mirror of
https://git.lapiole.org/dani/ansible-roles.git
synced 2025-07-31 19:55:42 +02:00
Update to 2023-09-13 23:00
This commit is contained in:
@@ -1,17 +0,0 @@
|
||||
ServerAdmin {{ squid_admin_email | default(system_admin_email) | default('admin@' + ansible_domain) }}
|
||||
ServerName {{ inventory_hostname }}
|
||||
TmpDir /tmp
|
||||
MaxMemObject 1048576
|
||||
Module logger sys_logger.so
|
||||
Logger sys_logger
|
||||
DebugLevel 0
|
||||
Port 127.0.0.1:1344
|
||||
TemplateDir /usr/share/c_icap/templates/
|
||||
{% if squid_scan_av %}
|
||||
Service squidclamav squidclamav.so
|
||||
{% endif %}
|
||||
|
||||
MaxKeepAliveRequests 1000
|
||||
MaxServers 20
|
||||
ThreadsPerChild 50
|
||||
MaxRequestsPerChild 100000
|
@@ -1,8 +0,0 @@
|
||||
LogSyslog yes
|
||||
LogVerbose yes
|
||||
ExtendedDetectionInfo yes
|
||||
LocalSocket /var/run/clamav/squid.sock
|
||||
LocalSocketMode 666
|
||||
ExitOnOOM yes
|
||||
Foreground yes
|
||||
DetectBrokenExecutables yes
|
@@ -1,15 +0,0 @@
|
||||
[Unit]
|
||||
Description=ClamAV antivirus daemon for squid
|
||||
After=syslog.target network.target
|
||||
|
||||
[Service]
|
||||
Type=simple
|
||||
ExecStart=/usr/sbin/clamd -c /etc/clamd.d/squid.conf
|
||||
User=clamav
|
||||
Group=clamav
|
||||
Restart=on-failure
|
||||
PrivateTmp=true
|
||||
|
||||
[Install]
|
||||
WantedBy=multi-user.target
|
||||
|
@@ -58,21 +58,6 @@ quick_abort_min -1
|
||||
|
||||
max_filedesc 8192
|
||||
|
||||
icap_enable on
|
||||
icap_send_client_ip on
|
||||
icap_send_client_username on
|
||||
icap_client_username_encode off
|
||||
icap_client_username_header X-Authenticated-User
|
||||
icap_preview_enable on
|
||||
icap_preview_size 1024
|
||||
|
||||
{% if squid_scan_av %}
|
||||
icap_service service_avi_req reqmod_precache icap://127.0.0.1:1344/squidclamav bypass=off
|
||||
adaptation_access service_avi_req allow !admins_src !local_whitelist_domains !local_whitelist_urls !no_av_scan_req av_src
|
||||
icap_service service_avi_resp respmod_precache icap://127.0.0.1:1344/squidclamav bypass=on
|
||||
adaptation_access service_avi_resp allow !admins_src !local_whitelist_domains !local_whitelist_urls !no_av_scan_rep av_src
|
||||
{% endif %}
|
||||
|
||||
{% if squid_filter_url %}
|
||||
url_rewrite_extras "%>a/%>A %un %>rm bump_mode=%ssl::bump_mode sni=\"%ssl::>sni\" referer=\"%{Referer}>h\""
|
||||
url_rewrite_program /usr/sbin/ufdbgclient -m 4 -l /var/log/squid/
|
||||
|
Reference in New Issue
Block a user