data:image/s3,"s3://crabby-images/0adc8/0adc8d89a75ab27d5110379c3f581275d697a11d" alt="Novell LINUX ENTERPRISE SERVER 10 - INSTALLATION AND ADMINISTRATION 11-05-2007 Installation Manual Download Page 807"
acl <acl_name> <type> <data>
An ACL requires at least three specifications to define it. The name <acl_name>
can be chosen arbitrarily. For <type>, select from a variety of different options,
which can be found in the ACCESS CONTROLS section in the
/etc/squid/
squid.conf
file. The specification for <data> depends on the individual ACL
type and can also be read from a file, for example, via hostnames, IP addresses, or
URLs. The following are some simple examples:
acl mysurfers srcdomain .my-domain.com
acl teachers src 192.168.1.0/255.255.255.0
acl students src 192.168.7.0-192.168.9.0/255.255.255.0
acl lunch time MTWHF 12:00-15:00
http_access allow <acl_name>
http_access defines who is allowed to use the proxy and who can access what on
the Internet. For this, ACLs must be given. localhost and all have already been
defined above, which can deny or allow access via deny or allow. A list containing
any number of http_access entries can be created, processed from top to bottom,
and, depending on which occurs first, access is allowed or denied to the respective
URL. The last entry should always be http_access deny all. In the following exam-
ple, the localhost has free access to everything while all other hosts are denied access
completely.
http_access allow localhost
http_access deny all
In another example using these rules, the group
teachers
always has access to
the Internet. The group
students
only gets access Monday to Friday during
lunch time.
http_access deny localhost
http_access allow teachers
http_access allow students lunch time
http_access deny all
The list with the http_access entries should only be entered, for the sake of read-
ability, at the designated position in the
/etc/squid/squid.conf
file. That
is, between the text
# INSERT YOUR OWN RULE(S) HERE TO ALLOW ACCESS FROM YOUR
# CLIENTS
The Proxy Server Squid
789
Summary of Contents for LINUX ENTERPRISE SERVER 10 - INSTALLATION AND ADMINISTRATION 11-05-2007
Page 1: ...SUSE Linux Enterprise Server www novell com 10 May 11 2007 Installation and Administration...
Page 14: ......
Page 19: ...Part I Deployment...
Page 20: ......
Page 60: ......
Page 128: ......
Page 243: ...Part II Administration...
Page 244: ......
Page 274: ......
Page 312: ......
Page 348: ......
Page 380: ......
Page 381: ...Part III System...
Page 382: ......
Page 438: ......
Page 452: ......
Page 478: ......
Page 486: ......
Page 498: ......
Page 512: ......
Page 558: ......
Page 559: ...Part IV Services...
Page 560: ......
Page 652: ......
Page 670: ......
Page 742: ......
Page 754: ......
Page 796: ......
Page 817: ...Part V Security...
Page 818: ......
Page 858: ......
Page 886: ......
Page 910: ......
Page 911: ...Part VI Troubleshooting...
Page 912: ......
Page 924: ......