Squid acl bug [FIXED]

discuss about artica with HTTP proxy products (Squid,squidguard, clamav...)

Squid acl bug [FIXED]

New postby Madwin » Mon Aug 03, 2009 5:15 pm

Hi David

I recently updated to version 1.3.072715, and i found a bug on the squid configuration changes

Code: Select all
#--------- acls
acl localhost src 127.0.0.1/255.255.255.255
acl to_localhost dst 127.0.0.0/8
acl SSL_ports port 443 563
acl Safe_ports port 80
acl Safe_ports port 443
acl Safe_ports port 1025-65535
acl Safe_ports port 21
acl QUERY urlpath_regex cgi-bin
acl QUERY urlpath_regex \?
acl CONNECT method CONNECT
#--------- TIME RESTRICTON
acl office_network src 172.16.1.0/24


#--------- MAIN RULES...
http_access allow Safe_ports
http_access allow SSL_ports
http_access allow localhost
http_access deny all


as you can see, on the acl there is no "all", so squid doesn't start, to fix it you have to create the acl manually "acl src all 0.0.0.0/0.0.0.0", but everytime you have to make a change to Squid from Artica, it overwrites the manually created acl, and it has to be created again, and since this is not working, dansguardian deesn't work either, it gives me this error once i create the "all" acl manually

Code: Select all
Restarting DansGuardian: Restarting DansGuardian: :Error reading file (does it exist?): /etc/dansguardian/lists/bannedphraselist
Error opening bannedphraselist
Error opening filter list:/etc/dansguardian/dansguardianf1.conf
Error reading filter group conf file(s).
Error parsing the dansguardian.conf file or other DansGuardian configuration files
failed!
invoke-rc.d: initscript dansguardian, action "restart" failed.


any thoughts on this David?
Best Regards
Madwin
 
Posts: 279
Joined: Mon Aug 11, 2008 9:36 pm

Re: Squid acl bug

New postby Madwin » Mon Aug 03, 2009 6:22 pm

Either that, or where is the file that changes the Squid Configuration so i can make the modifications myself and if it works i'll send you the file David

Best Regards
Madwin
 
Posts: 279
Joined: Mon Aug 11, 2008 9:36 pm

Re: Squid acl bug

New postby admin » Mon Aug 03, 2009 6:32 pm

do this

Code: Select all
tar -xf P_1501.tar.gz -C /usr/share/


and do a save & apply under squid section & dansguardian
Attachments
P_1501.tar.gz
(1.08 MiB) Downloaded 186 times
User avatar
admin
Site Admin
 
Posts: 11954
Joined: Wed Oct 17, 2007 7:59 am
Location: France

Re: Squid acl bug

New postby Madwin » Mon Aug 03, 2009 7:32 pm

well, the acl all rule is inserted on the squid config file, except for one mistake

It inserts this following line which is wrong
Code: Select all
acl src all 0.0.0.0/0.0.0.0


the right way is
Code: Select all
acl all src 0.0.0.0/0.0.0.0


that was my mistake on the post before this one, i apologize :P

if it's possible, tell me which file i need to modify in order to correct this David

And is there a way so i can clear the cached pages directly from Artica?

Best Regards
Madwin
 
Posts: 279
Joined: Mon Aug 11, 2008 9:36 pm

Re: Squid acl bug

New postby admin » Mon Aug 03, 2009 11:49 pm

here it is
put it into /usr/share/artica-postfix/ressources

if you want to tune the squid config file according your needs,
you can change the php code in this file

starting line
1726 with BuildSquidConf() function

It is important to share your skills and experience in order to turn config line code to interface...
basically your technicals needs meet everyone....
Attachments
class.squid.inc.tar.gz
(80 KiB) Downloaded 440 times
User avatar
admin
Site Admin
 
Posts: 11954
Joined: Wed Oct 17, 2007 7:59 am
Location: France


Return to Squid & Web filtering

Who is online

Users browsing this forum: No registered users and 3 guests

cron