Segue arquivo mestre de configuração:
IPUPDATE_TIMER='YES'
IPUPDATE_PAUSE='60'
IPUPDATE_EXTERNALIP='NO'
DYNDNS_UPDATE='YES'
DYNDNS_DOMAIN='coperpassos.dyndns.org'
DYNDNS_SYSTEM='dyndns'
DYNDNS_USERNAME='douglasassis'
DYNDNS_PASSWORD=''
NOIP_UPDATE='YES'
NOIP_DOMAIN='coperpassos.no-ip.org'
NOIP_EMAIL='informatica@coperpassos.com.br'
NOIP_PASSWORD=''
DYNSERV_UPDATE='NO'
ZONEEDIT_UPDATE='NO'
EVERYDNS_UPDATE='NO'
INETTYPE='ETHERNET_STATIC'
DNS1='189.112.102.18'
DNS2='189.112.102.19'
DNS3='208.67.222.222'
DOMAINNAME='coperpassos.com.br'
HOSTNAME='brazilfw'
LOCAL_IPADDR='120.120.120.250'
LOCAL_NETMASK='255.255.255.0'
IPADDR='189.112.102.154'
NETMASK='255.255.255.248'
GATEWAY='189.112.102.153'
DHCPSERVER='NO'
DHCPD_START_IP='192.168.0.65'
DHCPD_END_IP='192.168.0.254'
ADMIN_AUTH='NWHm.pkzwAU4db6nmdWRM.'
IF_LOCAL='eth1'
IF_INET='eth0'
TZ='EST2'
TIMESERVER='time-b.nist.gov'
USE_DNS_CACHE='YES'
ENABLE_CRON='YES'
ENABLE_EXTERNAL_PING='NO'
ENABLE_EXTERNAL_SSH='YES'
ENABLE_WEBADMIN='YES'
WEBADMIN_PORT='8180'
SSH_PORT='22'
DISABLE_NAT='on'
DEFAULT_USERS_FILTER='ALLOW_ALL'
DEFAULT_SERVICES_FILTER='ALLOW_ALL'
LOG_ATTEMPTS='on'
LOG_INCOMING_ACCESS='on'
LOG_OUTGOING_ACCESS='on'
DEBUG='on'
LANGUAGE_WEBADMIN='BRZ'
SARG_ENABLE='1'
SARG_WEB_PORT='8182'
SQSTAT_ENABLEDNS='0'
SQUID_ENABLE='1'
SQUID_PORT='8080'
SQUID_PROXY_TYPE='1'
SQUID_POLICY='ALL'
SQUID_DISK_CACHE_ENABLE='1'
SQUID_DISK_CACHE_SIZE='26010'
SQUID_MEM_CACHE_SIZE='512'
SQUID_MAX_OBJ_SIZE='8000'
SQUID_MIN_OBJ_SIZE='4'
MAXCONN='15'
SQUID_LOG_ACCESS='1'
ERROR_LINGUAGE='Portuguese'
SQUID_URLB_ENABLE='1'
SQUID_WRDB_ENABLE='1'
SQUID_EWRD_ENABLE='0'
SQUID_EXTB_ENABLE='0'
SQUID_CACHE_ENABLE='1'
SQUID_PRIV_USER='1'
SQUID_NO_CONF='0'
SQUIDNOW_LINES='50'
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>e segue o squid.conf
http_port 8080 transparent
icp_port 0
acl video_cache dstdomain -i "/usr/local/squid/etc/cache.flt"
cache allow video_cache
hierarchy_stoplist cgi-bin ?
acl QUERY urlpath_regex cgi-bin \?
cache deny QUERY
cache_replacement_policy heap LFUDA
memory_replacement_policy heap GDSF
cache_mem 512 MB
maximum_object_size 8000 KB
minimum_object_size 4 KB
maximum_object_size_in_memory 64 KB
cache_dir diskd /partition/squid/cache 26010 16 256 Q1=72 Q2=64
access_log /partition/squid/logs/access.log
cache_log /partition/squid/logs/cache.log
cache_store_log none
cache_effective_user nobody
cache_effective_group nogroup
pid_filename /var/run/squid.pid
half_closed_clients off
server_persistent_connections off
client_persistent_connections off
memory_pools on
buffered_logs on
pipeline_prefetch on
dns_retransmit_interval 15 seconds
#cache_swap_low 70
#cache_swap_high 90
refresh_pattern -i ^http://.*\.(css|htm|html|ico|js|jsp|xml)$ 1440 80% 999999
refresh_pattern -i ^http://.*\.(bmp|gif|jpeg|jpg|png)$ 1440 80% 999999 ignore-reload
refresh_pattern -i ^http://.*\.(ace|adt|arj|asf|avi|bin|bz2|bzip|cab|dat|dll|doc|dot|exe|fla|flv|gz|iso|lha|log|lzh|mdb|mid|mov|mp3|mpeg|mpg|msi|mso|ogg|pps|ppt|rar|rm|rtf|shs|src|sys|swf|tgz|tif|ttf|wav|wma|wri|wmv|vpu|vpaa|vqf|vob|zip)$ 43200 100% 999999 ignore-reload
refresh_pattern ^ftp: 1440 20% 10080
refresh_pattern ^gopher: 1440 0% 1440
refresh_pattern . 0 20% 4320
acl all src 0.0.0.0/0.0.0.0
acl localhost src 127.0.0.1/255.255.255.255
#acl to_localhost dst 127.0.0.1/32
acl SSL_ports port 443 563
acl Safe_ports port 80
acl Safe_ports port 21
acl Safe_ports port 443 563
acl Safe_ports port 70
acl Safe_ports port 210
acl Safe_ports port 8180
acl Safe_ports port 1025-65535
acl Safe_ports port 280
acl Safe_ports port 488
acl Safe_ports port 591
acl Safe_ports port 777
acl Safe_ports port 901
acl manager proto cache_object
acl PURGE method PURGE
acl CONNECT method CONNECT
http_access allow PURGE localhost
http_access allow manager localhost
http_access deny PURGE
http_access deny manager
http_access deny !Safe_ports
http_access deny CONNECT !SSL_ports
acl filterneg dstdom_regex "/usr/local/squid/etc/filter.flt"
acl block url_regex -i "/usr/local/squid/etc/block.flt"
acl internal_net src "/usr/local/squid/etc/ipaccess.yes"
acl no_proxy dstdom_regex -i "/usr/local/squid/etc/ipaccess.no"
#Access deny to Squid ident. header
header_access Via deny all
header_access X-Forwarded-For deny all
header_access Proxy-Connection deny all
header_access Accept-Encoding deny all
http_access allow privileged_users
always_direct allow no_proxy
http_access deny filterneg
http_access deny block
acl CONEXOES maxconn 15
http_access deny CONEXOES internal_net
http_access allow internal_net
http_access deny all
#http_reply_access allow all
#icp_access allow all
acl apache rep_header Server ^Apache
broken_vary_encoding allow apache
visible_hostname brazilfw
coredump_dir /partition/squid/cache
error_directory /usr/local/squid/share/errors/Portuguese