Re: [squid-users] (block Downloading) Urgent Help Required

From: Kashif Ali Bukhari <[email protected]>
Date: Sun, 27 Feb 2005 10:00:05 +0500

why d'nt you try squid.2.5STABLE1 oh higher
and use url_regex
and also see wht is your access log showing

On Fri, 25 Feb 2005 23:49:29 +0500, Ali Kmboh <ali_kmboh@msn.com> wrote:
>
>
> Hi
> Dear Friends
> i need some urgent help to block my network clients to downloading of
> following file types .exe .zip .tar .cab .ra .rm .ram .mp3 .mpg .mpeg .wav
> .wma
> .mid
> i m useing SquidNT 2.4 stable on windows XP plateform for cacheing. its
> working fine but it does not block downloading these files
> my currunt configurationis as follow
>
> .........................................................
>
> http_port 3128
> icp_port 3130
> htcp_port 4827
> snmp_port 3401
>
> cache_mem 128 MB
> cache_swap_low 90
> cache_swap_high 95
> minimum_object_size 0 KB
> maximum_object_size 999999 KB
> maximum_object_size_in_memory 256 KB
> ipcache_size 2048
> ipcache_low 95
> ipcache_high 100
>
> cache_dir ufs d:/cache 2048 16 256
> cache_log c:/squid/var/logs/cache.log
> cache_access_log c:/squid/var/logs/access.log
> mime_table c:/squid/etc/mime.conf
> error_directory c:/squid/share/errors/English
> coredump_dir c:/squid/var/cache
> cache_store_log none
> logfile_rotate 0
>
> dns_nameservers 203.135.14.195 203.135.23.69
> cache_peer 203.135.35.1 parent 8080 0 no-query default
>
> prefer_direct off
> unlinkd_program c:/squid/libexec/unlinkd.exe
> auth_param basic children 5
> auth_param basic realm Squid proxy-caching web server
> auth_param basic credentialsttl 2 hours
>
> refresh_pattern -i \.gif$ 10080 20% 43200
> reload-into-ims
> refresh_pattern -i \.jpg$ 10080 20% 43200
> reload-into-ims
> refresh_pattern -i \.bom\.gov\.au 30 20% 120
> reload-into-ims
> refresh_pattern -i \.html$ 1440 20% 22160
> reload-into-ims
> refresh_pattern -i \.htm$ 1440 20% 22160
> reload-into-ims
> refresh_pattern -i \.class$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.zip$ 43200 20% 43200
> reload-into-ims
> refresh_pattern -i \.jpeg$ 10080 20% 43200
> reload-into-ims
> refresh_pattern -i \.mid$ 10080 20% 43200
> override-lastmod
> refresh_pattern -i \.shtml$ 30 20% 22160
> reload-into-ims
> refresh_pattern -i \.exe$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.thm$ 720 20% 43200
> reload-into-ims
> refresh_pattern -i \.wav$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.txt$ 720 20% 43200
> reload-into-ims
> refresh_pattern -i \.cab$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.au$ 10080 20% 43200
> reload-into-ims
> refresh_pattern -i \.mov$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.ram$ 43200 20% 43200
> override-lastmod
> refresh_pattern -i \.rm$ 43200 20% 43200
> override-lastmod
> override-expire ignore-reload reload-into-ims
> refresh_pattern -i \.avi$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.mp4$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.chtml$ 720 20% 22160
> reload-into-ims
> refresh_pattern -i \.bmp$ 10080 20% 43200
> reload-into-ims
> refresh_pattern -i \.phtml$ 720 20% 22160
> reload-into-ims
> refresh_pattern -i \.mpg$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.pdf$ 10080 20% 43200
> reload-into-ims
> refresh_pattern -i \.art$ 10080 20% 43200
> reload-into-ims
> refresh_pattern -i \.swf$ 10080 20% 43200
> reload-into-ims
> refresh_pattern -i \.mp3$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.ra$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.doc$ 10800 20% 43200
> reload-into-ims
> refresh_pattern -i \.gz$ 10080 20% 43200
> reload-into-ims
> refresh_pattern -i \.tgz$ 10080 20% 43200
> reload-into-ims
> refresh_pattern -i \.tar$ 10080 20% 43200
> reload-into-ims
> refresh_pattern -i \.aif$ 10080 20% 43200
> reload-into-ims
> refresh_pattern -i \.arj$ 10080 20% 43200
> reload-into-ims
> refresh_pattern -i \.c$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.dxr$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.hqx$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.jpe$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.lha$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.lzh$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.mp2$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.mpe$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.mpeg$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.mpga$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.pl$ 0 20% 43200
> reload-into-ims
> refresh_pattern -i \.ps$ 0 20% 43200
> reload-into-ims
> refresh_pattern -i \.qt$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.ras$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.sea$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.sit$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.tif$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.wrl$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.qt$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.ras$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.sea$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.sit$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.wrl$ 1440 20% 43200
> reload-into-ims
> refresh_pattern -i \.wmi$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.wma$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.ra$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.asf$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.vqf$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.wmv$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.rar$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.qt$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.iso$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern -i \.wmv$ 43200 20% 43200
> override-lastmod
> override-expire reload-into-ims ignore-reload
> refresh_pattern ^ftp: 1440 20% 10080
> refresh_pattern ^gopher: 1440 0% 1440
> refresh_pattern . 0 20% 4320
>
> negative_ttl 1 minutes
> positive_dns_ttl 16 hours
> negative_dns_ttl 1 minutes
>
> acl all src 0.0.0.0/0.0.0.0
>
> acl SERVER src 192.168.1.1-192.168.1.254
> http_access allow SERVER
>
> acl Network src 192.168.0.1-192.168.0.254
> http_access allow Network
>
> acl localhost src 127.0.0.1/255.255.255.255
> http_access allow localhost
>
> acl to_localhost dst 127.0.0.0/8
> http_access deny to_localhost
>
> acl snmppublic snmp_community public
> snmp_access allow snmppublic
>
> acl manager proto cache_object
> http_access allow manager
> http_access allow manager localhost
>
> acl download urlpath_regex -i \.rm$ \.ram$ \.rpm$ \.mpg$ \.mpeg$ \.avi$
> \.wav$
> \.wma$ \.wmW$ \.mp3$ \.zip$ \.exe$
> http_access deny download
>
> acl SSL_ports port 443 563
> acl Safe_ports port 80 # http
> acl Safe_ports port 21 # ftp
> acl Safe_ports port 443 563 # https, snews
> acl Safe_ports port 70 # gopher
> acl Safe_ports port 210 # wais
> acl Safe_ports port 1025-65535 # unregistered ports
> acl Safe_ports port 280 # http-mgmt
> acl Safe_ports port 488 # gss-http
> acl Safe_ports port 591 # filemaker
> acl Safe_ports port 777 # multiling http
> acl CONNECT method CONNECT
> http_access deny !Safe_ports
>
> http_reply_access allow all
>
> icp_access allow all
>
> miss_access allow all
>
> http_access deny all
>
> cache_mgr Ali_Kmboh@MsN.CoM
> visible_hostname cache.HiLink.Org
>
> memory_pools on
> store_avg_object_size 150 KB
> reload_into_ims on
> client_persistent_connections off
> server_persistent_connections off
> pipeline_prefetch on
>
> ...............................................................................
>
> Reply Me Soon
> Keep Smileing Alwayz
> Ali Kmboh
>
> _________________________________________________________________
> Express yourself instantly with MSN Messenger! Download today it's FREE!
> http://messenger.msn.click-url.com/go/onm00200471ave/direct/01/
>
>

-- 
Syed Kashif Ali 
+923004018407
+923004295604
MSN:- kbukhari@msn.com
11-B Toheed Park Gulshen-e-Ravi Lahore, Pakistan
Received on Sat Feb 26 2005 - 22:00:07 MST

This archive was generated by hypermail pre-2.1.9 : Tue Mar 01 2005 - 12:00:02 MST