Translate/Traductor

jueves, 27 de febrero de 2014

PROXY SQUID3

sudo service squid3 status

sudo cp /etc/squid3/squid.conf /etc/squid3/squid.conf.seg 

sudo gedit /etc/squid3/squid.conf

#########################################


# Recommended minimum configuration:
#
acl manager proto cache_object
acl localhost src 127.0.0.1/32 ::1
acl to_localhost dst 127.0.0.0/8 0.0.0.0/32 ::1

# Example rule allowing access from your local networks.
# Adapt to list your (internal) IP networks from where browsing
# should be allowed
#acl localnet src 10.0.0.0/8    # RFC1918 possible internal network
#acl localnet src 172.16.0.0/12    # RFC1918 possible internal network
#acl localnet src 192.168.0.0/16    # RFC1918 possible internal network
#acl localnet src fc00::/7       # RFC 4193 local private network range
#acl localnet src fe80::/10      # RFC 4291 link-local (directly plugged) machines

acl ai4 src 192.168.10.0/24

acl SSL_ports port 443
acl Safe_ports port 80        # http
acl Safe_ports port 21        # ftp
acl Safe_ports port 443        # https
acl Safe_ports port 70        # gopher
acl Safe_ports port 210        # wais
acl Safe_ports port 1025-65535    # unregistered ports
acl Safe_ports port 280        # http-mgmt
acl Safe_ports port 488        # gss-http
acl Safe_ports port 591        # filemaker
acl Safe_ports port 777        # multiling http
acl CONNECT method CONNECT


http_access allow manager localhost
http_access deny manager

# Deny requests to certain unsafe ports
http_access deny !Safe_ports

# Deny CONNECT to other than secure SSL ports
http_access deny CONNECT !SSL_ports


# Example rule allowing access from your local networks.
# Adapt localnet in the ACL section to list your (internal) IP networks
# from where browsing should be allowed
#http_access allow localnet
http_access allow localhost
http_access allow ai4

# And finally deny all other access to this proxy
http_access deny all



# Squid normally listens to port 3128
http_port 3128

cache_mem 256 MB

cache_dir ufs /var/spool/squid3 100 16 256

access_log /var/log/squid3/access.log squid

# Leave coredumps in the first cache dir
coredump_dir /var/spool/squid3


########################################################



sudo cat /var/log/squid3/access.log
sudo cat /var/log/squid3/cache.log

IPTABLES

Cortafuegos completo desde Webmin

sudo modprobe iptable_nat

sudo iptables -t nat -P PREROUTING ACCEPT

sudo iptables -t nat -P POSTROUTING ACCEPT

sudo iptables -A FORWARD -i eth1 -o eth0 -j ACCEPT

sudo iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE

dovecot y squirrelmail‏

dovecot trae incluido los protocolos de pop3, pop3s, imap, imaps, el cual nos permite acceder o descargar nuestro correo. Tendremos que instalar los siguientes paquetes que contienen los protocolos de dovecot.

sudo apt-get install dovecot-imapd dovecot-pop3d 

Ahora tendremos que modificar el archivo de configuración para que solamente tengamos habilitado pop3 y imap.

sudo gedit /etc/dovecot/dovecot.conf

Y buscaremos en este archivo parámetro protocols, y debe quedar de esta manera:

protocols = imap imaps

Guardamos y reiniciamos el servicio de dovecot.

sudo /etc/init.d/dovecot restart 



SquirrelMail es una aplicación webmail creada por Nathan y Luke Ehresman y escrita en PHP. Puede ser instalado en la mayoría de servidores web siempre y cuando éste soporte PHP.

Lo que hace SquirrelMail es un MUA que permite al usuario acceder a su correo desde un navegador web.

Comenzaremos la instalación:

sudo apt-get install squirrelmail 

Tendremos que crear un enlace al sitio en donde esta alojado el correo.

sudo ln -s /usr/share/squirrelmail/ /var/www/rodmen.net/webmail

Configuración de SquirrelMail.#

Los que haremos ahora es configurar nuestro SquirrelMail para nuestro dominio. Para eso tendremos que ejecutar el siguiente comando:

sudo squirrelmail-configure