Fox, Michael writes:
 > G'day all,
 > 
 > Quick question of sorts. Will you the background, hopefully I will explain
 > it in a way that makes sense. Basically I have a linux machine with 4
 > network interfaces.
 > 
 > thus;
 > 
 > eth0 = 203.x.x.x subnet (live internet ip addresses)
 > eth1 = 192.168.1.x (no ip-masq, http proxy access only)
 > eth2 = 192.168.2.x (no ip-masq, http proxy access only)
 > ppp0 = 139.130.x.x bigpond direct allocated ip
 > 
 > The questions are about to come. I have a machine plugged into the network
 > for 192.168.1.x as say 192.168.1.29, and I have set my IE to use the proxy
 > on this linux machine. When the machine makes a request for the web service
 > hosted on 203.x.x.x as say www.thisdomain.com, squid can be sometimes seen
 > to ask the telstra cache and thus download it from there if it has it. But I
 > don't want this to happen, and wanted to see if anyone could shed light on
 > it. I can't recall ever seeing any config directives for squid to tell it
 > not to cache certain domains, or ie ask its parent cache to make the request
 > on its behalf. Anyone care to help me fix the issue? or give ideas?

This comes from squid.conf.

I beleive this is what you're looking for.
just set up the propper acls and you should be away.

Bart

#       Usage: always_direct allow|deny [!]aclname ...
#
#       Here you can use ACL elements to specify requests which should
#       ALWAYS be forwarded directly to origin servers.  For example,
#       to always directly forward requests for local servers use
#       something like:
#
#               acl local-servers dstdomain my.domain.net
#               always_direct allow local-servers
#
#       To always forward FTP requests directly, use
#
#               acl FTP proto FTP
#               always_direct allow FTP
#
#       NOTE: There is a similar, but opposite option named
#       'never_direct'.  You need to be aware that "always_direct deny
#       foo" is NOT the same thing as "never_direct allow foo".  You
#       may need to use a deny rule to exclude a more-specific case of
#       some other rule.  Example:
#
#               acl local-external dstdomain external.foo.net
#               acl local-servers dstdomain  foo.net
#               always_direct deny local-external
#               always_direct allow local-servers
#
#       This option replaces some v1.1 options such as local_domain
#       and local_ip.

#  TAG: never_direct
#       Usage: never_direct allow|deny [!]aclname ...
#
#       never_direct is the opposite of always_direct.  Please read
#       the description for always_direct if you have not already.
#
#       With 'never_direct' you can use ACL elements to specify
#       requests which should NEVER be forwarded directly to origin
#       servers.  For example, to force the use of a proxy for all
#       requests, except those in your local domain use something like:
#
#               acl local-servers dstdomain foo.net
#               acl all src 0.0.0.0/0.0.0.0
#               never_direct deny local-servers
#               never_direct allow all
#       
#       or if squid is inside a firewall and there is local intranet
#       servers inside the firewall then use something like:
#
#               acl local-intranet dstdomain foo.net
#               acl local-external dstdomain external.foo.net
#               always_direct deny local-external
#               always_direct allow local-intranet
#               never_direct allow all
#       
#       This option replaces some v1.1 options such as inside_firewall
#       and firewall_ip.
--
SLUG - Sydney Linux Users Group Mailing List - http://www.slug.org.au
To unsubscribe send email to [EMAIL PROTECTED] with
unsubscribe in the text

Reply via email to