http_port 192.168.160.12:8080 hierarchy_stoplist cgi-bin ? acl QUERY urlpath_regex cgi-bin \? no_cache deny QUERY cache_mem 1524 MB cache_swap_low 90 cache_swap_high 95 maximum_object_size 4096 KB minimum_object_size 0 KB maximum_object_size_in_memory 8 KB fqdncache_size 2048 cache_replacement_policy lru memory_replacement_policy lru cache_dir ufs /squidspool/squid 10240 16 256 cache_access_log /var/log/squid/access.log cache_log /var/log/squid/cache.log cache_store_log /var/log/squid/store.log pid_filename /var/run/squid.pid ftp_user squid@watsonpharm.co.in ftp_telnet_protocol on auth_param ntlm program /usr/bin/ntlm_auth --helper- protocol=squid-2.5-ntlmssp auth_param ntlm children 40 auth_param ntlm max_challenge_reuses 0 auth_param ntlm max_challenge_lifetime 2 minutes auth_param basic program /usr/bin/ntlm_auth --helper-protocol=squid-2.5-basic auth_param basic children 40 auth_param basic realm Squid proxy-caching web server auth_param basic credentialsttl 2 hours auth_param basic casesensitive off external_acl_type nt_group ttl=0 concurrency=15 %LOGIN /usr/lib/squid/wbinfo_group.pl wais_relay_port 0 refresh_pattern ^ftp: 1440 20% 10080 refresh_pattern ^gopher: 1440 0% 1440 refresh_pattern . 0 20% 4320 range_offset_limit 20480 KB acl all src 0.0.0.0/0.0.0.0 acl manager proto cache_object acl localhost src 127.0.0.1/255.255.255.255 acl to_localhost dst 127.0.0.0/8 acl admingrp src 10.177.0.91-10.177.0.99 10.160.33.91 10.160.1.94 acl hradmingrp src 10.177.0.118 10.160.17.143 10.160.65.246 acl servers src 10.176.40.19 192.168.160.16 10.176.32.13 acl sus src 192.168.160.18 acl sustime1 time MTWHFAS 08:00-20:00 acl localnet dstdomain 10.176.*.* 10.177.*.* 192.168.*.* *.na.watson.com wpictx.na.watson.com hotdox hotdox.na.watson.com my.watson.com watdcdom01 watdcdom02 watsonproxy 10.64.34.152 uscasrv* 69.49.11.11 acl SSL_ports port 443 563 1494 2598 acl Safe_ports port 80 # http acl Safe_ports port 21 # ftp acl Safe_ports port 443 563 # https, snews acl Safe_ports port 70 # gopher acl Safe_ports port 210 # wais acl Safe_ports port 1025-65535 # unregistered ports acl Safe_ports port 280 # http-mgmt acl Safe_ports port 488 # gss-http acl Safe_ports port 591 # filemaker acl Safe_ports port 777 # multiling http acl Safe_ports port 201 # Socks acl Safe_ports port 8100 # DGFT1 acl badurl url_regex "/etc/squid/badurls" acl hradmin url_regex "/etc/squid/hradmin" acl trstsite url_regex "/etc/squid/trustedsites" acl trst_jaiswar url_regex "/etc/squid/trusted_jaiswar" acl co_auditsite url_regex "/etc/squid/co_auditor" acl extdeny urlpath_regex -i \.mp3$ \.wma$ \.mov$ \.mpg$ \.mpeg$ \.ram$ \.ra$ \.asx$ \.asf$ \.wmv$ \.avi$ \.qt$ \.rm$ \.iso$ \.wav$ \.exe$ \.afx$ \.flv$ \.swf$ acl webRadioReq1 req_mime_type -i ^video/x-ms-asf$ acl webRadioReq2 req_mime_type -i ^application/vnd.ms.wms-hdr.asfv1$ acl webRadioReq3 req_mime_type -i ^application/x-mms-framed$ acl webRadioRep1 rep_mime_type -i ^video/x-ms-asf$ acl webRadioRep2 rep_mime_type -i ^application/vnd.ms.wms-hdr.asfv1$ acl webRadioRep3 rep_mime_type -i ^application/x-mms-framed$ acl WMP browser Windows-Media-Player/* acl blockfile urlpath_regex "/etc/squid/blockfiles" acl ftp proto FTP acl CONNECT method CONNECT acl Auth proxy_auth REQUIRED acl NTAuth external nt_group Proxy_users http_access allow manager localhost sak bel goa dom n15 ak7 chk servers http_access deny manager http_access allow admingrp blockfile http_access allow admingrp badurl http_access allow admingrp extdeny http_access allow trstsite extdeny http_access allow sak trstsite http_access allow chk trstsite http_access allow bel trstsite http_access allow dom trstsite http_access allow goa trstsite http_access allow n15 trstsite http_access allow ak7 trstsite http_access allow trstsite extdeny http_access allow servers http_access allow ftp http_access allow hradmingrp hradmin http_access deny !Safe_ports http_access deny badurl http_access deny extdeny http_access deny sus sustime1 http_access deny blockfile http_access deny CONNECT !SSL_ports http_access allow localhost http_access allow Auth NTAuth http_reply_access allow all icp_access allow all always_direct allow localnet http_access deny WMP all http_access deny webRadioReq1 all http_access deny webRadioReq2 all http_access deny webRadioReq3 all http_reply_access deny webRadioRep1 all http_reply_access deny webRadioRep2 all http_reply_access deny webRadioRep3 all http_access deny all cache_mgr notes.admin@watsonpharm.co.in cache_effective_user squid cache_effective_group squid coredump_dir /var/spool/squid redirect_program /usr/local/bin/squidGuard -c /usr/local/squidGuard/squidGuard.conf redirect_children 14 redirector_bypass on