<html>
<head>
<meta content="text/html; charset=utf-8" http-equiv="Content-Type">
</head>
<body text="#000000" bgcolor="#FFFFFF">
<br>
-----BEGIN PGP SIGNED MESSAGE----- <br>
Hash: SHA256 <br>
<br>
<br>
<br>
18.01.16 23:56, Lucía Guevgeozian пишет:<br>
<span style="white-space: pre;">> Thank you very much for your
responses.<br>
><br>
> I understand from
<a class="moz-txt-link-freetext" href="http://www.squid-cache.org/Doc/config/http_access/">http://www.squid-cache.org/Doc/config/http_access/</a> that<br>
> http_access will not work with https in version of squid
older than 3.3.<br>
><br>
> Do you know if an alternative config exists without
upgrading?</span><br>
We don't know it. HTTPS-ops required updrade.<br>
<span style="white-space: pre;">><br>
><br>
> Regards,<br>
> Lucia<br>
><br>
> 2016-01-18 14:38 GMT-03:00 Antony Stone
<a class="moz-txt-link-rfc2396E" href="mailto:Antony.Stone@squid.open.source.it"><Antony.Stone@squid.open.source.it></a>:<br>
><br>
>> On Monday 18 January 2016 at 18:31:40, Yuri Voinov wrote:<br>
>><br>
>>> Facebook (like more others) uses Akamai CDN as
background delivery<br>
>> service.<br>
>>><br>
>>> So, facebook.* domain is a little part of whole big
fat Facebook :)<br>
>><br>
>> True, but that should still match *request* URLs (once
the HTTP/S problem<br>
>> is<br>
>> sorted out), no?<br>
>><br>
>>> 18.01.16 23:29, Antony Stone пишет:<br>
>>>> On Monday 18 January 2016 at 18:22:24, Lucía
Guevgeozian wrote:<br>
>>>>> acl good_facebook urlpath_regex groups<br>
>>>>> acl banned_sites url_regex
"/etc/squid/config/banned_sites"<br>
>>>>><br>
>>>>> inside banned_sites I have the word facebook<br>
>>>>><br>
>>>>> http_access allow good_facebook<br>
>>>>> http_access deny banned_sites<br>
>>>><br>
>>>> Okay, so you've set up some HTTP access
controls... so far, so good.<br>
>>>><br>
>>>>> If I try accessing
<a class="moz-txt-link-freetext" href="https://www.facebook.com/groups">https://www.facebook.com/groups</a> I get blocked<br>
>>>><br>
>>>> That's an HTTPS URL, not HTTP :)<br>
>>>><br>
>>>>> ps: I'm using this squid version<br>
>>>>> Squid Cache: Version 3.0.STABLE18<br>
>>>><br>
>>>> That's old - you are strongly recommended to
upgrade.<br>
>>>><br>
>>>><br>
>>>> Antony.<br>
>><br>
>> --<br>
>> Perfection in design is achieved not when there is
nothing left to add, but<br>
>> rather when there is nothing left to take away.<br>
>><br>
>> - Antoine de Saint-Exupery<br>
>><br>
>> Please
reply to the<br>
>> list;<br>
>>
please *don't* CC<br>
>> me.<br>
>> _______________________________________________<br>
>> squid-users mailing list<br>
>> <a class="moz-txt-link-abbreviated" href="mailto:squid-users@lists.squid-cache.org">squid-users@lists.squid-cache.org</a><br>
>> <a class="moz-txt-link-freetext" href="http://lists.squid-cache.org/listinfo/squid-users">http://lists.squid-cache.org/listinfo/squid-users</a><br>
>><br>
><br>
><br>
><br>
> _______________________________________________<br>
> squid-users mailing list<br>
> <a class="moz-txt-link-abbreviated" href="mailto:squid-users@lists.squid-cache.org">squid-users@lists.squid-cache.org</a><br>
> <a class="moz-txt-link-freetext" href="http://lists.squid-cache.org/listinfo/squid-users">http://lists.squid-cache.org/listinfo/squid-users</a></span><br>
<br>
-----BEGIN PGP SIGNATURE-----
<br>
Version: GnuPG v2
<br>
<br>
iQEcBAEBCAAGBQJWnSevAAoJENNXIZxhPexGG9EH/0Rmqad38Lf8vHArd7ZrYrIo
<br>
Ie6viHuydYgsJOa+Ii/gqbsmIeiubPA8gY5mzJFzAo44k+Q0v8iUv8Qm2bQsD7v5
<br>
DhsEqenkfazw3Gv3PTQM27aUUk6ucDBJhtrCiGGrofLnMzaHoqVlSU0Vwkv2cNfr
<br>
flXuTfzhJtqNrXbiyVw75v8lvesRxozpfBas3vOBimrBCn6UFqyFlkirQSvo+m3R
<br>
IRN/FXOVpJqRXSAfZWRPQayfmDxf+cZbX2nhQvwvBatyu8+Z8s4sl7m6Lf/KU4U2
<br>
mZaRon9h7cJGmC/sVNre1JFI7tTACg2nnGjINtv+Itm7uE9r95CNr+OGxYkLUcM=
<br>
=EES7
<br>
-----END PGP SIGNATURE-----
<br>
<br>
</body>
</html>