From owner-freebsd-net@FreeBSD.ORG Wed Nov 5 08:10:40 2003 Return-Path: Delivered-To: freebsd-net@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 2006D16A4CE for ; Wed, 5 Nov 2003 08:10:40 -0800 (PST) Received: from itaqui.terra.com.br (itaqui.terra.com.br [200.176.3.19]) by mx1.FreeBSD.org (Postfix) with ESMTP id 616D643FAF for ; Wed, 5 Nov 2003 08:10:36 -0800 (PST) (envelope-from eick.jac@terra.com.br) Received: from altamira.terra.com.br (altamira.terra.com.br [200.176.3.40]) by itaqui.terra.com.br (Postfix) with ESMTP id 249808105C6 for ; Wed, 5 Nov 2003 14:10:35 -0200 (BRST) Received: from eicke (unknown [200.162.114.126]) (authenticated user eick.jac) by altamira.terra.com.br (Postfix) with ESMTP id E0D953DC179 for ; Wed, 5 Nov 2003 14:10:34 -0200 (BRST) Message-ID: <001b01c3a3b7$03cac970$0905a8c0@alellyxbr.com.br> From: "Eicke" To: "FreeBSD_Net" Date: Wed, 5 Nov 2003 14:08:12 -0200 MIME-Version: 1.0 X-Priority: 3 X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook Express 6.00.2720.3000 X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2727.1300 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable X-Content-Filtered-By: Mailman/MimeDel 2.1.1 Subject: Help with squid X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 05 Nov 2003 16:10:40 -0000 Hi folks I configured a FreeBSD Squid24 Server and I receive the = following error in my access.log TCP_DENIED/403 I configure only one machine(192.168.5.9) to access the proxy server = (ipfw fwd). I guess there is something wrong in my squid.conf, in acl = definitions...below folowing a piece of my squid.conf: acl all src 0.0.0.0/0.0.0.0 acl manager proto cache_object acl localhost src 127.0.0.1/255.255.255.255 acl SSL_ports port 443 563 acl Safe_ports port 80 # http acl Safe_ports port 21 # ftp acl Safe_ports port 443 563 # https, snews acl Safe_ports port 70 # gopher acl Safe_ports port 210 # wais acl Safe_ports port 1025-65535 # unregistered ports acl Safe_ports port 280 # http-mgmt acl Safe_ports port 488 # gss-http acl Safe_ports port 591 # filemaker acl Safe_ports port 777 # multiling http acl CONNECT method CONNECT http_access allow manager localhost http_access deny manager http_access deny !Safe_ports http_access deny CONNECT !SSL_ports http_access allow 192.168.5.9=20 http_access deny all icp_access allow all Could you help me? Regards. Eicke.