7 Nov
2003
7 Nov
'03
17:56
On Fri, 7 Nov 2003, Alan Davies wrote:
I now want to restrict access to squid on the linux box from room K13 and included the line
acl roomK13 src 1.0.131.131-1.0.131.159/16
This is wrong. When specifying IP ranges like this, you need to use a netmask of /32 on the end, otherwise it doesn't make sense to Squid (the /32 denotes that they're all individual IP addresses, rather than a large block). So, your acl line should read acl roomK13 src 1.0.131.131-1.0.132.159/32 Alternatively, you can use the IP/Netmask notation, so your line would read: acl roomK13 src 1.0.131.128/27 This will take all IP addresses between 1.0.131.128 and 1.0.132.159 into the roomK13 ACL.
http_access deny roomK13
This is fine :) Dan