Search squid archive

Re: Re: Block access to consumer accounts and services while allowing access to Google Apps for your organization

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

I am setup the header replacement:

header_access Other deny all
header_replace X-GoogApps-Allowed-Domains mydomain

but i dont know how to test this parameters. ¿does it look ok? or the
correct configuration is:

header_access X-GoogApps-Allowed-Domains deny all
header_replace X-GoogApps-Allowed-Domains mydomain

Im a newbie in ssl interception, i dont configure any rule. My setup
is (not ssl-bump configured):

configure options:  '--build=x86_64-redhat-linux-gnu'
'--host=x86_64-redhat-linux-gnu' '--target=x86_64-redhat-linux-gnu'
'--program-prefix=' '--prefix=/usr' '--exec-prefix=/usr'
'--bindir=/usr/bin' '--sbindir=/usr/sbin' '--sysconfdir=/etc'
'--includedir=/usr/include' '--libdir=/usr/lib64'
'--libexecdir=/usr/libexec' '--sharedstatedir=/usr/com'
'--mandir=/usr/share/man' '--infodir=/usr/share/info'
'--exec_prefix=/usr' '--bindir=/usr/sbin'
'--libexecdir=/usr/lib64/squid' '--localstatedir=/var'
'--datadir=/usr/share' '--sysconfdir=/etc/squid' '--enable-arp-acl'
'--enable-epoll' '--enable-snmp' '--enable-removal-policies=heap,lru'
'--enable-storeio=aufs,coss,diskd,null,ufs' '--enable-ssl'
'--with-openssl=/usr/kerberos' '--enable-delay-pools'
'--enable-linux-netfilter' '--with-pthreads'
'--with-winbind-auth-challenge' '--enable-useragent-log'
'--enable-referer-log' '--disable-dependency-tracking'
'--enable-cachemgr-hostname=localhost' '--enable-underscores'
'--enable-cache-digests' '--enable-ident-lookups'
'--enable-follow-x-forwarded-for' '--enable-wccpv2'
'--enable-fd-config' '--with-maxfd=16384'
'target_alias=x86_64-redhat-linux-gnu' 'CFLAGS=-D_FORTIFY_SOURCE=2
-fPIE -Os -g -pipe -fsigned-char' 'LDFLAGS=-pie'

Un saludo

Raul Caballero Girol

Departamento de Sistemas

Doctor Zamenhof, 22. 28027 Madrid

Este correo electrónico y los documentos que, en su caso, lo
acompañan, puede contener información reservada y/o confidencial
dirigida exclusivamente al uso del destinatario. Si Ud. no es el
destinatario, le rogamos que nos lo notifique inmediatamente, por esta
misma vía o por teléfono (902.50.6000), no estando autorizado para su
exhibición, copia ni distribución a otras personas o entidades. Si ha
recibido este correo electrónico por error, le rogamos que lo destruya
o elimine de su sistema.

2012/4/17 Eliezer Croitoru <eliezer@xxxxxxxxxxxx>:
> On 17/04/2012 11:57, Raul Caballero Girol wrote:
>> Hello everybody,
>> I need to implement this procedure:
>> Is possible with squid?. I have tried a lot of posibilities but it doesn't
>> work
>> Raul Caballero Girol
> What is your setup?
> have you tried to use "ssl-bump"? because it's a requirement for this to
> work.
> what did you tried to do on squid until now?
> post the squid.conf
> Regards,
> Eliezer
> --
> Eliezer Croitoru
> IT consulting for Nonprofit organizations
> eliezer <at>

[Linux Audio Users]     [Photo]     [Yosemite News]     [Samba]     [Video Projectors]     [Video Devices]     [Big List of Linux Books]     [LCD TVs]     [Webcams]     [Linux USB]

  Powered by Linux