<div dir="ltr">I didn't test this, but i think it works better:<div><b>http_access deny banned_sites !good_facebook</b></div><div>is it works?</div></div><div class="gmail_extra"><br><div class="gmail_quote">2016-01-18 16:35 GMT-02:00 Lucía Guevgeozian <span dir="ltr"><<a href="mailto:lulumailgo@gmail.com" target="_blank">lulumailgo@gmail.com</a>></span>:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div dir="ltr"><div><div>Ok, thanks again for the quick reply, I'm upgrading :)<br><br></div>Regards,<br></div>Lucia<br></div><div class="HOEnZb"><div class="h5"><div class="gmail_extra"><br><div class="gmail_quote">2016-01-18 14:58 GMT-03:00 Yuri Voinov <span dir="ltr"><<a href="mailto:yvoinov@gmail.com" target="_blank">yvoinov@gmail.com</a>></span>:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
<div text="#000000" bgcolor="#FFFFFF"><span>
<br>
-----BEGIN PGP SIGNED MESSAGE----- <br>
Hash: SHA256 <br>
<br>
<br>
<br></span>
18.01.16 23:56, Lucía Guevgeozian пишет:<span><br>
<span style="white-space:pre-wrap">> Thank you very much for your
responses.<br>
><br>
> I understand from
<a href="http://www.squid-cache.org/Doc/config/http_access/" target="_blank">http://www.squid-cache.org/Doc/config/http_access/</a> that<br>
> http_access will not work with https in version of squid
older than 3.3.<br>
><br>
> Do you know if an alternative config exists without
upgrading?</span><br></span>
We don't know it. HTTPS-ops required updrade.<div><div><br>
<span style="white-space:pre-wrap">><br>
><br>
> Regards,<br>
> Lucia<br>
><br>
> 2016-01-18 14:38 GMT-03:00 Antony Stone
<a href="mailto:Antony.Stone@squid.open.source.it" target="_blank"><Antony.Stone@squid.open.source.it></a>:<br>
><br>
>> On Monday 18 January 2016 at 18:31:40, Yuri Voinov wrote:<br>
>><br>
>>> Facebook (like more others) uses Akamai CDN as
background delivery<br>
>> service.<br>
>>><br>
>>> So, facebook.* domain is a little part of whole big
fat Facebook :)<br>
>><br>
>> True, but that should still match *request* URLs (once
the HTTP/S problem<br>
>> is<br>
>> sorted out), no?<br>
>><br>
>>> 18.01.16 23:29, Antony Stone пишет:<br>
>>>> On Monday 18 January 2016 at 18:22:24, Lucía
Guevgeozian wrote:<br>
>>>>> acl good_facebook urlpath_regex groups<br>
>>>>> acl banned_sites url_regex
"/etc/squid/config/banned_sites"<br>
>>>>><br>
>>>>> inside banned_sites I have the word facebook<br>
>>>>><br>
>>>>> http_access allow good_facebook<br>
>>>>> http_access deny banned_sites<br>
>>>><br>
>>>> Okay, so you've set up some HTTP access
controls... so far, so good.<br>
>>>><br>
>>>>> If I try accessing
<a href="https://www.facebook.com/groups" target="_blank">https://www.facebook.com/groups</a> I get blocked<br>
>>>><br>
>>>> That's an HTTPS URL, not HTTP :)<br>
>>>><br>
>>>>> ps: I'm using this squid version<br>
>>>>> Squid Cache: Version 3.0.STABLE18<br>
>>>><br>
>>>> That's old - you are strongly recommended to
upgrade.<br>
>>>><br>
>>>><br>
>>>> Antony.<br>
>><br>
>> --<br>
>> Perfection in design is achieved not when there is
nothing left to add, but<br>
>> rather when there is nothing left to take away.<br>
>><br>
>> - Antoine de Saint-Exupery<br>
>><br>
>> Please
reply to the<br>
>> list;<br>
>>
please *don't* CC<br>
>> me.<br>
>> _______________________________________________<br>
>> squid-users mailing list<br>
>> <a href="mailto:squid-users@lists.squid-cache.org" target="_blank">squid-users@lists.squid-cache.org</a><br>
>> <a href="http://lists.squid-cache.org/listinfo/squid-users" target="_blank">http://lists.squid-cache.org/listinfo/squid-users</a><br>
>><br>
><br>
><br>
><br>
> _______________________________________________<br>
> squid-users mailing list<br>
> <a href="mailto:squid-users@lists.squid-cache.org" target="_blank">squid-users@lists.squid-cache.org</a><br>
> <a href="http://lists.squid-cache.org/listinfo/squid-users" target="_blank">http://lists.squid-cache.org/listinfo/squid-users</a></span><br>
<br></div></div><span>
-----BEGIN PGP SIGNATURE-----
<br>
Version: GnuPG v2
<br>
<br></span>
iQEcBAEBCAAGBQJWnSevAAoJENNXIZxhPexGG9EH/0Rmqad38Lf8vHArd7ZrYrIo
<br>
Ie6viHuydYgsJOa+Ii/gqbsmIeiubPA8gY5mzJFzAo44k+Q0v8iUv8Qm2bQsD7v5
<br>
DhsEqenkfazw3Gv3PTQM27aUUk6ucDBJhtrCiGGrofLnMzaHoqVlSU0Vwkv2cNfr
<br>
flXuTfzhJtqNrXbiyVw75v8lvesRxozpfBas3vOBimrBCn6UFqyFlkirQSvo+m3R
<br>
IRN/FXOVpJqRXSAfZWRPQayfmDxf+cZbX2nhQvwvBatyu8+Z8s4sl7m6Lf/KU4U2
<br>
mZaRon9h7cJGmC/sVNre1JFI7tTACg2nnGjINtv+Itm7uE9r95CNr+OGxYkLUcM=
<br>
=EES7
<br>
-----END PGP SIGNATURE-----
<br>
<br>
</div>
<br>_______________________________________________<br>
squid-users mailing list<br>
<a href="mailto:squid-users@lists.squid-cache.org" target="_blank">squid-users@lists.squid-cache.org</a><br>
<a href="http://lists.squid-cache.org/listinfo/squid-users" rel="noreferrer" target="_blank">http://lists.squid-cache.org/listinfo/squid-users</a><br>
<br></blockquote></div><br></div>
</div></div><br>_______________________________________________<br>
squid-users mailing list<br>
<a href="mailto:squid-users@lists.squid-cache.org">squid-users@lists.squid-cache.org</a><br>
<a href="http://lists.squid-cache.org/listinfo/squid-users" rel="noreferrer" target="_blank">http://lists.squid-cache.org/listinfo/squid-users</a><br>
<br></blockquote></div><br><br clear="all"><div><br></div>-- <br><div class="gmail_signature"><div style="text-align:left"><font size="4"><b><u><br></u></b></font></div><div style="text-align:left"><font size="4"><b><u><img src="https://lh6.googleusercontent.com/-xODPvbH2piQ/T6RqD0dqXjI/AAAAAAAAAPk/0I8Y3aq0mYM/h120/linuxano+assinatura+e-mail.png"><br></u></b></font></div></div>
</div>