免费注册 查看新帖 |

Chinaunix

  平台 论坛 博客 文库
123
最近访问板块 发新帖
楼主: hss202
打印 上一主题 下一主题

[proxy] squid反向配虚拟主机 [复制链接]

论坛徽章:
0
21 [报告]
发表于 2007-01-15 14:12 |只看该作者
Squid 的IP地址为:192.168.1.1
web1的IP:192.168.1.2,上面有w1.aa.com和w2.aa.com
web2的IP:192.168.1.3,上面有w1.bb.com和w2.bb.com
已经在Squid 主机的hosts文件里加了:
w1.aa.com  192.168.1.2
w2.aa.com  192.168.1.2
w1.bb.com  192.168.1.3
w2.bb.com  192.168.1.3

Squid 的配置是这样写的:

http_port 192.168.1.1:80 transparent vhost vport

acl OverConnLimit maxconn 16
http_access deny OverConnLimit

acl myip dst 192.168.1.2,192.168.1.3
http_access deny !myip

acl Manager proto cache_object
acl Localhost src 127.0.0.1 192.168.1.1
http_access allow Manager Localhost
http_access deny Manager


acl all src 0.0.0.0/0.0.0.0
acl Safe_ports port 80
http_access deny !Safe_ports
http_access allow all

visible_hostname www.aa.com
cache_mgr webmaster@aa.com

cache_effective_user squid
cache_effective_group squid
tcp_recv_bufsize 65535 bytes


cache_peer w1.aa.com parent 80 0 no-query originserver
cache_peer w2.aa.com parent 80 0 no-query originserver
cache_peer w1.bb.com parent 80 0 no-query originserver
cache_peer w2.bb.com parent 80 0 no-query originserver


error_directory /usr/local/squid/share/errors/Simplify_Chinese


还有一个问题,如果我是一个域名对应多台主机Squid会自动做均衡吗??

论坛徽章:
0
22 [报告]
发表于 2007-02-01 16:41 |只看该作者
##
# 版本: squid-2.6.STABLE6
##

visible_hostname testserver

http_port 192.168.0.10:80 vhost vport

cache_mem 50 MB
cache_dir ufs /www/squid2.6/var/cache 300 16 256
coredump_dir /www/squid2.6/var/cache
cache_swap_low 80
cache_swap_high 85


maximum_object_size 1024 KB



hierarchy_stoplist cgi-bin ?

acl QUERY urlpath_regex cgi-bin \?
cache deny QUERY


acl apache rep_header Server ^Apache
broken_vary_encoding allow apache

# 定义日志格式:
logformat squid  %ts.%03tu %6tr %>a %Ss/%03Hs %<st %rm %ru %un %Sh/%<A %mt
logformat squidmime  %ts.%03tu %6tr %>a %Ss/%03Hs %<st %rm %ru %un %Sh/%<A %mt [%>h] [%<h]
logformat common %>a %ui %un [%tl] "%rm %ru HTTP/%rv" %Hs %<st %Ss:%Sh
logformat combined %>a %ui %un [%tl] "%rm %ru HTTP/%rv" %Hs %<st "%{Referer}>h" "%{User-Agent}>h" %Ss:%Sh
# 日志文件路径及格式:
access_log /www/squid2.6/var/logs/access.log common
logfile_rotate 1000


# 刷新时间:
refresh_pattern -i \.htm$   0  50% 10080
refresh_pattern -i \.html$  0  50% 10080
refresh_pattern -i \.shtml$ 0  50% 10080

refresh_pattern -i \.gif$   0  50% 10080
refresh_pattern -i \.swf$   0  50% 10080
refresh_pattern -i \.jpg$   0  50% 10080
refresh_pattern -i \.png$   0  50% 10080
refresh_pattern -i \.bmp$   0  50% 10080

refresh_pattern -i \.js$    0  50% 10080
refresh_pattern -i \.jsp$   0  50% 10080
refresh_pattern -i \.php$   0  50% 10080
refresh_pattern -i \.asp$   0  50% 10080

refresh_pattern -i \.doc$   0  50% 10080
refresh_pattern -i \.ppt$   0  50% 10080
refresh_pattern -i \.xls$   0  50% 10080
refresh_pattern -i \.pdf$   0  50% 10080
refresh_pattern -i \.rar$   0  50% 10080
refresh_pattern -i \.zip$   0  50% 10080

refresh_pattern ^ftp:        1440        20%        10080
refresh_pattern ^gopher:        1440        0%        1440
refresh_pattern .                0        20%        10080



acl manager proto cache_object
acl localhost src 127.0.0.1/255.255.255.255
acl to_localhost dst 127.0.0.0/8
acl SSL_ports port 443
acl Safe_ports port 80          # http
acl Safe_ports port 21          # ftp
acl Safe_ports port 443         # https
acl Safe_ports port 70          # gopher
acl Safe_ports port 210         # wais
acl Safe_ports port 1025-65535  # unregistered ports
acl Safe_ports port 280         # http-mgmt
acl Safe_ports port 488         # gss-http
acl Safe_ports port 591         # filemaker
acl Safe_ports port 777         # multiling http
acl CONNECT method CONNECT

http_access allow manager localhost
http_access deny manager
http_access deny !Safe_ports
http_access deny CONNECT !SSL_ports

acl all src 0.0.0.0/0.0.0.0
http_access allow all


http_reply_access allow all

icp_access allow all



#################
#
#  反向代理begin
#

cache_peer 192.168.0.10 parent 80 0 no-query originserver name=testserver80
cache_peer_domain testserver80 www.testserver81.com
cache_peer_domain testserver80 www.test181.com
cache_peer_domain testserver80 www.test281.com
cache_peer_domain testserver80 www.test381.com

cache_peer 192.168.0.11 parent 81 0 no-query originserver name=testserver81
cache_peer_domain testserver81 www.testserver82.com
cache_peer_domain testserver81 www.test182.com
cache_peer_domain testserver81 www.test282.com
cache_peer_domain testserver81 www.test382.com

cache_peer 192.168.0.12 parent 8080 0 no-query originserver name=testserver8080
cache_peer_domain testserver8080 www.testserver8080.com
cache_peer_domain testserver8080 www.test18080.com
cache_peer_domain testserver8080 www.test28080.com
cache_peer_domain testserver8080 www.test38080.com

#
#  反向代理end
#
################

论坛徽章:
0
23 [报告]
发表于 2009-03-25 11:23 |只看该作者
很好,我正需要。谢谢啊
您需要登录后才可以回帖 登录 | 注册

本版积分规则 发表回复

  

北京盛拓优讯信息技术有限公司. 版权所有 京ICP备16024965号-6 北京市公安局海淀分局网监中心备案编号:11010802020122 niuxiaotong@pcpop.com 17352615567
未成年举报专区
中国互联网协会会员  联系我们:huangweiwei@itpub.net
感谢所有关心和支持过ChinaUnix的朋友们 转载本站内容请注明原作者名及出处

清除 Cookies - ChinaUnix - Archiver - WAP - TOP