From a4c0b314a82b654987706a81513d67facc7f6509 Mon Sep 17 00:00:00 2001 From: Jerry Vonau Date: Sat, 20 Jul 2019 23:35:42 -0500 Subject: [PATCH 1/2] don't force templates, only create once in squid.yml --- roles/network/tasks/squid.yml | 1 + 1 file changed, 1 insertion(+) diff --git a/roles/network/tasks/squid.yml b/roles/network/tasks/squid.yml index 55cb28fcd..70af5b876 100644 --- a/roles/network/tasks/squid.yml +++ b/roles/network/tasks/squid.yml @@ -30,6 +30,7 @@ owner: "{{ item.owner }}" group: "{{ item.group }}" mode: "{{ item.mode }}" + force: no with_items: - src: 'roles/network/templates/squid/squid.sysconfig' dest: '/etc/sysconfig/squid' From 62d35299ef7880812f1c93ccceffbff3015d5142 Mon Sep 17 00:00:00 2001 From: Jerry Vonau Date: Sat, 20 Jul 2019 23:51:48 -0500 Subject: [PATCH 2/2] open localhost acl for dansguardian --- roles/network/templates/squid/squid-iiab.conf.j2 | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/roles/network/templates/squid/squid-iiab.conf.j2 b/roles/network/templates/squid/squid-iiab.conf.j2 index e215cd974..1bce0547d 100644 --- a/roles/network/templates/squid/squid-iiab.conf.j2 +++ b/roles/network/templates/squid/squid-iiab.conf.j2 @@ -35,8 +35,8 @@ acl whitelist dstdomain "/etc/{{ proxy }}/sites.whitelist.txt" acl school src 172.18.0.0/16 -#acl localhost src 127.0.0.1/32 -#acl to_localhost dst 127.0.0.0/8 +acl localhost src 127.0.0.1/32 +acl to_localhost dst 127.0.0.0/8 acl to_schoolserver dst 178.16.0.0/16 # to schoolserver or other local hosts. acl SSL_ports port 443 acl Safe_ports port 80 # http