SquidAccel

Материал из OpenWiki
Перейти к: навигация, поиск

Опробовано на Squid v3.

Сборка ./configure --prefix=/home/exchange-www/squid.3 --enable-storeio=diskd,ufs --enable-ssl --with-openssl=/usr/local/openssl-0.9.6m && make

visible_hostname test.domain.com
cache_mgr test@domain.com

cache_effective_user exchange-www

mime_table /home/exchange-www/squid.3/etc/mime.conf
cache_access_log /home/exchange-www/squid.3/var/logs/access.log
cache_store_log /home/exchange-www/squid.3/var/logs/store.log
cache_log /home/exchange-www/squid.3/var/logs/cache.log
pid_filename /home/exchange-www/squid.3/var/logs/squid.pid

https_port {IP-SQUID}:443 accel vhost cert=/home/exchange-www/squid.3/etc/ssl/test.crt key=/home/exchange-www/squid.3/etc/ssl/test.key defaultsite=exchange.off
#cafile=/home/exchange-www/srv_accel/conf/ssl/ex.adm.rian.ru.crt

#cache_peer exchange.off parent 80 0 proxy-only no-query no-digest login=PASS front-end-https=on
cache_peer exchange.off parent 443 0 no-query ssl proxy-only originserver login=PASS sslflags=DONT_VERIFY_PEER

ssl_unclean_shutdown on

acl all src 0.0.0.0/0.0.0.0
acl owa-name url_regex ^https://test.domain.com
acl owa-exchange urlpath_regex (\/exchange\/|\/exchweb\/|\/public\/|\/rpc\/)
acl owa-host dst {IP-SQUID}/255.255.255.255

http_access allow owa-host owa-name owa-exchange
http_access deny all