Enviado em 12/06/2014 - 11:09h
Bom dia galera da VOL.
# Configuracao do Squid
##### Mensagens de erro em Portugues #####
error_directory /usr/share/squid3/errors/Portuguese
#Porta do Squid
http_port 3128 transparent
dns_nameservers 192.168.3.1 8.8.8.8
#Nome do servidor
visible_hostname SERVIDOR
##### Logs de acesso #####
access_log /var/log/squid3/access.log squid
cache_log /var/log/squid3/cache.log
# Regras acl padrao
acl manager proto cache_object
acl localhost src 127.0.0.1/0
acl SSL_ports port 443
acl Safe_ports port 80 # http
acl Safe_ports port 21 # ftp
acl Safe_ports port 443 # https
acl Safe_ports port 70 # gopher
acl Safe_ports port 210 # wais
acl Safe_ports port 280 # http-mgmt
acl Safe_ports port 488 # gss-http
acl Safe_ports port 591 # filemaker
acl Safe_ports port 777 # multiling http
acl Safe_ports port 901 # swat
acl Safe_ports port 400
acl Safe_ports port 200 503 404
acl Safe_ports port 1025-65535 # portas altas
acl CONNECT method CONNECT
# Permissoes e bloqueios padrao
http_access allow manager localhost
http_access deny manager
http_access allow localhost
http_access deny !Safe_ports
http_access deny CONNECT !SSL_ports
##### BLOQUEIO POR IP E MAC ######
#acl block2 src 192.168.3.17
#http_access deny block2
acl block_mac arp 94:39:E5:FC:6F:21 #/aqui está bloqueando por MAC
http_access deny block_mac
###### Bloqueio de sites por URL #####
acl sociais url_regex -i "/etc/squid3/acl/sociais"
http_access deny sociais
######## Bloqueio de downloads por extensao #########
acl downloads_proibidos url_regex -i \.exe \.torrent \.avi \.bat \.rmvb \.mp4 \.iso
http_access deny downloads_proibidos
####### Permisao rede local e servidor ########
acl redelocal src 192.168.3.0/24
http_access allow localhost
http_access allow redelocal
####### Bloqueio de usuarios fora da rede ######
http_access deny all