R.S.P Andre
(usa Debian)
Enviado em 27/04/2010 - 15:06h
Boa Tarde pessoal..
Gostaria de pedir a ajuda dos amigos aqui do VOL para resolver um problema que começou do nada no meu servidor.
vou começar explicando desde o começo.
Aqui nós temos uma internet a cabo que mantem nosso IP fixo por um bom tempo mais de vez em quando ( muito raramente) eles trocam nosso ip.
Acontece que até ontem a noite nosso ip ainda era o antigo e a nossa net esta tudo ok. Acontece que hoje o nosso IP foi trocado por eles ai que começou o problema.
Aqui temos um proxy transparente, só que não precisa estar configurado nos browsers para navegar não ( por isso é transparente. rsrs)
Só que depois que o nosso IP mudou começou a M... a internet e o msn agora só conectam se o Proxy estiver configurado, caso contrário nada acontece.
Os cliente de email Evolution e Thunderbird também estão com esse problema, a unica diferença e que nem configurando o proxy no thunderbird ele que receber e nem mandar email..
Alguém poderia me dar uma dica no que pode esta acontecendo??
Segue meu squid.conf e meu dhcpd.conf.
####### Squid.conf by R.S.P###
http_port 3128 transparent
visible_hostname Solutec
error_directory /usr/share/squid/errors/Portuguese
cache_mem 128 MB
maximum_object_size_in_memory 64 KB
maximum_object_size 800 MB
minimum_object_size 2 KB
cache_swap_low 90
cache_swap_high 95
cache_dir ufs /var/spool/squid 3048 16 256
cache_access_log /var/log/squid/access.log
refresh_pattern ^ftp: 15 20% 2280
refresh_pattern ^gopher: 15 0% 2280
refresh_pattern . 15 20% 2280
acl all src 10.2.3.0/255.255.255.0
acl manager proto cache_object
acl localhost src 127.0.0.1/255.255.255.255
acl SSL_ports port 443 563 #News
acl Safe_ports port 21 #ftp
acl Safe_ports port 80 #http
acl Safe_ports port 443 563 #https News
acl Safe_ports port 70 #gopher
acl safe_ports port 210 #wais
acl Safe_ports port 280 #sei lá
acl Safe_ports port 488 #gss-http
acl Safe_ports port 591 #filemaker
acl Safe_ports port 777 # Multiling http
acl Safe_ports port 901 # nao tenho ideia
acl Safe_ports port 1025-65535 #
acl Safe_ports port 25 #smtp
acl Safe_ports port 51413 #torrent
acl Safe_ports port 110 #pop
acl Safe_ports port 407 1863 5190 # msn
acl Safe_ports port 10000
acl purge method PURGE
acl CONNECT method CONNECT
http_access allow manager localhost
http_access deny manager
http_access allow purge localhost
http_access deny purge
http_access deny !Safe_ports
acl redelocal src 10.2.3.0/24
############ Bloquando por Horario ############
#acl hora time 16:00-17:00
#http_access deny hora
###############################################
####### Autenticação #####
auth_param basic realm Solutec
auth_param basic program /usr/lib/squid/ncsa_auth /etc/squid/squid_passwd
#########################
acl malware_block_list url_regex -i "/etc/squid/malware"
http_access deny malware_block_list
########## Liberação de Atualização ##############
#acl repositorio url_regex "/etc/squid/repo"
#http_access allow repositorio
####################################################
################ IPs Liberados #####################
####################################################
acl diretoria src "/etc/squid/ip.diretoria" ##
####################################################
####################################################
####################################################
######## Autenticação de Usuários e ACL's ##########
####################################################
acl liberados proxy_auth solutec
##################################################
acl block proxy_auth loja
acl Sites url_regex -i "/etc/squid/sites.deny" ###########
acl Downloads url_regex -i "/etc/squid/downloads.deny" ##
acl Downloads.allow url_regex "/etc/squid/downloads.allow" ##
acl Palavras url_regex -i "/etc/squid/palavras.deny" ##
################ Fim da Autenticação #######################
##################### Regras das ACL's #####################
http_access allow diretoria
http_access allow liberados
http_access deny Sites
http_access deny Downloads
http_access deny Palavras
http_access allow Downloads.allow
http_access allow block
http_access allow localhost
http_access allow redelocal
http_access deny all
#############################################
Agora o dhcpd.conf
#############################################
###### DHCPD.CONF by R.S.P Infotech #########
#############################################
###########################################
ddns-update-style none; #### Basico ######
log-facility local7;#######################
###########################################
###### Minha Rede #########################
###########################################
subnet 10.2.3.0 netmask 255.255.255.0 {
range 10.2.3.100 10.2.3.102;
option domain-name-servers 10.2.3.1;
option domain-name "solutec.com.br";
option routers 10.2.3.1;
option broadcast-address 255.255.255.255;
default-lease-time 600;
max-lease-time 7200;
}
##########################
###### MAC ADDRESS #######
##########################
host solutec {
hardware ethernet 00:18:f3:48:e9:40;
fixed-address 10.2.3.2;
}
host agsilva {
hardware ethernet 00:0f:ea:d8:5b:79;
fixed-address 10.2.3.4;
}
#host robson {
#hardware ethernet 00:1e:0b:ee:a9:63;
#fixed-address 10.2.3.3;
#}
###########################################
Fico no aguardo de uma ajuda.
Desde já agradeço a todos.
ABS
~
~