Twitter iPhone pliant OnePlus 11 PS5 Disney+ Orange Livebox Windows 11

Problème de configuration squid3 et/ou dansguardian

5 réponses
Avatar
Tulum
--nextPart8064566.umfbmJtWjl
Content-Type: multipart/alternative;
boundary="Boundary-01=_c10wP3LPV1tg4di"
Content-Transfer-Encoding: 7bit

--Boundary-01=_c10wP3LPV1tg4di
Content-Type: text/plain;
charset="utf-8"
Content-Transfer-Encoding: quoted-printable

Bonjour,

J'essaye d'installer dansguardian. J'ai suivi le tuto suivant :=20
http://wiki.linuxpourlesnuls.org/index.php?title=3DDansguardian.

Je n'ai pas modifi=C3=A9 la configuration de squid3, pour dansguardian j'ai=
suivi=20
scrupulement le tuto.

Lorsque je modifie la connexion internet dans firefox en mettant comme prox=
y=20
127.0.0.1:8080 je n'ai plus acc=C3=A8s =C3=A0 internet. Si je vais sur un s=
ite bloqu=C3=A9=20
par dansguardian, j'ai bien la page de blocage de dansguardian. Pour un sit=
e=20
autoris=C3=A9, j'obtient ce message :=20
" La connexion a =C3=A9t=C3=A9 r=C3=A9initialis=C3=A9e
=20
La connexion avec le serveur a =C3=A9t=C3=A9 r=C3=A9initialis=C3=A9e pendan=
t le chargement de la=20
page.
=20
Le site est peut-=C3=AAtre temporairement indisponible ou surcharg=C3=A9. R=
=C3=A9essayez plus
tard ;
Si vous n'arrivez =C3=A0 naviguer sur aucun site, v=C3=A9rifiez la connex=
ion
au r=C3=A9seau de votre ordinateur ;
Si votre ordinateur ou votre r=C3=A9seau est prot=C3=A9g=C3=A9 par un par=
e-feu ou un proxy,
assurez-vous que Iceweasel est autoris=C3=A9 =C3=A0 acc=C3=A9der au Web."

si je met le proxy 127.0.0.1:3128, je n'ai aucun probl=C3=A8me, donc =C3=A0=
priori=20
squid3 ne bloque pas mon acc=C3=A8s, si je comprend bien.

J'ai pas mal cherch=C3=A9 mais je n'est rien trouv=C3=A9 sur internet.

Si quelqu'un a une id=C3=A9e merci.

Debian wheezy x64 =C3=A0 jour

--Boundary-01=_c10wP3LPV1tg4di
Content-Type: text/html;
charset="utf-8"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0//EN" "http://www.w3.org/TR/REC-=
html40/strict.dtd">
<html><head><meta name=3D"qrichtext" content=3D"1" /><style type=3D"text/cs=
s">
p, li { white-space: pre-wrap; }
</style></head><body style=3D" font-family:'DejaVu Sans Mono'; font-size:9p=
t; font-weight:400; font-style:normal;">
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">Bonjour,</p>
<p style=3D"-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma=
rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb=
sp;</p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">J'essaye d'=
installer dansguardian. J'ai suivi le tuto suivant : http://wiki.linuxpourl=
esnuls.org/index.php?title=3DDansguardian.</p>
<p style=3D"-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma=
rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb=
sp;</p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">Je n'ai pas=
modifi=C3=A9 la configuration de squid3, pour dansguardian j'ai suivi scru=
pulement le tuto.</p>
<p style=3D"-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma=
rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb=
sp;</p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">Lorsque je =
modifie la connexion internet dans firefox en mettant comme proxy 127.0.0.1=
:8080 je n'ai plus acc=C3=A8s =C3=A0 internet. Si je vais sur un site bloqu=
=C3=A9 par dansguardian, j'ai bien la page de blocage de dansguardian. Pour=
un site autoris=C3=A9, j'obtient ce message : </p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&quot; La c=
onnexion a =C3=A9t=C3=A9 r=C3=A9initialis=C3=A9e</p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"> </p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">La connexio=
n avec le serveur a =C3=A9t=C3=A9 r=C3=A9initialis=C3=A9e pendant le charge=
ment de la page.</p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"> </p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">Le site est=
peut-=C3=AAtre temporairement indisponible ou surcharg=C3=A9. R=C3=A9essay=
ez plus</p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">tard ;</p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"> Si vous n=
'arrivez =C3=A0 naviguer sur aucun site, v=C3=A9rifiez la connexion</p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">au r=C3=A9s=
eau de votre ordinateur ;</p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"> Si votre =
ordinateur ou votre r=C3=A9seau est prot=C3=A9g=C3=A9 par un pare-feu ou un=
proxy,</p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">assurez-vou=
s que Iceweasel est autoris=C3=A9 =C3=A0 acc=C3=A9der au Web.&quot;</p>
<p style=3D"-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma=
rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb=
sp;</p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">si je met l=
e proxy 127.0.0.1:3128, je n'ai aucun probl=C3=A8me, donc =C3=A0 priori squ=
id3 ne bloque pas mon acc=C3=A8s, si je comprend bien.</p>
<p style=3D"-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma=
rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb=
sp;</p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">J'ai pas ma=
l cherch=C3=A9 mais je n'est rien trouv=C3=A9 sur internet.</p>
<p style=3D"-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma=
rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb=
sp;</p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">Si quelqu'u=
n a une id=C3=A9e merci.</p>
<p style=3D"-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma=
rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb=
sp;</p>
<p style=3D" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig=
ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">Debian whee=
zy x64 =C3=A0 jour</p></body></html>
--Boundary-01=_c10wP3LPV1tg4di--

--nextPart8064566.umfbmJtWjl
Content-Type: application/pgp-signature; name=signature.asc
Content-Description: This is a digitally signed message part.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)

iF4EABEIAAYFAk/DTVwACgkQwVSLFeHi33RrXQEA31nIIZy/3f8+uvR4fl0NyNxx
o1uZJmc7IO98W5rBEs8BAKOAFNrSnZNeiScroD4fnSF6prFmmd5mFFqj9MExlG9C
=QeJp
-----END PGP SIGNATURE-----

--nextPart8064566.umfbmJtWjl--

--
Lisez la FAQ de la liste avant de poser une question :
http://wiki.debian.org/fr/FrenchLists

Pour vous DESABONNER, envoyez un message avec comme objet "unsubscribe"
vers debian-user-french-REQUEST@lists.debian.org
En cas de soucis, contactez EN ANGLAIS listmaster@lists.debian.org
Archive: http://lists.debian.org/201205281203.18308.tulum@laposte.net

5 réponses

Avatar
Jean-Michel OLTRA
Bonjour,


Le lundi 28 mai 2012, Tulum a écrit...


si je met le proxy 127.0.0.1:3128, je n'ai aucun problème, donc à priori
squid3 ne bloque pas mon accès, si je comprend bien.

J'ai pas mal cherché mais je n'est rien trouvé sur internet.



Sous Debian, Squid est sur le 3128, et pas le 8080

--
jm

--
Lisez la FAQ de la liste avant de poser une question :
http://wiki.debian.org/fr/FrenchLists

Pour vous DESABONNER, envoyez un message avec comme objet "unsubscribe"
vers
En cas de soucis, contactez EN ANGLAIS
Archive: http://lists.debian.org/
Avatar
Tulum
--Boundary-01=_4L1wP95LjFqTCFB
Content-Type: text/plain;
charset="utf-8"
Content-Transfer-Encoding: quoted-printable

Le lundi 28 mai 2012 12:13:41 Jean-Michel OLTRA, vous avez écrit :

Sous Debian, Squid est sur le 3128, et pas le 8080


C'est pour que j'ai testé squid comme proxy (127.0.0.1:3128) et là   je n'ai pas
de problème. dansguardian a bien comme port pour le proxy 3128
ci dessous la configuration réseau de dansguardian :

# Network Settings
#
# the IP that DansGuardian listens on. If left blank DansGuardian will
# listen on all IPs. That would include all NICs, loopback, modem, etc.
# Normally you would have your firewall protecting this, but if you want
# you can limit it to a certain IP. To bind to multiple interfaces,
# specify each IP on an individual filterip line.
filterip =

# the port that DansGuardian listens to.
filterport = 8080

# the ip of the proxy (default is the loopback - i.e. this server)
proxyip = 127.0.0.1

# the port DansGuardian connects to proxy on
proxyport = 3128

# Whether to retrieve the original destination IP in transparent proxy
# setups and check it against the domain pulled from the HTTP headers.
#
# Be aware that when visiting sites which use a certain type of round-robin
# DNS for load balancing, DG may mark requests as invalid unless DG gets
# exactly the same answers to its DNS requests as clients. The chances of
# this happening can be increased if all clients and servers on the same LAN
# make use of a local, caching DNS server instead of using upstream DNS
# directly.
#
# See http://www.kb.cert.org/vuls/id/435052
# on (default) | off
#!! Not compiled !! originalip = on

# accessdeniedaddress is the address of your web server to which the cgi
# dansguardian reporting script was copied. Only used in reporting levels 1
and 2.
#
# This webserver must be either:
# 1. Non-proxied. Either a machine on the local network, or listed as an
exception
# in your browser's proxy configuration.
# 2. Added to the exceptionsitelist. Option 1 is preferable; this option is
# only for users using both transparent proxying and a non-local server
# to host this script.
#
# Individual filter groups can override this setting in their own
configuration.
#
accessdeniedaddress = 'http://YOURSERVER.YOURDOMAIN/cgi-bin/dansguardian. pl'

# Non standard delimiter (only used with accessdeniedaddress)
# To help preserve the full banned URL, including parameters, the variables
# passed into the access denied CGI are separated using non-standard
# delimiters. This can be useful to ensure correct operation of the filter
# bypass modes. Parameters are split using "::" in place of "&", and "= =" in
# place of "=".
# Default is enabled, but to go back to the standard mode, disable it.
nonstandarddelimiter = on

--Boundary-01=_4L1wP95LjFqTCFB
Content-Type: text/html;
charset="utf-8"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0//EN" "http://www.w3.org/TR/REC- html40/strict.dtd">
<html><head><meta name="qrichtext" content="1" /><style type="text/cs s">
p, li { white-space: pre-wrap; }
</style></head><body style=" font-family:'DejaVu Sans Mono'; font-size:9p t; font-weight:400; font-style:normal;">
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">Le lundi 28 mai 2012 12:13:41 Jean-Michel OLTRA, vous avez écrit :</p>
<p style="-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb sp;</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; Sous D ebian, Squid est sur le 3128, et pas le 8080</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">C'est pour que j'ai testé squid comme proxy (127.0.0.1:3128) et là je n'ai p as de problème. dansguardian a bien comme port pour le proxy 3128</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">ci dessous la configuration réseau de dansguardian :</p>
<p style="-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb sp;</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># Network S ettings</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># </p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># the IP th at DansGuardian listens on. If left blank DansGuardian will</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># listen on all IPs. That would include all NICs, loopback, modem, etc.</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># Normally you would have your firewall protecting this, but if you want</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># you can l imit it to a certain IP. To bind to multiple interfaces,</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># specify e ach IP on an individual filterip line.</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">filterip =</p>
<p style="-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb sp;</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># the port that DansGuardian listens to.</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">filterport = 8080</p>
<p style="-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb sp;</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># the ip of the proxy (default is the loopback - i.e. this server)</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">proxyip = 127.0.0.1</p>
<p style="-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb sp;</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># the port DansGuardian connects to proxy on</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">proxyport = 3128</p>
<p style="-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb sp;</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># Whether t o retrieve the original destination IP in transparent proxy</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># setups an d check it against the domain pulled from the HTTP headers.</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">#</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># Be aware that when visiting sites which use a certain type of round-robin</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># DNS for l oad balancing, DG may mark requests as invalid unless DG gets</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># exactly t he same answers to its DNS requests as clients. The chances of</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># this happ ening can be increased if all clients and servers on the same LAN</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># make use of a local, caching DNS server instead of using upstream DNS</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># directly. </p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">#</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># See http: //www.kb.cert.org/vuls/id/435052</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># on (defau lt) | off</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">#!! Not com piled !! originalip = on</p>
<p style="-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb sp;</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># accessden iedaddress is the address of your web server to which the cgi</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># dansguard ian reporting script was copied. Only used in reporting levels 1 and 2.</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">#</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># This webs erver must be either:</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># 1. Non-p roxied. Either a machine on the local network, or listed as an exception</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># in yo ur browser's proxy configuration.</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># 2. Added to the exceptionsitelist. Option 1 is preferable; this option is</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># only for users using both transparent proxying and a non-local server</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># to ho st this script.</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">#</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># Individua l filter groups can override this setting in their own configuration.</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">#</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">accessdenie daddress = 'http://YOURSERVER.YOURDOMAIN/cgi-bin/dansguardian.pl'</p>
<p style="-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb sp;</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># Non stand ard delimiter (only used with accessdeniedaddress)</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># To help p reserve the full banned URL, including parameters, the variables</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># passed in to the access denied CGI are separated using non-standard</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># delimiter s. This can be useful to ensure correct operation of the filter</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># bypass mo des. Parameters are split using &quot;::&quot; in place of &quot;&amp;&quot ;, and &quot;==&quot; in</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># place of &quot;=&quot;.</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;"># Default i s enabled, but to go back to the standard mode, disable it.</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">nonstandard delimiter = on</p></body></html>
--Boundary-01=_4L1wP95LjFqTCFB--

--
Lisez la FAQ de la liste avant de poser une question :
http://wiki.debian.org/fr/FrenchLists

Pour vous DESABONNER, envoyez un message avec comme objet "unsubscribe"
vers
En cas de soucis, contactez EN ANGLAIS
Archive: http://lists.debian.org/
Avatar
Jean-Michel OLTRA
Bonjour,


Le lundi 28 mai 2012, Tulum a écrit...

# the port that DansGuardian listens to.
filterport = 8080

# the ip of the proxy (default is the loopback - i.e. this server)
proxyip = 127.0.0.1



Je ne connais pas dansguardian, donc je ne te répondrais pas sur sa conf
propre. Dans Squid, il y a l'option url_rewrite_program. Tu l'as
renseignée ? Vois tu qqch dans les logs de squid
/var/log/squid/access.log ?

Sinon, une connexion ré-initialisée pourrait s'avérer être un reset
(drapeau tcp RST). Un port qui ne serait pas ouvert ? Un accès mal
paramétré entre Squid et Dansguardian qui renverrait le RST ? Tu
pourrais suivre la connexion avec tcpdump sur lo et sur les ports 3128
et 8080 (tcpdump -i lo -n port 8080 or port 3128)

--
jm

--
Lisez la FAQ de la liste avant de poser une question :
http://wiki.debian.org/fr/FrenchLists

Pour vous DESABONNER, envoyez un message avec comme objet "unsubscribe"
vers
En cas de soucis, contactez EN ANGLAIS
Archive: http://lists.debian.org/
Avatar
Ludovic Gomez
Bonjour,




Tulum a écrit :

Le lundi 28 mai 2012 12:13:41 Jean-Michel OLTRA, vous avez écrit :

Sous Debian, Squid est sur le 3128, et pas le 8080


C'est pour que j'ai testé squid comme proxy (127.0.0.1:3128) et là je
n'ai pas
de problème. dansguardian a bien comme port pour le proxy 3128
ci dessous la configuration réseau de dansguardian :

# Network Settings
#
# the IP that DansGuardian listens on. If left blank DansGuardian will
# listen on all IPs. That would include all NICs, loopback, modem,
etc.
# Normally you would have your firewall protecting this, but if you
want
# you can limit it to a certain IP. To bind to multiple interfaces,
# specify each IP on an individual filterip line.
filterip >
# the port that DansGuardian listens to.
filterport = 8080

# the ip of the proxy (default is the loopback - i.e. this server)
proxyip = 127.0.0.1



Ici il faut mettre l'adresse ip du serveur et redémarrer le service.




# the port DansGuardian connects to proxy on
proxyport = 3128

# Whether to retrieve the original destination IP in transparent proxy
# setups and check it against the domain pulled from the HTTP headers.
#
# Be aware that when visiting sites which use a certain type of
round-robin
# DNS for load balancing, DG may mark requests as invalid unless DG
gets
# exactly the same answers to its DNS requests as clients. The chances
of
# this happening can be increased if all clients and servers on the
same LAN
# make use of a local, caching DNS server instead of using upstream DNS
# directly.
#
# See http://www.kb.cert.org/vuls/id/435052
# on (default) | off
#!! Not compiled !! originalip = on

# accessdeniedaddress is the address of your web server to which the
cgi
# dansguardian reporting script was copied. Only used in reporting
levels 1
and 2.
#
# This webserver must be either:
# 1. Non-proxied. Either a machine on the local network, or listed as
an
exception
# in your browser's proxy configuration.
# 2. Added to the exceptionsitelist. Option 1 is preferable; this
option is
# only for users using both transparent proxying and a non-local
server
# to host this script.
#
# Individual filter groups can override this setting in their own
configuration.
#
accessdeniedaddress >'http://YOURSERVER.YOURDOMAIN/cgi-bin/dansguardian.pl'

# Non standard delimiter (only used with accessdeniedaddress)
# To help preserve the full banned URL, including parameters, the
variables
# passed into the access denied CGI are separated using non-standard
# delimiters. This can be useful to ensure correct operation of the
filter
# bypass modes. Parameters are split using "::" in place of "&", and
"==" in
# place of "=".
# Default is enabled, but to go back to the standard mode, disable it.
nonstandarddelimiter = on



--
Envoyé de mon téléphone Android avec K-9 Mail. Excusez la brièveté.

--
Lisez la FAQ de la liste avant de poser une question :
http://wiki.debian.org/fr/FrenchLists

Pour vous DESABONNER, envoyez un message avec comme objet "unsubscribe"
vers
En cas de soucis, contactez EN ANGLAIS
Archive: http://lists.debian.org/
Avatar
Tulum
--Boundary-01=_8IU/Pne28lbJV2I
Content-Type: text/plain;
charset="utf-8"
Content-Transfer-Encoding: quoted-printable

Le lundi 28 mai 2012 17:38:07 Ludovic Gomez, vous avez écrit :
Bonjour,

Tulum a écrit :
>Le lundi 28 mai 2012 12:13:41 Jean-Michel OLTRA, vous avez écrit :
>> Sous Debian, Squid est sur le 3128, et pas le 8080
>
>C'est pour que j'ai testé squid comme proxy (127.0.0.1:3128) et l à je
>n'ai pas
>de problème. dansguardian a bien comme port pour le proxy 3128
>ci dessous la configuration réseau de dansguardian :
>
># Network Settings
>#
># the IP that DansGuardian listens on. If left blank DansGuardian will
># listen on all IPs. That would include all NICs, loopback, modem,
>etc.
># Normally you would have your firewall protecting this, but if you
>want
># you can limit it to a certain IP. To bind to multiple interfaces,
># specify each IP on an individual filterip line.
>filterip =
>
># the port that DansGuardian listens to.
>filterport = 8080
>
># the ip of the proxy (default is the loopback - i.e. this server)
>proxyip = 127.0.0.1

Ici il faut mettre l'adresse ip du serveur et redémarrer le service.



Excuses pour ma réponse tardive, c'était effectivement tout simpl ement ça

Merci

--Boundary-01=_8IU/Pne28lbJV2I
Content-Type: text/html;
charset="utf-8"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0//EN" "http://www.w3.org/TR/REC- html40/strict.dtd">
<html><head><meta name="qrichtext" content="1" /><style type="text/cs s">
p, li { white-space: pre-wrap; }
</style></head><body style=" font-family:'DejaVu Sans Mono'; font-size:9p t; font-weight:400; font-style:normal;">
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">Le lundi 28 mai 2012 17:38:07 Ludovic Gomez, vous avez écrit :</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; Bonjou r,</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; </p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; Tulum &lt;&gt; a écrit :</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;Le lundi 28 mai 2012 12:13:41 Jean-Michel OLTRA, vous avez écrit :</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;&g t; Sous Debian, Squid est sur le 3128, et pas le 8080</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;</ p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;C' est pour que j'ai testé squid comme proxy (127.0.0.1:3128) et là je</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;n' ai pas</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;de problème. dansguardian a bien comme port pour le proxy 3128</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;ci dessous la configuration réseau de dansguardian :</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;</ p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;# Network Settings</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;#< /p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;# the IP that DansGuardian listens on. If left blank DansGuardian will</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;# listen on all IPs. That would include all NICs, loopback, modem,</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;et c.</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;# Normally you would have your firewall protecting this, but if you</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;wa nt</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;# you can limit it to a certain IP. To bind to multiple interfaces,</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;# specify each IP on an individual filterip line.</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;fi lterip =</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;</ p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;# the port that DansGuardian listens to.</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;fi lterport = 8080</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;</ p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;# the ip of the proxy (default is the loopback - i.e. this server)</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; &gt;pr oxyip = 127.0.0.1</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; </p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt; Ici il faut mettre l'adresse ip du serveur et redémarrer le service.</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">&gt;</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">Excuses pou r ma réponse tardive, c'était effectivement tout simplement à §a</p>
<p style="-qt-paragraph-type:empty; margin-top:0px; margin-bottom:0px; ma rgin-left:0px; margin-right:0px; -qt-block-indent:0; text-indent:0px; ">&nb sp;</p>
<p style=" margin-top:0px; margin-bottom:0px; margin-left:0px; margin-rig ht:0px; -qt-block-indent:0; text-indent:0px; -qt-user-state:0;">Merci</p></ body></html>
--Boundary-01=_8IU/Pne28lbJV2I--

--
Lisez la FAQ de la liste avant de poser une question :
http://wiki.debian.org/fr/FrenchLists

Pour vous DESABONNER, envoyez un message avec comme objet "unsubscribe"
vers
En cas de soucis, contactez EN ANGLAIS
Archive: http://lists.debian.org/