Return-Path: <afm@othello.ch>
Delivered-To: kvikkjokk.net-oden.eriksson@kvikkjokk.net
Received: (qmail 2237 invoked by uid 804); 29 Jun 2003 23:17:22 +0200
Received: from afm@othello.ch by kamajokk.kvikkjokk.net by uid 801 with qmail-scanner-1.16 
 (avp: 4.0.3.0. clamscan: 0.60.  Clear:. 
 Processed in 1.30993 secs); 29 Jun 2003 21:17:22 -0000
X-Remote-IP: 193.5.25.13
Received: from falstaff.othello.ch (193.5.25.13)
  by kamajokk.kvikkjokk.net with SMTP; 29 Jun 2003 23:17:20 +0200
Received: from othello.ch (desdemona.othello.ch [193.5.25.18])
        by falstaff.othello.ch (8.12.6/8.12.6/SuSE Linux 0.6) with ESMTP id h5TLHP12006946
        for <oden.eriksson@kvikkjokk.net>; Sun, 29 Jun 2003 23:17:26 +0200
Date: Sun, 29 Jun 2003 23:17:25 +0200
Subject: Re: mod_webfilter
Content-Type: text/plain;
  charset=ISO-8859-1;
  format=flowed
Mime-Version: 1.0 (Apple Message framework v552)
From: =?ISO-8859-1?Q?Andreas_M=FCller?= <afm@othello.ch>
To: Oden Eriksson <oden.eriksson@kvikkjokk.net>
Content-Transfer-Encoding: quoted-printable
In-Reply-To: <200306251018.01473.oden.eriksson@kvikkjokk.net>
Message-Id: <14663D52-AA77-11D7-B006-000A95772D46@othello.ch>
X-Mailer: Apple Mail (2.552)
X-UID: 22273


Am Mittwoch, 25.06.03 um 10:18 Uhr schrieb Oden Eriksson:
 > I'm a Mandrake Linux contributer and packager and I'm very confused 
about how
 > to make this module work... Could you please give more examples than 
what's
 > on the mod_webfilter web page?.
I've just uploaded a new version that explains a bit more what is
possible with the module (the new szenarios section  in  the  web
page).

Here is a configuration for a proxy that uses mod_clamav to check
for viruses, accepts certain hosts without any filtering (the  ok
category in the whitelist), blocks all URLs categorised as sex in
the Blacklist database and removes  script  tags  for  all  other
urls. This protects from Javascript based attacks.

     ClamavTmpdir    /var/tmp/clamav
     ClamavDbdir     /usr/local/share/clamav
     ClamavSafetypes text/html
     ClamavMutexname clamav.lock
     ClamavShmname   clamav.shm
     WebfilterWhitelist      /usr/local/httpd/htdocs/webfilter/db/white
     WebfilterWhitelistCategories    ok
     WebfilterBlacklist      /usr/local/httpd/htdocs/webfilter/db/black
     WebfilterBlacklistCategories    sex
     WebfilterBlacktypes     /usr/local/httpd/htdocs/webfilter/db/blacktypes
     WebfilterWhitetypes     /usr/local/httpd/htdocs/webfilter/db/whitetypes
     WebfilterMutexname      webfilter.mutex
     WebfilterTags           script
     WebfilterRegexp <script[^>]*src=[^>]*>
     WebfilterRegexp <noscript[^>]*>
     WebfilterRegexp </noscript[^>]*>

     <Proxy *>
         Allow from all
         SetOutputFilter     WEBFILTER;CLAMAV
     </Proxy>

Hope this helps.

Mit herzlichem Gruss

                                         Andreas Mller

--
Dr. Andreas Mller, Beratung und Entwicklung
CH-8852 Altendorf, Bubental 53,  Switzerland
Tel: +41 55 4621483      Fax: +41 55 4621485
Email: andreas.mueller@othello.ch
