Red Hat / Fedora :: Install Squid3.1.x To Block Https Sites?
Jul 15, 2011how to install squid3.1.x to block https sites?
View 1 Replieshow to install squid3.1.x to block https sites?
View 1 RepliesI want block https sites if suppose block the http it will opening in https.
View 9 Replies View RelatedI have FC-4 with Squid and Dansguardian. Internet Users in my organisation are configured to use proxy with 8080 in browser IE. There's no issue with Users as DG working perfect for them. We have Business Development Team, as they need to do most of the research over internet, their IP's are included into "Exception IP List" in Dansguardian. Obviously these people will be excepted from all banned sites, BD Team able to do chat, play games and do social networking and other stuff over the net, which results in more bandwidth consumption and breaking office policies.
I have tried to implement SQUID ACL's to block few sites like " meebo.com, orkut.com,facebook.com etc" but SQUID acl's not coming into picture. any one who successfully blocked chat, banned sites and social networking in DG with my case.
just found that iceweasel is unable to serf any https sites, thou can serf http sites.
View 7 Replies View Relatedi hav the problem ...n i am having solution for it. ...i searched a lot on forum .but didnt find any proper solution for my problem. problem : " Cannot access some sites on Ubuntu 11.04 specially HTTPS sites. loading of certain sites was really slow" Solution : well. i found no one who could gave me solution that worked. so i studied some linux n here is solution ..ON terminal : sudo pppoeconfthen just follow instructions ...set to default every thing. it will configure all ur net settings on its own.restart ur pc. no need to dial anything. the net will auto dial itself without any problem..just make sure...u do it correctly ..read instructions..
View 5 Replies View RelatedI am using Lenovo G550 laptop wid Intel Dual Core 2GHz, 2GB RAM, 250GB HDD, etc. Earlier I had 2 partitions 187GB (Windows 7) and other 33GB of Lenovo drivers. I split 187GB to 143GB (Windows 7) while remaining 44GB for Ubuntu 10.10!
Everything's been working fine except for internet. I am unable to load many https sites like fb, hotmail, etc. Gmail is working absolutely fine.
I did some research on this forum and disabled ipv6! I also checked for firewall and it was disabled. Then I also configured Open DNS and checked if it is working fine. But nothing has helped.
When I connect to these sites without 's' in https (i.e. only http) these sites load fast. I enter my username n password and then I am redirected to a compulsory https site which then takes me to a page like this (shown in thumbnails)! I have tried Chrome n Firefox 3.6 (which have SSL and TLS checked in preferences)! All these sites are working fine on Windows 7. But I don't want to use Windows 7 every now and then because it has become too slow and boring! Please help me with this.
I connect to internet using DSL wired (BSNL Broadband 256Kbps)
I'm on Ubuntu 11.04 and have wired internet connection.
Some sites (particularly https) take very long time to load . Sometimes I get "Page is taking a long time to load . Reload the page later" message.
Now , this is happening for some http webpages also.
This is not a problem with browser.
I have firefox , chrome , chromium and konqueror installed.
Also I can access all these sites properly from windows so it is not problem with my internet connection either.
Everytime I try to visit a secure site I get ssl handshake failure with Midori from slackbuilds and xxxterm compiled from source.
View 6 Replies View RelatedMy Problem is: I want to stop gmail access without blocking https. Yes in my squid proxy normal http://gmail.com is not accessible. But gmail recently started https service by which user can still get access to gmail. I DONT WANT TO STOP https CAUSE ITS BEING USING BY MY COMPANY GOOGLE MAIL PROGRAM.
View 2 Replies View RelatedI need to block some websites and torrents on my LAN running on mostly WIndows XP pcs and a Windows 2008 domain controller. It's possible to block some sites using DNS in Windows Domain controller, but users have the rights to change DNS and bypass the rule. Editing HOSTS file doesn't workThen I tried using Avast antivirus Site Block feature, but that doesn't work on any browser except Mozilla. We have to use Epic and Mozilla Firefox.We can't use a dedicated hardware firewall due to budget constraints and the fact that we have multiple ADSL lines for internet. No single gateway.
View 7 Replies View RelatedI have installed Dansguardian on my little brothers laptop (using Tinyproxy and Firehol too) and I have it mostly configured the way I like it. The only problem now is that I can't seem to block secure (https://www...) websites, and he knows a few proxies that use secure domains. I was wondering if anyone has been able to make Dansguardian block these websites or is it just not doable?
View 1 Replies View RelatedMy Problem is: I want to stop gmail access without blocking https. Yes in my squid proxy normal [URL].. is not accessible. But gmail recently started https service by which user can still get access to gmail. I DONT WANT TO STOP https CAUSE ITS BEING USING BY OTHER PROGRAMS.
View 1 Replies View RelatedHow to add parental control like { block web site access, restricting login access for particular time, restrict web access} for particular user accounts in Linux.
View 5 Replies View RelatedExample I have 3 user list and 3 file with block site names
acl group1 src 192.168.0.2 192.168.0.3 192.168.0.4/24
acl group2 src 192.168.0.5 192.168.0.6 192.168.0.7/24
acl group3 src 192.168.0.8 192.168.0.9 192.168.0.10/24
[Code]...
I've moved your post here to its own thread. Please don't resurrect dead threads. --win32sux
I have a problem with sites or domain blocking by squid proxy server in rehl 5. I have trying lots of time but i'm not succed.pls help me how to block sites or domain in rhel 5.
View 3 Replies View RelatedI managed to configure my W890i phone to get access to internet through an ubuntu-based computer. It's very easy to use the phone to give internet access to the computer, but the opposite is quite more tricky. For that I've done the following
----On the phone---
-Set the USB network option to "through computer", so that the phone uses the computer's internet connection and not the opposite.
-Decide and set "Shared Network" parameters: user, pasword and workgroup.
-In "conectivity-> internet connection" set "allow local network" to "yes"
----On Ubuntu 10.04---
-Install samba, samba-client, smbfs, smbclient, firestarter and dhcp3-server
-Configure Samba (System-> Administration-> Shared folders): same workgroup as in the phone, add new user (the phone), passwd this new user. In my case the user was called "w890i" and the password given was the same.
-Once the phone is connected to the computer through USB (then select "phone mode"), a new connection appears in NetworkManager: usb0.The aim is to create a shared network that gives internet access to this device. Edit the IPv4 parameters of this new connection, set them to Manual and give an IP adress (192.168.0.1) and a subnet mask (255.255.255.0); the rest of the fields are left empty.Connect this network.
-Set firestarter to use dhcp3: sudo ln -sf /etc/init.d/dhcp3-server /etc/init.d/dhcpd
-Launch firestarter and follow the wizard. Set "allow internet shared connection", choose the device for the primary internet access, and then the device for the shared network (usb0). Then change the settings for firestarter: activate DHCP for local network, set IP to the one we gave before (192.168.0.1).
-Open dhcp3-server config file sudo gedit /etc/default/dhcp3-server And set INTERFACES="usb0"
-Set the policies of firestarter: in incoming connections, allow connections from the IP adress given to the phone (192.168.0.1). Then add rules for the ports that need to be open for this connection. I opened HTTP, HTTPS, SMB, SMTP, POP3, IMAP, IMAPS, DHCP for all the connections in the local network.
-Apply policies and start the firewall.
------------
After all this, the phone can access the internet through the computer. Two problems appeared:
1. I couldn't get access to https sites, like webmails. The phone gave a "communication error". But then I tried with Opera instead of the browser built in the phone's firmware, and I could finally get to https sites.
2. I couldn't retrieve mail, neither POP nor IMAP nor IMAPS. I thought it was a firmware problem again, and I tried out several mobile phone email clients written in java, but none of them worked.
So this is at the moment the problem. If I connect from the phone to the internet directly through 3G, the email clients work for all my accounts. I don't think it's a firewall problem, because the ports are opened for this connection
I have setup a squid server on Rhel5.4. I would like to know how I can configure my squid server to block anon proxy sites.
View 3 Replies View RelatedI haven't found any updated instructions for adding squidguard to the new squid3 server. I tried following the old instructions for doing this, making changes to the text to point to the new squid3 locations, but this didn't work.
View 2 Replies View RelatedHas anyone successfully kickstarted a rhel/fedora/centos over HTTPS ? In other words, is it possible to do the rhel/fedora/centos install from running apache with SSL enabled?
View 1 Replies View Relatedi have a question about rpm.pbone.net, www.rpmseek.com and these kind of pages: Can I trust these sites and is it secure to install rpms from these sites on enterprise workstations and servers?
View 1 Replies View RelatedI dual boot XP and FC14 and have 2 routers. I can connect and ping one of these routers when I'm in FC and I have an IP address I just can't load any websites. When I connect to the other router (my main router) it works fine. When I boot into XP and connect to the problem router I can load pages fine. It's only when I'm on FC14 and connect to the problem router that I can't load pages even though I have an IP and can ping around.
View 1 Replies View RelatedI have set up certain portions of my web site to be forced https:// How do I force, non https:// protocols. I know this sounds confusing, so let me give you an example.
[Code]...
In the past week or so I've noticed some weird network behaviour. I find accessing some sites such as Amazon, Paypal, and Bigstockphoto really slow. Sometimes the page will not load at all. Other sites are fine. The problem sites are not a problem for others on my LAN at home. When I try to open the problem sites, I can see in Firestarter blocked connections coming from 2.1(8/9).xxx.xxx on various ports such as 36007. This only happens for the problem sites. I attached a typical output from firestarter.
This happens with Firfeox or Chrome. Using Ubuntu 10.10
I am trying to add HTTPS Repository for YAST to install some software.
content of /etc/zypp/repos.d/ria.repo
[ria]
name=RIA
enabled=1
autorefresh=1
baseurl=https://installer.id.ee/media/opensuse/
type=rpm-md
gpgcheck=1
gpgkey=https://installer.id.ee/media/install-scripts/ria-public.key
keeppackages=1
According of technical support of this repository yast is not able to handle HTTPS repository and as result yast going to point error of download failed. There are no other repository available than HTTPS.
It would be nice if someone have ideas about that? Is it really bug or is it have work around available? Idea was try with some other HTTPS repository for random software but i did not find any from the Internet.
I have installed Fedora 10 and centos 5.3 on 30 system in my home office. everything works fine except accessing https websites. the problem persists in both centos and fedora even after changing firefox versions. what's worse is the problem is not resolved after changing other browsers. so the problem is not browser-centric. i think it has something to do deeper in fedora and centos. also note that i have disabled firewall and selinux but in vain. the problem is still there across all the systems. it's really a show-stopper for me.
View 7 Replies View RelatedFor some reason I was trialing a SUSE 11.1 SP1 version for a while and somehow I have NO clue it attempted to change itself to a OpenSUSE 11.1 System. I have no clue what I did, please don't ask Now though I have been successful in turning into an OpenSUSE 11.2 system by changing the repositories to OpenSUSE 11.2, doing a "zypper refresh", "Zypper in Zypper", "Zypper dup -d", "Zypper dup". I also did a repair and refreshed the base packages with an OpenSUSE 11.2 DVD and that seemed to help also. The only thing it seems I can get right is that yast/yast2 give me this error: Download failed: Failed to download ./repo/repoindex.xml from https://nu.novell.com/?cookies=0&cre...NCCcredentials
[Code]...
I am attempting to write a shell script that accesses a web page with a specified log-in and parses said page for download links to installation packages. Can anyone advise on the possible (and best) ways to go about this? Perl? wget? curl? I haven't been able to find any clear-cut documentation so far concerning the aforementioned -- if anyone has some favorite tutorials on parsing web data that would also be useful.
View 4 Replies View RelatedI am a squat on advanced Apache work. I would get a basic SSL functionality to work. So URL...works fine and gets me all the login windows I designed. however currently all the images and other extensions like .pdf are also using the https routing.some image referred on that https link e.g. URL...can be displayed using https but not http.I would like to JUST limit https usage to the login window html and ALL other images pdf's not secured html ( one that do not need password ) should use HTTP NOT HTTPS.
View 6 Replies View RelatedI've got a basic apache2 setup running w/ multiple virtual hosts, would like to try SSL (i.e. https).
I've got the IP networking side well and truly sorted but I need guidance on the apache/ssl config side. I have installed mod_ssl.
Does anyone have a good guide for Fedora that's recent? All I can find are ubuntu and old fedora 'core' guides, so not sure how much applies to F12. The best ones I can find so far is
https://help.ubuntu.com/community/fo...er/apache2/SSL
http://httpd.apache.org/docs/2.0/ssl/ssl_howto.html
I have just installed fedora 14 for 2 weeks. After installing the Tetom plugin I can't download video and Mp3 files from my desired sites. When I enter to those sites a Plug-in (which I'm not sure that is it related to Tetom or not) starts and tries to play that video or MP3. But before installing that pliging I didn't have this problem and when I press on download link, It opened a pop-up window and asked for downloading and saving location. However I unistalled that pluging but my problem doesn't solve. I attached two pictures. The first picture shows a page which when I'm going to download a movei it goes to a "Code Page" and I can not download !! and the second one shows when I'm trying to download a Mp3 file. As you can see in the second picture there is a new Icon at the left hand of Greasemonkey Icon which i think problem is with that one !
The link which I wanted to download is here, I tried with windows 7 , I can download with windows but in fedora is unable to download !