from any to any keep-state add 105 skipto 400 udp from any to any 123 out via em0 keep-state add 110 skipto 400 udp from any to any 53 out via em0 keep-state add 111 skipto 400 tcp from any to any 53 out via em0 setup keep-state add 130 skipto 400 all from 192.168.52.0/24 to any 5190 out via em0 setup keep-state add 140 skipto 400 all from 192.168.52.0/24 to any 4899 out via em0 setup keep-state add 150 skipto 400 all from 192.168.52.0/24 to any 3389 out via em0 setup keep-state add 160 skipto 400 all from 192.168.52.0/24 to any 25 out via em0 setup keep-state add 170 skipto 400 all from 192.168.52.0/24 to any 110 out via em0 setup keep-state add 130 skipto 400 all from 192.168.194.0/24 to any 5190 out via em0 setup keep-state add 140 skipto 400 all from 192.168.194.0/24 to any 4899 out via em0 setup keep-state add 150 skipto 400 all from 192.168.194.0/24 to any 3389 out via em0 setup keep-state add 160 skipto 400 all from 192.168.194.0/24 to any 25 out via em0 setup keep-state add 170 skipto 400 all from 192.168.194.0/24 to any 110 out via em0 setup keep-state add 130 skipto 400 all from 192.168.192.0/24 to any 5190 out via em0 setup keep-state add 140 skipto 400 all from 192.168.192.0/24 to any 4899 out via em0 setup keep-state add 150 skipto 400 all from 192.168.192.0/24 to any 3389 out via em0 setup keep-state add 160 skipto 400 all from 192.168.192.0/24 to any 25 out via em0 setup keep-state add 170 skipto 400 all from 192.168.192.0/24 to any 110 out via em0 setup keep-state add 130 skipto 400 all from 192.168.11.0/24 to any 5190 out via em0 setup keep-state add 140 skipto 400 all from 192.168.11.0/24 to any 4899 out via em0 setup keep-state add 150 skipto 400 all from 192.168.11.0/24 to any 3389 out via em0 setup keep-state add 160 skipto 400 all from 192.168.11.0/24 to any 25 out via em0 setup keep-state add 170 skipto 400 all from 192.168.11.0/24 to any 110 out via em0 setup keep-state add 190 skipto 400 all from 85.132.70.22 to any out via em0 setup keep-state add 200 deny all from 192.168.0.0/16 to any in via em0 #RFC 1918 private IP add 201 deny all from 172.16.0.0/12 to any in via em0 #RFC 1918 private IP add 202 deny all from 10.0.0.0/8 to any in via em0 #RFC 1918 private IP add 203 deny all from 127.0.0.0/8 to any in via em0 #loopback add 204 deny all from 0.0.0.0/8 to any in via em0 #loopback add 205 deny all from 169.254.0.0/16 to any in via em0 #DHCP auto-config add 206 deny all from 192.0.2.0/24 to any in via em0 #reserved for docs add 207 deny all from 204.152.64.0/23 to any in via em0 #Sun cluster add 208 deny all from 224.0.0.0/3 to any in via em0 #Class D & E multicast add 215 deny tcp from any to any 113 in via em0 add 220 deny tcp from any to any 137 in via em0 add 221 deny tcp from any to any 138 in via em0 add 222 deny tcp from any to any 139 in via em0 add 223 deny tcp from any to any 81 in via em0 add 300 allow icmp from any to 85.132.70.22 in via em0 icmptypes 0,8,11 limit src-addr 2 add 310 allow tcp from any to 85.132.70.22 80 in via em0 setup limit src-addr 2 add 320 allow tcp from any to 85.132.70.22 22 in via em0 setup limit src-addr 2 add 330 allow tcp from any to 85.132.70.22 25 in via em0 setup limit src-addr 2 add 340 allow tcp from any to 85.132.70.22 110 in via em0 setup limit src-addr 2 add 350 allow tcp from any to 85.132.70.22 4899 in via em0 setup limit src-addr 2 add 360 allow all from any to any established add 399 deny log all from any to any add 400 divert natd ip from any to any out via em0 add 410 allow all from any to any add 999 deny log all from any to any ... |
|||
|
:
Нравится:
Не нравится:
|
|||
| 25.09.2008, 18:09:22 |
|
||
|
прозрачный прокси
|
|||
|---|---|---|---|
|
#18+
а ето мой squid.conf acl all src 0.0.0.0/0.0.0.0 acl manager proto cache_object acl localhost src 127.0.0.1/255.255.255.255 acl to_localhost dst 127.0.0.0/8 acl SSL_ports port 443 563 5190 9091 acl Safe_ports port 80 # http acl Safe_ports port 21 # ftp acl Safe_ports port 443 563 2083 # ssl acl icq_ports port 5190 # ICQ acl Safe_ports port 70 # gopher acl Safe_ports port 210 # wais acl Safe_ports port 1025-65535 # unregistered ports acl Safe_ports port 280 # http-mgmt acl Safe_ports port 488 # gss-http acl Safe_ports port 591 # filemaker acl Safe_ports port 777 # multiling http acl CONNECT method CONNECT acl inet_users src "/usr/local/etc/squid/inet_users" acl inet_full src "/usr/local/etc/squid/inet_full" acl deny_url url_regex "/usr/local/etc/squid/deny_url" acl deny_domains dstdomain "/usr/local/etc/squid/deny_domains" acl inet_restrict src "/usr/local/etc/squid/inet_restrict" acl domains_for_restrict dstdomain "/usr/local/etc/squid/domains_for_restrict" acl inet_icq src "/usr/local/etc/squid/inet_icq" http_access deny deny_domains #http_access deny deny_domains_all http_access allow inet_full http_access allow inet_restrict domains_for_restrict http_access allow inet_users http_access allow inet_icq icq_ports http_access allow manager localhost http_access deny manager http_access deny !Safe_ports http_access deny CONNECT !SSL_ports http_access deny deny_url # We strongly recommend the following be uncommented to protect innocent # web applications running on the proxy server who think the only # one who can access services on "localhost" is a local user #http_access deny to_localhost # # INSERT YOUR OWN RULE(S) HERE TO ALLOW ACCESS FROM YOUR CLIENTS # Example rule allowing access from your local networks. Adapt # to list your (internal) IP networks from where browsing should # be allowed #acl our_networks src 192.168.11.0/24 192.168.192.0/24 #http_access allow our_networks # And finally deny all other access to this proxy http_access deny all ... |
|||
|
:
Нравится:
Не нравится:
|
|||
| 25.09.2008, 18:12:33 |
|
||
|
прозрачный прокси
|
|||
|---|---|---|---|
|
#18+
а ето /etc/rc.conf # -- sysinstall generated deltas -- # Wed Sep 10 11:21:55 2008 # added by xorg-libraries port keymap="us.iso" local_startup="/usr/local/etc/rc.d" usbd_enable="YES" # -- sysinstall generated deltas -- # Wed Sep 10 11:25:27 2008 ifconfig_em1="inet 192.168.11.130 netmask 255.255.255.0" sshd_enable="YES" ftpd_enable="YES" firewall_enable="YES" firewall_type="/etc/firewall.conf" firewall_logging="YES" asterisk_enable="YES" squid_enable="YES" # -- sysinstall generated deltas -- # Tue Sep 16 15:15:14 2008 ifconfig_em0="inet 85.132.70.22 netmask 255.255.255.128" defaultrouter="85.132.70.1" hostname="cail.rabita.az" natd_enable="yes" natd_interface="em0" rinetd_enable="YES" gateway_enable="YES" ... |
|||
|
:
Нравится:
Не нравится:
|
|||
| 25.09.2008, 18:14:54 |
|
||
|
|

start [/forum/topic.php?fid=25&msg=35560565&tid=1486520]: |
0ms |
get settings: |
10ms |
get forum list: |
18ms |
check forum access: |
5ms |
check topic access: |
5ms |
track hit: |
57ms |
get topic data: |
13ms |
get forum data: |
3ms |
get page messages: |
54ms |
get tp. blocked users: |
2ms |
| others: | 211ms |
| total: | 378ms |

| 0 / 0 |
