<html>
<head>
<meta content="text/html; charset=utf-8" http-equiv="Content-Type">
</head>
<body bgcolor="#FFFFFF" text="#000000">
<br>
-----BEGIN PGP SIGNED MESSAGE----- <br>
Hash: SHA256 <br>
<br>
Finally,<br>
<br>
read this thread too:<br>
<br>
<a class="moz-txt-link-freetext" href="http://www.spinics.net/lists/squid/msg81113.html">http://www.spinics.net/lists/squid/msg81113.html</a><br>
<br>
Some questions already answered here.<br>
<br>
05.05.16 3:26, Yuri Voinov пишет:<br>
<span style="white-space: pre;">><br>
> As a part of solution I recommend (by my own experience)
consider to use this:<br>
><br>
> <a class="moz-txt-link-freetext" href="https://www.urlfilterdb.com/products/ufdbguard.html">https://www.urlfilterdb.com/products/ufdbguard.html</a><br>
><br>
> But I repeat: this is NOT magic button "Disable all". This is
relatively effective tool to block categories.<br>
><br>
> This is only URL/HTTP based tool, which required some more
forces to use it with HTTPS.<br>
> And this can't be other means to replace when it comes to
other protocols.<br>
><br>
> Squid is only HTTP/HTTPS proxy. Not at all existing
protocols.<br>
><br>
> 05.05.16 3:18, Yuri Voinov пишет:<br>
><br>
><br>
> > Generally, for effective blocking of everything
better design<br>
> would first consider - as everyone and everything is
engeneered,<br>
><br>
> > and then look for the magic button "to disable all
to hell."<br>
><br>
><br>
><br>
> > Then it becomes clear what is possible and what
means - and<br>
> what is not.<br>
><br>
><br>
><br>
> > Especially P2P - this is at all not about Squid.<br>
><br>
><br>
><br>
> > 05.05.16 3:11, Yuri Voinov пишет:<br>
><br>
><br>
><br>
><br>
><br>
> > > Facebook uses Akamai as background CDN,
so you<br>
> need to block<br>
><br>
> > Akamai (related URL's, which can be
difficult, so<br>
> consider to use<br>
><br>
> > Cisco NBAR DPI functionality). too in case
to<br>
> completely block FB.<br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
> > > YT still uses QUIC/SPDY, so read this<br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
>
<a class="moz-txt-link-freetext" href="http://wiki.squid-cache.org/KnowledgeBase/Block%20QUIC%20protocol">http://wiki.squid-cache.org/KnowledgeBase/Block%20QUIC%20protocol</a><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
> > > About P2P/Torrents said enough here<br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
> > ><br>
>
<a class="moz-txt-link-freetext" href="http://wiki.squid-cache.org/ConfigExamples/TorrentFiltering">http://wiki.squid-cache.org/ConfigExamples/TorrentFiltering</a><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
> > > Note: Using Cisco NBAR required valid
service<br>
> contract.<br>
><br>
> > Protocol packs is not lying at all angles,
and are<br>
> updated<br>
><br>
> > monthly.<br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
> > > 05.05.16 3:04, Maile Halatuituia пишет:<br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
> > > > Someone with ideas on how
to block<br>
><br>
> > Facebook,Youtube, P2P<br>
><br>
><br>
><br>
> > > Traffic though my squid box.
Facebook seems<br>
> to be<br>
><br>
> > working but<br>
><br>
><br>
><br>
> > > likely some users bypass to
youtube.com and<br>
> the rest<br>
><br>
> > are blocked.<br>
><br>
><br>
><br>
> > > Also am looking to block P2P
traffic , BITS<br>
> proticols,<br>
><br>
> > etc etc<br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
> > > > Cheers<br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
> > > > Confidentiality Notice: This
email<br>
> (including any<br>
><br>
> > attachment)<br>
><br>
><br>
><br>
> > > is intended for internal use
only. Any<br>
> unauthorized<br>
><br>
> > use,<br>
><br>
><br>
><br>
> > > dissemination or copying of the
content is<br>
> prohibited.<br>
><br>
> > If you are<br>
><br>
><br>
><br>
> > > not the intended recipient and
have received<br>
> this<br>
><br>
> > e-mail in error,<br>
><br>
><br>
><br>
> > > please notify the sender by email
and delete<br>
> this email<br>
><br>
> > and any<br>
><br>
><br>
><br>
> > > attachment.<br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
> > > ><br>
> _______________________________________________<br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
> > > > squid-users mailing list<br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
> > > >
<a class="moz-txt-link-abbreviated" href="mailto:squid-users@lists.squid-cache.org">squid-users@lists.squid-cache.org</a><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
> > > ><br>
> <a class="moz-txt-link-freetext" href="http://lists.squid-cache.org/listinfo/squid-users">http://lists.squid-cache.org/listinfo/squid-users</a><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
></span><br>
<br>
-----BEGIN PGP SIGNATURE-----
<br>
Version: GnuPG v2
<br>
<br>
iQEcBAEBCAAGBQJXKmmSAAoJENNXIZxhPexG2jQIAJ5pQcfnv12LW2wg7ygamFZt
<br>
+ms5HjYM+/vB0k7Zg5lxp/cnJeKEFV3cGH4fPFHekh0Qt3sL1ttzauqfnf0rOELA
<br>
xFg+7XuQ8VgXF7+eBqmnvu2k7yjDqE8OjJUcssiBEmBvRQFFLSclAuyM9gWIKBDT
<br>
VPN9XkvwPN2zo5NsBg/7zgFUmKfant1pWNh/2bObBoUo3+kL4bGzPfDUoO251RxU
<br>
mrZLff3rgAw9RdYhy5JX3AICYXke9CDrLZcQHJ/4BSlSpmYOq0YBHWqd+rqMEeZO
<br>
Zn7hQcpKd1Dw4XaEo6BuVy6Pg7aFXFiaPzzXsSPzKIWSYOIT9AcEppDBQKNppa8=
<br>
=tkwj
<br>
-----END PGP SIGNATURE-----
<br>
<br>
</body>
</html>