Dear List,
please review the following wiki section:
http://wiki.ipfire.org/en/configuration/network/proxy/wui_conf/access
which I heavily modified from the previous text. The part I modified is in between:
begin section to be reviewed
end section to be reviewed
I particular, please check carefully the part before the image of the web interface and the paragraphs titled:
Disable internal proxy access to Green from other subnets
and
Disable internal proxy access to other subnets from the Blue IP space (except the IPFire machine itself):
Let me state that the author(s) of this text did an amazing job and allowed me to understand how to configure the proxy the way I wanted. My modifications are intended only to try to make it more clear to a beginner and to correct an error in the text, as discussed previously in other mails on this list.
I welcome any criticism. I will wait until you give me permission to remove the "under review" notice.
Thank you.
Cheers.
I am a total novice when it comes to SQUID, but I understood that pretty well. I think it is very good.
Rod
On 09/08/2016 07:41 AM, Carlo Fusco wrote:
Dear List,
please review the following wiki section:
http://wiki.ipfire.org/en/configuration/network/proxy/wui_conf/access
which I heavily modified from the previous text. The part I modified is in between:
begin section to be reviewed
end section to be reviewed
I particular, please check carefully the part before the image of the web interface and the paragraphs titled:
Disable internal proxy access to Green from other subnets / / and /
/Disable internal proxy access to other subnets from the Blue IP space (except the IPFire machine itself):
Let me state that the author(s) of this text did an amazing job and allowed me to understand how to configure the proxy the way I wanted. My modifications are intended only to try to make it more clear to a beginner and to correct an error in the text, as discussed previously in other mails on this list.
I welcome any criticism. I will wait until you give me permission to remove the "under review" notice.
Thank you.
Cheers.
-- Carlo Fusco
Documentation mailing list Documentation@lists.ipfire.org http://lists.ipfire.org/mailman/listinfo/documentation
Thank you Rod. Since I did not get any indication of incorrect statements, I removed the notice about the section being under review.
On Sat, Sep 10, 2016 at 8:32 AM, R. W. Rodolico rodo@dailydata.net wrote:
I am a total novice when it comes to SQUID, but I understood that pretty well. I think it is very good.
Rod
On 09/08/2016 07:41 AM, Carlo Fusco wrote:
Dear List,
please review the following wiki section:
http://wiki.ipfire.org/en/configuration/network/proxy/wui_conf/access
which I heavily modified from the previous text. The part I modified is in between:
begin section to be reviewed
end section to be reviewed
I particular, please check carefully the part before the image of the web interface and the paragraphs titled:
Disable internal proxy access to Green from other subnets / / and /
/Disable internal proxy access to other subnets from the Blue IP space (except the IPFire machine itself):
Let me state that the author(s) of this text did an amazing job and allowed me to understand how to configure the proxy the way I wanted. My modifications are intended only to try to make it more clear to a beginner and to correct an error in the text, as discussed previously in other mails on this list.
I welcome any criticism. I will wait until you give me permission to remove the "under review" notice.
Thank you.
Cheers.
-- Carlo Fusco
Documentation mailing list Documentation@lists.ipfire.org http://lists.ipfire.org/mailman/listinfo/documentation
-- Rod Rodolico Daily Data, Inc. POB 140465 Dallas TX 75214-0465 214.827.2170 http://www.dailydata.net _______________________________________________ Documentation mailing list Documentation@lists.ipfire.org http://lists.ipfire.org/mailman/listinfo/documentation
Hello,
I made a mistake. I have completely forgotten that the documentation of how to edit squid.conf existed at the following link: http://wiki.ipfire.org/en/configuration/network/proxy/extend/conf_edit
Basically, I made a worst and redundant copy of that document. So I edited again http://wiki.ipfire.org/en/configuration/network/proxy/wui_conf/access to remove my text regarding this specific issue and on its place I put a link to that document. I believe this way it's still informative while remaining brief and to the point. I also modified
http://wiki.ipfire.org/en/configuration/network/proxy/extend/conf_edit
to add to it my example of ACL usage on how to prevent the connection to the IPFire machine from the blue IP space. If there are objections, please feel free to revert the edits and criticize here anything you find wrong. I welcome it. I am doing all this to help the project, however I do it also to learn, any criticism would help me succeed in this regard.
Cheers.
Hi,
On 14.09.2016 12:38, Carlo Fusco wrote:
Hello,
I made a mistake. I have completely forgotten that the documentation of how to edit squid.conf existed at the following link: http://wiki.ipfire.org/en/configuration/network/proxy/extend/conf_edit
Don't worry - mistakes are human and you're doing a great job, IMHO.
Basically, I made a worst and redundant copy of that document. So I edited again http://wiki.ipfire.org/en/configuration/network/proxy/wui_conf/access to remove my text regarding this specific issue and on its place I put a link to that document. I believe this way it's still informative while remaining brief and to the point. I also modified
http://wiki.ipfire.org/en/configuration/network/proxy/extend/conf_edit
to add to it my example of ACL usage on how to prevent the connection to the IPFire machine from the blue IP space. If there are objections, please feel free to revert the edits and criticize here anything you find wrong. I welcome it. I am doing all this to help the project, however I do it also to learn, any criticism would help me succeed in this regard.
As far as I can see: looks good. ;-)
One point that came to my view while testing some squid-versions here.
Perhaps it would be necessary to add a small comment that changes to '/var/ipfire/proxy/advanced/acls/include.acl' only take place after hitting 'Save and restart' on the GUI(!?).
If you restart 'squid' through console with '/etc/init.d/squid restart' 'squid' is "only restarted", but 'include.acl'-contents won't get written to 'squid.conf'.
This once happened to me and since then I always use the GUI after making changes there. But test this first, to confirm.
Best, Matthias
One of the big problems with the wiki is organization. When it was first started, it had a nice organization, but that has degraded over time. Because of that, we sometimes write articles that already exist. Additionally, there is some old information out there that really should not be there.
Sorry you had to run into it so soon.
On 09/14/2016 05:38 AM, Carlo Fusco wrote:
Hello,
I made a mistake. I have completely forgotten that the documentation of how to edit squid.conf existed at the following link: http://wiki.ipfire.org/en/configuration/network/proxy/extend/conf_edit
Basically, I made a worst and redundant copy of that document. So I edited again http://wiki.ipfire.org/en/configuration/network/proxy/wui_conf/access to remove my text regarding this specific issue and on its place I put a link to that document. I believe this way it's still informative while remaining brief and to the point. I also modified
http://wiki.ipfire.org/en/configuration/network/proxy/extend/conf_edit
to add to it my example of ACL usage on how to prevent the connection to the IPFire machine from the blue IP space. If there are objections, please feel free to revert the edits and criticize here anything you find wrong. I welcome it. I am doing all this to help the project, however I do it also to learn, any criticism would help me succeed in this regard.
Cheers.
-- Carlo Fusco
Documentation mailing list Documentation@lists.ipfire.org http://lists.ipfire.org/mailman/listinfo/documentation
documentation@lists.ipfire.org