настройка прозрачного squid3
Доброе время суток. уже целую неделю пытаюсь настроить прозрачный squid3, всё нормально проходит через команду squid3 -k parse .. кроме одной момента
Starting Authentication on port 192.168.0.1:3128 Disabling Authentication on port 192.168.0.1:3128 (interception enabled) Disabling IPv6 on port 192.168.0.1:3128 (interception enabled)
вот мой squid.conf
acl manager proto cache_object acl localhost src 127.0.0.1/32 acl to_localhost dst 127.0.0.0/8
acl homenet src 192.168.0.0/24 acl goodip src «/etc/allow.txt» acl delaypool src «/etc/squid3/delay.txt» acl delaypool20 src «/etc/squid3/delay20.txt» acl delaysite url_regex -i «/etc/squid3/delay_site.txt» acl perring src «/etc/squid3/perring.txt» acl exception src «/etc/squid3/exception.txt» acl bad_url url_regex -i «/etc/squid3/advare.txt» acl spyware url_regex -i «/etc/squid3/spyware.txt» acl bad_url_reg urlpath_regex -i «/etc/squid3/adv_reg.txt»
acl directurl url_regex «/etc/squid3/nocache.txt» acl timeless time 7:00-23:59 acl media urlpath_regex -i \.mp3$ \.asf$ \.wma$ \.avi$ \.mov$
acl SSL_ports port 443 acl Safe_ports port 80 # http acl Safe_ports port 21 # ftp acl Safe_ports port 443 # https acl Safe_ports port 5190 # icq acl Safe_ports port 1025-65535 # unregistered ports acl CONNECT method CONNECT
http_access allow manager localhost http_access deny manager http_access deny !Safe_ports http_access deny CONNECT !SSL_ports
http_access allow goodip http_access allow localhost http_access deny all icp_access deny all htcp_access deny all
http_port 3128 transparent
hierarchy_stoplist cgi-bin ?
acl QUERY urlpath_regex cgi-bin \? no_cache deny QUERY no_cache deny directurl
cache_mem 64 MB maximum_object_size_in_memory 512 KB cache_dir ufs /var/spool/squid3 15000 16 256 maximum_object_size 8192 KB access_log /var/log/squid3/access.log squid cache_log /var/log/squid3/cache.log cache_store_log none
pid_filename /var/run/squid3.pid
debug_options ALL,1 refresh_pattern ^ftp: 1440 20% 10080 refresh_pattern ^gopher: 1440 0% 1440 refresh_pattern (cgi-bin|\?) 0 0% 0 refresh_pattern . 0 20% 4320
quick_abort_min 16 KB quick_abort_max 16 KB quick_abort_pct 95
negative_ttl 5 minutes positive_dns_ttl 6 hours negative_dns_ttl 1 minutes
request_header_access From deny all request_header_access Referer deny all request_header_access Server deny all request_header_access User-Agent deny all request_header_access WWW-Authenticate deny all request_header_access Link deny all header_replace User-Agent Opera/9.80 (Windows NT 6.1; U; ru) Presto/2.6.7 Version/11.00
cache_effective_user proxy cache_effective_group proxy visible_hostname server.ex
delay_pools 5
delay_class 1 1 delay_access 1 allow delaypool20 delay_parameters 1 50000/50000 delay_access 1 deny all
delay_class 2 1 delay_access 2 allow perring delay_access 2 allow directurl delay_parameters 2 -1/-1 delay_access 2 deny all
delay_class 3 2 delay_access 3 allow !timeless delay_parameters 3 -1/-1 512000/512000 delay_access 3 deny all
delay_class 4 1 delay_access 4 allow delaypool delay_access 4 allow delaysite delay_access 4 allow media delay_parameters 4 125000/125000 delay_access 4 deny all
delay_class 5 2 delay_access 5 allow goodip delay_parameters 5 -1/-1 250000/512000 delay_access 5 deny all
icp_port 3130 error_directory /usr/share/squid3/errors/Russian-koi8-r
deny_info ERR_BLOCKED_BANNERS bad_url deny_info ERR_BLOCKED_BANNER_REG bad_url_reg deny_info ERR_BLOCKED_SPYWARE spyware
always_direct allow directurl hosts_file /etc/hosts forwarded_for off coredump_dir /var/spool/squid3
ВОТ МОЙ ifconfig
auto lo iface lo inet loopback
auto eth0 iface eth0 inet dhcp
auto eth1 iface eth1 inet static address 192.168.0.1 netmask 255.255.255.0
ПОМОГИТЕ ПОЖАЛУЙСТА, УЖЕ НЕ ЗНАЮ ЧТО И ПРИДУМАТЬ