ASK SQUID PROXY SERVER, CLIENT BELUM BISA CONNET

Diskusi tentang Ubuntu Server baik webserver, database server, samba server dan service lainnya serta jaringan menggunakan Sistem Operasi Ubuntu.
User avatar
vindor
Posts: 1
Joined: 10 Mar 2015, 08:41

ASK SQUID PROXY SERVER, CLIENT BELUM BISA CONNET

Postby vindor » 10 Mar 2015, 09:00

Hallo Master2 Ubuntu Linux dll.

Ane newbie nih di ubuntu forum indonesia, jadi klo misalkan salah kamar harap maklum. dan juga Ane newbie nih dalam hal ubuntu.

langsung ke topik pembahasan dan pertanyaan ane ya gan.

ane sekarang dalam tahap installasi squid proxy server 2.7 STABLE 7 di ubuntu 10.04 LTS.
sebelumnya vendor ane sudah installasi sampai berhasil, namun dalam beberapa minggu yang lalu system ubuntu ane ada masalah dan terpaksa ane harus format dan reiinstall, dan akhirnya ane harus merelakan settingan SQUID nya hilang, tapi ane punya backup RULE squid yang sudah2 ada sebelumnya sesuai dengan konfigurasi tempat ane.

Dan singkat cerita ane udah reiisntall Ubuntu nya dan berhasil installasi squid dan sudah jalan hanya di servernya saja dan sementara client belum bisa terhubung dengan proxy yang ane buat.

=========RULE=============================
#Recommended minimum configuration:
acl all src all
acl manager proto cache_object
acl localhost src 127.0.0.1/32
acl to_localhost dst 127.0.0.0/8 0.0.0.0/32
#
# Example rule allowing access from your local networks.
# Adapt to list your (internal) IP networks from where browsing
# should be allowed
#acl localnet src 10.0.0.0/8 # RFC1918 possible internal network
#acl localnet src 172.16.0.0/12 # RFC1918 possible internal network
#acl localnet src 192.168.0.0/16 # RFC1918 possible internal network
acl localnet src 51.10.30.0/24
acl localnet src 51.10.31.0/24
acl localnet src 51.10.32.0/24
acl localnet src 51.10.33.0/24
acl localnet src 51.10.34.0/24
#
#IP ADDRESS CLIENT BLOCK
acl not_access src 51.10.31.62 51.10.31.63 51.10.31.64
acl not_access src 51.10.31.65
acl not_access src 51.10.33.51 51.10.33.52 51.10.33.53
acl not_access src 51.10.33.54 51.10.33.55
acl not_access src 51.10.31.61 51.10.31.68
http_access deny not_access
#
# Added by Koro: 24.06.2013
#
acl porn url_regex "/etc/squid/porn.txt"
acl noporn url_regex "/etc/squid/noporn.txt"
#acl mp3 url_regex mp3

#
acl SSL_ports port 443 # https
acl SSL_ports port 563 # snews
acl SSL_ports port 873 # rsync
acl SSL_ports port 10000 # https
acl SSL_ports port 8443 # https
acl Safe_ports port 80 # http
acl Safe_ports port 21 # ftp
acl Safe_ports port 443 # https
acl Safe_ports port 70 # gopher
acl Safe_ports port 210 # wais
acl Safe_ports port 1025-65535 # unregistered ports
acl Safe_ports port 280 # http-mgmt
acl Safe_ports port 488 # gss-http
acl Safe_ports port 591 # filemaker
acl Safe_ports port 777 # multiling http
acl Safe_ports port 631 # cups
acl Safe_ports port 873 # rsync
acl Safe_ports port 901 # SWAT
acl Safe_ports port 10000 # Webmin (Added by Koro 01.07.2013)
acl purge method PURGE
acl CONNECT method CONNECT


http_access deny porn !noporn

http_access allow localnet
http_access allow localhost

# And finally deny all other access to this proxy
http_access deny all

itu hanya rule2 yang intinya saja ane cantumkan.

jadi pertanyaan ane apakah ada settingan lain selain settingan rule SQUID.CONF trsebut agar bisa client bisa terkoneksi?????



Terima Kasih.
User avatar
myitanium
Posts: 409
Joined: 14 Jul 2011, 14:56
Contact:

Re: ASK SQUID PROXY SERVER, CLIENT BELUM BISA CONNET

Postby myitanium » 14 Mar 2015, 11:58

itu transparent proxy atau manual proxy? kalau diatur di browser client pakai proxy itu bisa gak?
User avatar
bang_andi
Posts: 398
Joined: 03 Sep 2010, 09:07
Location: Di sekitar sungai musi...
Contact:

Re: ASK SQUID PROXY SERVER, CLIENT BELUM BISA CONNET

Postby bang_andi » 28 Mar 2015, 10:01

maaf out of topic, tp sy melihat ada button suka facebook dibagian bawah trit, ini baru atau sy sj yg baru lihat..bagus jg..hehe
User avatar
adidark33
Posts: 12
Joined: 24 Mar 2013, 16:38

Re: ASK SQUID PROXY SERVER, CLIENT BELUM BISA CONNET

Postby adidark33 » 22 Apr 2015, 04:17

ini konfig squid minimum dan work

Code: Select all

#
# Recommended minimum configuration:
#
# Example rule allowing access from your local networks.
# Adapt to list your (internal) IP networks from where browsing
# should be allowed
acl localnet src 10.0.0.0/8 # RFC1918 possible internal network
acl localnet src 172.16.0.0/12 # RFC1918 possible internal network
acl localnet src 192.168.0.0/16 # RFC1918 possible internal network
acl localnet src fc00::/7 # RFC 4193 local private network range
acl localnet src fe80::/10 # RFC 4291 link-local (directly plugged) machines
acl SSL_ports port 443
acl Safe_ports port 80 # http
acl Safe_ports port 21 # ftp
acl Safe_ports port 443 # https
acl Safe_ports port 70 # gopher
acl Safe_ports port 210 # wais
acl Safe_ports port 1025-65535 # unregistered ports
acl Safe_ports port 280 # http-mgmt
acl Safe_ports port 488 # gss-http
acl Safe_ports port 591 # filemaker
acl Safe_ports port 777 # multiling http
acl CONNECT method CONNECT
#
# Recommended minimum Access Permission configuration:
#
# Deny requests to certain unsafe ports
http_access deny !Safe_ports
# Deny CONNECT to other than secure SSL ports
http_access deny CONNECT !SSL_ports
# Only allow cachemgr access from localhost
http_access allow localhost manager
http_access deny manager
# We strongly recommend the following be uncommented to protect innocent
# web applications running on the proxy server who think the only
# one who can access services on "localhost" is a local user
#http_access deny to_localhost
#
# INSERT YOUR OWN RULE(S) HERE TO ALLOW ACCESS FROM YOUR CLIENTS
#
# Example rule allowing access from your local networks.
# Adapt localnet in the ACL section to list your (internal) IP networks
# from where browsing should be allowed
http_access allow localnet
http_access allow localhost
# And finally deny all other access to this proxy
http_access deny all
# Squid normally listens to port 3128
http_port 3128
# Uncomment and adjust the following to add a disk cache directory.
cache_dir ufs /cache 3000 16 256
# Leave coredumps in the first cache dir
coredump_dir /cache
#
# Add any of your own refresh_pattern entries above these.
#
refresh_pattern ^ftp: 1440 20% 10080
refresh_pattern ^gopher: 1440 0% 1440
refresh_pattern -i (/cgi-bin/|\?) 0 0% 0
refresh_pattern . 0 20% 4320


ane liat konfig agan kok gak ada http_port nya ?

Return to “Ubuntu Server”

Who is online

Users browsing this forum: No registered users and 5 guests