* Re: New version of Proxy access control list documentation
[not found] <CAK9whhz2+7XDfK=yAz+7WtVdHhvSGF1VtE6V3UhFvKTTz8z9MQ@mail.gmail.com>
@ 2016-09-10 6:32 ` R. W. Rodolico
0 siblings, 0 replies; 4+ messages in thread
From: R. W. Rodolico @ 2016-09-10 6:32 UTC (permalink / raw)
To: documentation
[-- Attachment #1: Type: text/plain, Size: 1533 bytes --]
I am a total novice when it comes to SQUID, but I understood that pretty
well. I think it is very good.
Rod
On 09/08/2016 07:41 AM, Carlo Fusco wrote:
> Dear List,
>
> please review the following wiki section:
>
> http://wiki.ipfire.org/en/configuration/network/proxy/wui_conf/access
>
> which I heavily modified from the previous text. The part I modified is
> in between:
> *
> *
> begin section to be reviewed
>
> end section to be reviewed
>
> I particular, please check carefully the part before the image of the
> web interface and the paragraphs titled:
>
> Disable internal proxy access to Green from other subnets
> /
> /
> and /
>
> /Disable internal proxy access to other subnets from the Blue IP space
> (except the IPFire machine itself):
>
> Let me state that the author(s) of this text did an amazing job and
> allowed me to understand how to configure the proxy the way I wanted. My
> modifications are intended only to try to make it more clear to a
> beginner and to correct an error in the text, as discussed previously in
> other mails on this list.
>
> I welcome any criticism. I will wait until you give me permission to
> remove the "under review" notice.
>
> Thank you.
> *
> *
> Cheers.
>
> --
> Carlo Fusco
>
>
> _______________________________________________
> Documentation mailing list
> Documentation(a)lists.ipfire.org
> http://lists.ipfire.org/mailman/listinfo/documentation
>
--
Rod Rodolico
Daily Data, Inc.
POB 140465
Dallas TX 75214-0465
214.827.2170
http://www.dailydata.net
^ permalink raw reply [flat|nested] 4+ messages in thread
* New version of Proxy access control list documentation
@ 2016-09-15 10:38 Carlo Fusco
0 siblings, 0 replies; 4+ messages in thread
From: Carlo Fusco @ 2016-09-15 10:38 UTC (permalink / raw)
To: documentation
[-- Attachment #1: Type: text/plain, Size: 339 bytes --]
On Thu, Sep 15, 2016 at 12:32 PM, Matthias Fischer
<matthias.fischer(a)ipfire.org> wrote:
> Did you mean:
>
> "Here you can find two examples of how to use the manual configuration
> of squid.conf and how you can control the proxy in ways that are not
> available with the WUI."?
Of course. My mistake. I will correct it.
--
Carlo Fusco
^ permalink raw reply [flat|nested] 4+ messages in thread
* Re: New version of Proxy access control list documentation
[not found] <CAK9whhzPO5zSkwhZQfFoZa2Da9squcsbHDc2du=cguJLXZYPbQ@mail.gmail.com>
2016-09-14 17:09 ` Matthias Fischer
@ 2016-09-15 2:04 ` R. W. Rodolico
1 sibling, 0 replies; 4+ messages in thread
From: R. W. Rodolico @ 2016-09-15 2:04 UTC (permalink / raw)
To: documentation
[-- Attachment #1: Type: text/plain, Size: 1726 bytes --]
One of the big problems with the wiki is organization. When it was first
started, it had a nice organization, but that has degraded over time.
Because of that, we sometimes write articles that already exist.
Additionally, there is some old information out there that really should
not be there.
Sorry you had to run into it so soon.
On 09/14/2016 05:38 AM, Carlo Fusco wrote:
> Hello,
>
> I made a mistake. I have completely forgotten that the documentation of
> how to edit squid.conf existed at the following link:
> http://wiki.ipfire.org/en/configuration/network/proxy/extend/conf_edit
>
> Basically, I made a worst and redundant copy of that document. So I
> edited again
> http://wiki.ipfire.org/en/configuration/network/proxy/wui_conf/access to
> remove my text regarding this specific issue and on its place I put a
> link to that document. I believe this way it's still informative while
> remaining brief and to the point. I also modified
>
> http://wiki.ipfire.org/en/configuration/network/proxy/extend/conf_edit
>
> to add to it my example of ACL usage on how to prevent the connection to
> the IPFire machine from the blue IP space. If there are objections,
> please feel free to revert the edits and criticize here anything you
> find wrong. I welcome it. I am doing all this to help the project,
> however I do it also to learn, any criticism would help me succeed in
> this regard.
>
> Cheers.
>
> --
> Carlo Fusco
>
>
> _______________________________________________
> Documentation mailing list
> Documentation(a)lists.ipfire.org
> http://lists.ipfire.org/mailman/listinfo/documentation
>
--
Rod Rodolico
Daily Data, Inc.
POB 140465
Dallas TX 75214-0465
214.827.2170
http://www.dailydata.net
^ permalink raw reply [flat|nested] 4+ messages in thread
* Re: New version of Proxy access control list documentation
[not found] <CAK9whhzPO5zSkwhZQfFoZa2Da9squcsbHDc2du=cguJLXZYPbQ@mail.gmail.com>
@ 2016-09-14 17:09 ` Matthias Fischer
2016-09-15 2:04 ` R. W. Rodolico
1 sibling, 0 replies; 4+ messages in thread
From: Matthias Fischer @ 2016-09-14 17:09 UTC (permalink / raw)
To: documentation
[-- Attachment #1: Type: text/plain, Size: 1731 bytes --]
Hi,
On 14.09.2016 12:38, Carlo Fusco wrote:
> Hello,
>
> I made a mistake. I have completely forgotten that the documentation of how
> to edit squid.conf existed at the following link:
> http://wiki.ipfire.org/en/configuration/network/proxy/extend/conf_edit
Don't worry - mistakes are human and you're doing a great job, IMHO.
> Basically, I made a worst and redundant copy of that document. So I edited
> again http://wiki.ipfire.org/en/configuration/network/proxy/wui_conf/access
> to remove my text regarding this specific issue and on its place I put a
> link to that document. I believe this way it's still informative while
> remaining brief and to the point. I also modified
>
> http://wiki.ipfire.org/en/configuration/network/proxy/extend/conf_edit
>
> to add to it my example of ACL usage on how to prevent the connection to
> the IPFire machine from the blue IP space. If there are objections, please
> feel free to revert the edits and criticize here anything you find wrong.
> I welcome it. I am doing all this to help the project, however I do it also
> to learn, any criticism would help me succeed in this regard.
As far as I can see: looks good. ;-)
One point that came to my view while testing some squid-versions here.
Perhaps it would be necessary to add a small comment that changes to
'/var/ipfire/proxy/advanced/acls/include.acl' only take place after
hitting 'Save and restart' on the GUI(!?).
If you restart 'squid' through console with '/etc/init.d/squid restart'
'squid' is "only restarted", but 'include.acl'-contents won't get
written to 'squid.conf'.
This once happened to me and since then I always use the GUI after
making changes there. But test this first, to confirm.
Best,
Matthias
^ permalink raw reply [flat|nested] 4+ messages in thread
end of thread, other threads:[~2016-09-15 10:38 UTC | newest]
Thread overview: 4+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
[not found] <CAK9whhz2+7XDfK=yAz+7WtVdHhvSGF1VtE6V3UhFvKTTz8z9MQ@mail.gmail.com>
2016-09-10 6:32 ` New version of Proxy access control list documentation R. W. Rodolico
[not found] <CAK9whhzPO5zSkwhZQfFoZa2Da9squcsbHDc2du=cguJLXZYPbQ@mail.gmail.com>
2016-09-14 17:09 ` Matthias Fischer
2016-09-15 2:04 ` R. W. Rodolico
2016-09-15 10:38 Carlo Fusco
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox