|
@@ -23,7 +23,7 @@ http_access deny CONNECT !SSL_ports
|
|
|
http_access allow localhost manager
|
|
|
http_access deny manager
|
|
|
http_access allow localhost
|
|
|
-http_access allow localnet
|
|
|
+include /etc/squid/conf.d/*.conf
|
|
|
http_access deny all
|
|
|
|
|
|
################################## Proxy Server ################################
|
|
@@ -37,7 +37,6 @@ refresh_pattern \/Release(|\.gpg)$ 0 0% 0 refresh-ims
|
|
|
refresh_pattern \/InRelease$ 0 0% 0 refresh-ims
|
|
|
refresh_pattern \/(Translation-.*)(|\.bz2|\.gz|\.xz)$ 0 0% 0 refresh-ims
|
|
|
refresh_pattern . 0 20% 4320
|
|
|
-logfile_rotate 0
|
|
|
|
|
|
# upstream proxy, set to your own upstream proxy IP to avoid SSRF attacks
|
|
|
# cache_peer 172.1.1.1 parent 3128 0 no-query no-digest no-netdb-exchange default
|
|
@@ -47,4 +46,4 @@ logfile_rotate 0
|
|
|
http_port 8194 accel vhost
|
|
|
cache_peer sandbox parent 8194 0 no-query originserver
|
|
|
acl src_all src all
|
|
|
-http_access allow src_all
|
|
|
+http_access allow src_all
|