Много наверное, зато почти все
Цитата:
Цитата:
#Method users authentifications
auth_param ntlm program /usr/local/bin/ntlm_auth --helper-protocol=squid-2.5-ntlmssp --require-membership-of="AMSGROUP+InetAccess"
auth_param ntlm children 10
auth_param basic program /usr/local/bin/ntlm_auth --helper-protocol=squid-2.5-basic --require-membership-of="AMSGROUP+InetAccess"
auth_param basic children 5
auth_param basic realm Squid proxy-caching web server
auth_param basic credentialsttl 2 hours
#ACL allow
acl localhost src 127.0.0.1/255.255.255.255
acl local_networks src 192.168.0.0/16
acl ads_network src 213.242.11.82/32
acl NTLMauth proxy_auth REQUIRED
#ACL deny
acl fex dst 217.106.171.18/32
acl all src 0.0.0.0/0.0.0.0
acl priveledge_users proxy_auth "/opt/squid/etc/priveledge_users.list"
acl sites_disable url_regex "/opt/squid/etc/sites_disable.list"
acl badip_disable dst "/opt/squid/etc/badip_disable.list"
acl ext_disable urlpath_regex -i "/opt/squid/etc/ext_disable.list"
#HTTP_ACCESS
http_access deny fex
http_access allow sites_disable priveledge_users
http_access allow ext_disable priveledge_users
http_access allow badip_disable priveledge_users
http_access deny sites_disable
http_access deny ext_disable
http_access deny badip_disable
http_access allow NTLMauth
http_access allow local_networks
http_access allow ads_network
http_access deny all