The OpenNET Project / Index page

[ новости /+++ | форум | теги | ]

форумы  помощь  поиск  регистрация  майллист  вход/выход  слежка  RSS
"Squid+squidGuard ограничение скорости пользователям"
Вариант для распечатки  
Пред. тема | След. тема 
Форумы Настройка Squid и других прокси серверов (Public)
Изначальное сообщение [ Отслеживать ]

"Squid+squidGuard ограничение скорости пользователям"  +/
Сообщение от Алиен on 20-Июл-09, 18:10 
Не режится скорость у клиентов. Сначала авторизация идет в squid и есть еще авторизация в squidGuard.

squid -v

Squid Cache: Version 2.5.STABLE12
configure options:  --build=i386-redhat-linux --host=i386-redhat-linux --target=i386-redhat-linux-gnu --program-prefix= --prefix=/usr --exec-prefix=/usr --bindir=/usr/bin --sbindir=/usr/sbin --sysconfdir=/etc --datadir=/usr/share --includedir=/usr/include --libdir=/usr/lib --libexecdir=/usr/libexec --localstatedir=/var --sharedstatedir=/usr/com --mandir=/usr/share/man --infodir=/usr/share/info --exec_prefix=/usr --bindir=/usr/sbin --libexecdir=/usr/lib/squid --localstatedir=/var --datadir=/usr/share --sysconfdir=/etc/squid --enable-poll --enable-snmp --enable-removal-policies=heap,lru --enable-storeio=aufs,coss,diskd,null,ufs --enable-ssl --with-openssl=/usr/kerberos --enable-delay-pools --enable-linux-netfilter --with-pthreads --enable-ntlm-auth-helpers=SMB,winbind,fakeauth --enable-external-acl-helpers=ip_user,ldap_group,unix_group,wbinfo_group,winbind_group --enable-auth=basic,digest,ntlm --enable-digest-auth-helpers=password --with-winbind-auth-challenge --enable-useragent-log --enable-referer-log --disable-dependency-tracking --enable-cachemgr-hostname=localhost --enable-underscores --enable-basic-auth-helpers=LDAP,MSNT,NCSA,PAM,SMB,YP,getpwnam,multi-domain-NTLM,SASL,winbind --enable-cache-digests --enable-ident-lookups --with-large-files --enable-fd-config --enable-follow-x-forwarded-for

squid.conf

acl speed_64 dst 192.168.1.207/255.255.255.255
acl all src 0.0.0.0/0.0.0.0
acl unitel_bill dst 78.138.158.18/32
delay_pools 1
delay_class 1 1
delay_access 1 allow speed_64
delay_access 1 deny all
delay_parameters 1 64000/6
acl snmppublic snmp_community public
acl manager proto cache_object
acl localhost src 127.0.0.1/255.255.255.255
acl to_localhost dst 127.0.0.0/8
acl SSL_ports port 443 563
acl Safe_ports port 80        # http
acl Safe_ports port 21        # ftp
acl Safe_ports port 443 563    # https, snews
acl Safe_ports port 70        # gopher
acl Safe_ports port 210        # wais
acl Safe_ports port 5190
acl Safe_ports port 1025-65535    # unregistered ports
acl Safe_ports port 280        # http-mgmt
acl Safe_ports port 488        # gss-http
acl Safe_ports port 591        # filemaker
acl Safe_ports port 777        # multiling http
acl CONNECT method CONNECT

squidGuard.conf
#
# CONFIG FILE FOR SQUIDGUARD
#
dbhome /etc/squid/squidGuard
logdir /var/log/squid
# TIME RULES:
# abbrev for weekdays:
# s = sun, m = mon, t =tue, w = wed, h = thu, f = fri, a = sat
#time workhours {
#    weekly mtwhf 09:00 - 18:00
#}
#
# REWRITE RULES:
#
rew dmz {
    s@://admin/@://admin.foo.bar.no/@i
    s@://foo.bar.no/@://www.foo.bar.no/@i
}
#
# SOURCE ADDRESSES:
#
src admin {
    ip    192.168.1.117
}
src dir {
    ip    192.168.1.107
}
src unitel-clients {
    ip 192.168.1.101 192.168.1.110 192.168.1.126 192.168.1.207 192.168.1.104
}
src arenda-clients {
    ip 192.168.102.0/24 192.168.109.0/24 192.168.100.0/24 192.168.101.0/24 192.168.103.0/24 192.168.104.0/24 192.168.105.0/24 192.168.106.0/24 192.168.107.0/24 192.168.108.0/24 192.168.110.0/24 192.168.112.0/24
}
src arenda-prado {
    ip 192.168.111.0/24
}
#
# DESTINATION CLASSES:
#
dest nowork {
    domainlist nowork/domains
#    urllist    nowork/urls
}
#dest ads {
#    domainlist ads/domains
#    urllist    ads/urls
#}
#dest adult {
#    domainlist adult/domains
#    urllist    adult/urls
#}
#dest aggressive {
#    domainlist aggressive/domains
#    urllist    aggressive/urls
}
dest antispyware {
    domainlist antispyware/domains
    urllist    antispyware/urls
}
#dest artnudes {
#    domainlist artnudes/domains
#    urllist    artnudes/urls
#}
#dest astrology {
#    domainlist astrology/domains
##    urllist    astrology/urls
#}
#dest audio-video {
#    domainlist audio-video/domains
#    urllist    audio-video/urls
#}
#dest banking {
#    domainlist banking/domains
#    urllist    banking/urls
#}
dest banners {
    urllist banners/urls
    redirect http://map.unitel/icons/1x1.gif
}
#dest beerliquorinfo {
#    domainlist  beerliquorinfo/domains
##    urllist     beerliquorinfo/urls
#}
#dest beerliquorsale {
#    domainlist  beerliquorsale/domains
##    urllist     beerliquorsale/urls
#}
#dest blog {
#    domainlist blog/domains
#    urllist    blog/urls
#}
#dest books {
#    domainlist books/domains
#    urllist    books/urls
#}
#dest celebrity {
#    domainlist celebrity/domains
##    urllist    celebrity/urls
#}
#dest cellphones {
#    domainlist cellphones/domains
##    urllist    cellphones/urls
#}
#dest chat {
#    domainlist chat/domains
#    urllist    chat/urls
#}
#dest childcare {
#    domainlist childcare/domains
#    urllist    childcare/urls
#}
#dest cleaning {
#    domainlist cleaning/domains
##    urllist    cleaning/urls
#}
#dest clothing {
#    domainlist clothing/domains
##    urllist    clothing/urls
#}
#dest culinary {
#    domainlist culinary/domains
##    urllist    culinary/urls
#}
#dest dating {
#    domainlist dating/domains
#    urllist    dating/urls
#}
#dest desktopsillies {
#    domainlist desktopsillies/domains
#    urllist    desktopsillies/urls
#}
#dest dialers {
#    domainlist dialers/domains
#    urllist    dialers/urls
#}
#dest drugs {
#    domainlist drugs/domains
#    urllist    drugs/urls
#}
#dest ecommerce {
#    domainlist ecommerce/domains
#    urllist    ecommerce/urls
#}
#dest entertainment {
#    domainlist entertainment/domains
#    urllist    entertainment/urls
#}
#dest filehosting {
#    domainlist filehosting/domains
#    urllist    filehosting/urls
#}
#dest financial {
#    domainlist financial/domains
##    urllist    financial/urls
#}
#dest frencheducation {
#    domainlist frencheducation/domains
#    urllist    frencheducation/urls
#}
#dest gambling {
#    domainlist gambling/domains
#    urllist    gambling/urls
#}
#dest games {
#    domainlist games/domains
#    urllist    games/urls
#}
#dest gardening {
#    domainlist gardening/domains
#    urllist    gardening/urls
#}
##dest goverment {
##    domainlist goverment/domains
##    urllist    goverment/urls
##}
#dest guns {
#    domainlist guns/domains
#    urllist    guns/urls
#}
#dest hacking {
#    domainlist hacking/domains
#    urllist    hacking/urls
#}
#dest homerepair {
#    domainlist homerepair/domains
#    urllist    homerepair/urls
#}
#dest humor {
#    domainlist humor/domains
#    urllist    humor/urls
#}
#dest hygiene {
#    domainlist hygiene/domains
##    urllist    hygiene/urls
#}
#dest instantmessaging {
#    domainlist instantmessaging/domains
#    urllist    instantmessaging/urls
#}
#dest jewelry {
#    domainlist jewelry/domains
##    urllist    jewelry/urls
#}
#dest jobsearch {
#    domainlist jobsearch/domains
#    urllist    jobsearch/urls
#}
#dest kidstimewasting {
#    domainlist kidstimewasting/domains
#    urllist    kidstimewasting/urls
#}
#dest magazines {
#    domainlist magazines/domains
#    urllist    magazines/urls
#}
##dest mail {
##    domainlist mail/domains
##    urllist    mail/urls
##}
#dest malware {
#    domainlist malware/domains
#    urllist    malware/urls
#}
#dest marketingware {
#    domainlist marketingware/domains
##    urllist    marketingware/urls
#}
#dest medical {
#    domainlist medical/domains
#    urllist    medical/urls
#}
#dest mixed_adult {
#    domainlist mixed_adult/domains
##    urllist    mixed_adult/urls
#}
#dest mobile-phone {
#    domainlist mobile-phone/domains
##    urllist    mobile-phone/urls
#}
#dest porn {
#    domainlist porn/domains
#    urllist    porn/urls
#}
dest proxy {
    domainlist proxy/domains
    urllist    proxy/urls
}
#dest radio {
#    domainlist radio/domains
#    urllist    radio/urls
#}
#dest reaffected {
#    domainlist reaffected/domains
#    urllist    reaffected/urls
#}
#dest religion {
#    domainlist religion/domains
#    urllist    religion/urls
#}
#dest ringtones {
#    domainlist ringtones/domains
##    urllist    ringtones/urls
#}
##dest searchengines {
##    domainlist searchengines/domains
##    urllist    searchengines/urls
##}
#dest sect {
#    domainlist sect/domains
##    urllist    sect/urls
#}
#dest sexuality {
#    domainlist sexuality/domains
#    urllist    sexuality/urls
#}
#dest shopping {
#    domainlist shopping/domains
##    urllist    shopping/urls
#}
#dest socialnetworking {
#    domainlist socialnetworking/domains
#    urllist    socialnetworking/urls
#}
#dest sportnews {
#    domainlist sportnews/domains
#    urllist    sportnews/urls
#}
#dest sports {
#    domainlist sports/domains
#    urllist    sports/urls
#}
#dest spyware {
#    domainlist spyware/domains
##    urllist    spyware/urls
#}
#dest updatesites {
#    domainlist updatesites/domains
#    urllist    updatesites/urls
#}
#dest vacation {
#    domainlist vacation/domains
#    urllist    vacation/urls
#}
#dest verisign {
#    domainlist verisign/domains
##    urllist    verisign/urls
#}
#dest violence {
#    domainlist violence/domains
#    urllist    violence/urls
#}
dest virusinfected {
    domainlist virusinfected/domains
    urllist    virusinfected/urls
}
#dest warez {
#    domainlist warez/domains
#    urllist    warez/urls
#}
#dest weapons {
#    domainlist weapons/domains
#    urllist    weapons/urls
#}
#dest weather {
#    domainlist weather/domains
#    urllist    weather/urls
#}
##dest webmail {
##    domainlist webmail/domains
##    urllist    webmail/urls
##}
dest whitelist {
    domainlist whitelist/domains
    urllist    whitelist/urls
}
dest pravo {
    domainlist pravosudie/domains
#    urllist    pravosudie/urls
}

acl {
    admin {
    pass !banners !virusinfected all
    }
    dir {
    pass !banners !virusinfected all
    }
    unitel-clients {
    pass !banners !virusinfected !proxy !antispyware all
#    pass !ads !adult !aggressive !antispyware !artnudes !astrology !audio-video !banking !banners !beerliquorinfo
#    !beerliquorsale !blog !books !celebrity !cellphones !chat !childcare !dialers !drugs !ecommerce !entertainment
#    !filehosting !financial !frencheducation !gambling !games !gardening !guns !hacking !homerepair !humor !hygiene
#    !instantmessaging !jewelry !jobsearch !kidstimewasting !magazines !malware !marketingware !medical
#    !mixed_adult !mobile-phone !proxy !radio !reaffected !religion !ringtones !sect !sexuality
#    !shopping !socialnetworking !sportnews !sports !spyware !updatesites !vacation !verisign !violence !warez
#    !weapons !weather !porn !nowork all
    }
    arenda-clients {
    pass !banners !virusinfected all
    }
    arenda-prado {
    pass !banners !pravo !virusinfected all    
    }
    default {
    pass none
    rewrite     dmz
    redirect http://map.unitel/cgi/blocked?clientaddr=%a+clientname=...
    }
}


Высказать мнение | Ответить | Правка | Cообщить модератору

 Оглавление

Сообщения по теме [Сортировка по времени | RSS]


1. "Squid+squidGuard ограничение скорости пользователям"  +/
Сообщение от Алиен on 24-Июл-09, 14:09 
Не ужели не кто не сталкивался с такой проблемой?
Высказать мнение | Ответить | Правка | Наверх | Cообщить модератору

2. "Squid+squidGuard ограничение скорости пользователям"  +/
Сообщение от Алиен on 24-Июл-09, 15:19 
>Не ужели не кто не сталкивался с такой проблемой?

вопрос снят

acl speed_64 dst 192.168.1.207/255.255.255.255
ошибка в этой строчке должно быть

acl speed_64 src 192.168.1.207/255.255.255.255

Высказать мнение | Ответить | Правка | Наверх | Cообщить модератору

Архив | Удалить

Индекс форумов | Темы | Пред. тема | След. тема




Партнёры:
PostgresPro
Inferno Solutions
Hosting by Hoster.ru
Хостинг:

Закладки на сайте
Проследить за страницей
Created 1996-2024 by Maxim Chirkov
Добавить, Поддержать, Вебмастеру