CLI man page:
safesquid-integrations(7)Directory and identity
- Integrate LDAP / Active Directory — users, groups, LDAP Profiles on Access rows.
- Kerberos / SSO — keytab at
/usr/local/safesquid/security/HTTP.keytab. - PAM stack
/etc/pam.d/safesquidfor System authentication. - IP-to-user map:
USER_IP_DB_FILEin startup.ini (for example VPN clients).
Scanning and adaptation
- Clam antivirus — local
clamdsocket. - SqScan — built-in in-memory scanner.
- ICAP — third-party REQMOD/RESPMOD services.
- DLP — upload inspection and OCR scoring.
- Image analyzer — optional image scoring module.
Categorisation and feeds
- SSqore — cloud URL categorisation (CCS).
- Categorize Web-Sites — local category overrides.
- Application Signatures / Content Signatures — vendor signature databases.
- Subscription — license and activation; gates cloud signature processing.
- See Cloud / categorisation feeds for UPDATE schedule and offline behaviour.
Network services
- WCCP — transparent redirection to the proxy.
- Proxy chain — upstream peers and CARP.
- BIND / DNS stubs under the security DNS directory (appliance).
- rbldnsd-style DNS blacklists used with DNS Blacklist.
- DNS categorisation zone:
DNS_CAT_ZONEin startup.ini.
Operations
- Monit:
/etc/monit/conf.d/safesquid.monit - systemd / init: see Daemon
- logrotate:
/etc/logrotate.d/safesquid - Master sync:
MASTER_IP,NEVER_SYNC,ALWAYS_SYNCin startup.ini
See also
CLI:man safesquid-integrations
