X-Git-Url: http://www.privoxy.org/gitweb/?a=blobdiff_plain;f=doc%2Fsource%2Ffaq.sgml;h=165ae72770b69eedfdb59a8f606ac56359e548d6;hb=fd81b8b7599f845ea731153fbacc52528bd978d0;hp=afe66dabb4926a52abf9e137de302cf9e7539ff7;hpb=658087b23fc2ff3ddf195ab2092c5585e5cdfff0;p=privoxy.git
diff --git a/doc/source/faq.sgml b/doc/source/faq.sgml
index afe66dab..165ae727 100644
--- a/doc/source/faq.sgml
+++ b/doc/source/faq.sgml
@@ -8,7 +8,7 @@
-
+
@@ -21,13 +21,11 @@
Privoxy">
]>
- Copyright &my-copy; 2001-2018 by
+ Copyright &my-copy; 2001-2020 by
Privoxy Developers
-$Id: faq.sgml,v 2.135 2017/03/27 10:22:27 fabiankeil Exp $
-
@@ -164,9 +156,9 @@ me?
strengths is that it is highly configurable giving you the ability to
completely personalize your installation. Being familiar with, or at least
having an interest in learning about HTTP and other networking
- protocols, HTML, and
- Regular
+ url="https://en.wikipedia.org/wiki/Http">HTTP and other networking
+ protocols, HTML, and
+ Regular
Expressions
will be a big plus and will help you get the most out of &my-app;.
A new installation just includes a very basic configuration. The user
@@ -176,9 +168,9 @@ me?
Much of Privoxy's configuration can be done
- with a Web browser.
+ with a Web browser.
But there are areas where configuration is done using a
- text editor
+ text editor
to edit configuration files. Also note that the web-based action editor
doesn't use authentication and should only be enabled in environments
where all clients with access to &my-app; listening port can be trusted.
@@ -188,13 +180,13 @@ me?
What is a proxy? How does
Privoxy work?
- A web proxy
+ A web proxy
is a service, based on a software such as &my-app;, that clients
(i.e. browsers) can use instead of connecting to web servers directly.
The clients then ask the proxy to request objects (web pages, images, movies etc)
on their behalf and to forward the data to the clients.
It is a go-between. For details, see
- Wikipedia's proxy definition.
+ Wikipedia's proxy definition.
There are many reasons to use web proxies, such as security (firewalling),
@@ -269,7 +261,7 @@ from the old Junkbuster?
Junkbuster left off.
Privoxy still blocks ads and banners,
still manages cookies, and still
+ url="https://en.wikipedia.org/wiki/Browser_cookie">cookies, and still
helps protect your privacy. But, most of these features have been enhanced,
and many new ones have been added, all in the same vein.
@@ -409,12 +401,11 @@ Privoxy. Why should I use Privoxy at all?
Is there is a license or fee? What about a
warranty? Registration?
- Privoxy is free software and licensed under the GNU General Public License (GPL) version 2.
- It is free to use, copy, modify or distribute as you wish under the terms of this
- license. Please see the Copyright section for more
- information on the license and copyright. Or the LICENSE file
- that should be included.
+ Privoxy is free software.
+ It is free to use, copy, modify or distribute as you wish under the terms of its
+ license.
+ Please see the Copyright section for more
+ information on the license and copyright.
There is no warranty of any kind, expressed, implied or otherwise.
@@ -489,7 +480,7 @@ warranty? Registration?
While it is partly out of date, it's still worth reading.
- Our TODO list
+ Our TODO list
may be of interest to you as well.
Please let us know if you want to work on one of the items listed.
@@ -498,7 +489,7 @@ warranty? Registration?
Would you like to donate?
Donations are welcome. Our
- TODO list
+ TODO list
is rather long and being able to pay one (or more) developers to work on Privoxy
would make a huge difference, even if it was only for a couple of weeks. Donations may
also be used for Privoxy-related travel expenses (for example to attend conferences),
@@ -516,31 +507,6 @@ warranty? Registration?
SPI's general donation page.
-
- You can also donate to Privoxy using a bank account or a "Paypal" address:
-
-
- Name on account: Zwiebelfreunde e.V.
- IBAN: DE95430609671126825604
- BIC: GENODEM1GLS
- Bank: GLS Bank
-
-
- "Paypal" address: privoxy@zwiebelfreunde.de
-
-
- Donations made through Zwiebelfreunde e.V. are tax-deductible in Germany
- and other countries that recognize German charitable clubs. Feel free to
- use the Subject field to provide a name to be credited and a list of TODO
- list items you are interested in the most. For example: Max Mustermann: #16, #1, #14.
-
-
-
- Note that donations made through Zwiebelfreunde e.V. currently can't be checked
- automatically so you may not get credited right away. The credits currently
- reflect donations received before 2016-01-14.
-
-
If you have any questions regarding donations please mail to either the
public user mailing list or, if it's a private matter, to
@@ -555,10 +521,10 @@ warranty? Registration?
- Gold (10000 EUR/year)
+ Gold (12000 USD/year)
- Logo shown at the bottom of the
+ Logo or text link shown at the bottom of the
Privoxy homepage.
Logo, link and self description on the
sponsor page.
@@ -566,10 +532,10 @@ warranty? Registration?
- Silver (1000 EUR/year)
+ Silver (1200 USD/year)
- Logo shown randomly at the bottom of the
+ Logo or text link shown at the bottom of the
Privoxy homepage.
Logo, link and self description on the
sponsor page.
@@ -577,7 +543,7 @@ warranty? Registration?
- Bronze (500 EUR/year)
+ Bronze (600 USD/year)
Logo and link on the sponsor page.
@@ -590,14 +556,21 @@ warranty? Registration?
our server, no requests are made to the sponsor website unless
the links are being used.
+
+ Link targets are without path (https://www.example.org/
+ not https://www.example.org/seo/keyword/spam/).
+
The details may change over time but changes will only affect new sponsors
(or existing sponsors that explicitly agreed to the changes).
If you want to become a sponsor, please contact
- Fabian Keil.
- New sponsors are only accepted if no developer objects.
+ Fabian Keil
+ and include the link target in the mail.
+ New sponsors are only accepted if no
+ Privoxy team
+ member objects.
@@ -686,7 +659,7 @@ special I have to do now?
the User Manual for more
details. You should also flush your browser's memory and disk
cache to get rid of any cached junk items, and remove any stored
- cookies.
+ cookies.
@@ -821,7 +794,7 @@ Privoxy is running and being used.
for single URLs, whole web sites, groups or parts thereof etc. Actions can also be
grouped together and then applied to requests matching one or more patterns.
There are many possible actions that might apply to any given site. As an example,
- if you are blocking cookies
+ if you are blocking cookies
as one of your default actions, but need to accept cookies from a given site,
you would need to define an exception for this site in one of your actions
files, preferably in user.action.
@@ -863,7 +836,7 @@ way to do this?
-
+There are several different actions files. What are
the differences?
@@ -876,10 +849,9 @@ the differences?
Where can I get updated Actions Files?
Based on your feedback and the continuing development, updates of
- default.action will be
- made available from time to time on the files section of
- our project page.
+ default.action are available from
+ git.
@@ -928,34 +900,30 @@ the differences?
The default configuration shouldn't impact the usability of any of these services.
It may, however, make all cookies
+ url="https://en.wikipedia.org/wiki/Browser_cookie">cookies
temporary, so that your browser will forget your
login credentials in between browser sessions. If you would like not to have to log
in manually each time you access those websites, simply turn off all cookie handling
for them in the user.action file. An example for yahoo might
look like:
- # Allow all cookies for Yahoo login:
#
{ -crunch-incoming-cookies -crunch-outgoing-cookies -session-cookies-only }
.login.yahoo.com
-
These kinds of sites are often quite complex and heavy with
- Javascript and
+ Javascript and
thus fragile. So if still a problem,
we have an alias just for such
sticky situations:
- # Gmail is a _fragile_ site:
#
{ fragile }
# Gmail is ...
mail.google.com
-
Be sure to flush your browser's caches whenever making these kinds of
changes, just to make sure the changes take.
@@ -1106,10 +1074,8 @@ with a browser? Does that not raise security issues?
should look like:
-
listen-address 192.168.1.1:8118
-
Save the file, and restart Privoxy. Configure
@@ -1121,10 +1087,8 @@ with a browser? Does that not raise security issues?
all available interfaces:
-
listen-address :8118
-
And then use Privoxy's
@@ -1218,18 +1182,12 @@ instead of the checkerboard image. Why and how do I get rid of this?
Can Privoxy run as a service
on Win2K/NT/XP?
-Windows service
- functionality. See
+ Yes. Full Windows service
+ functionality was introduced in Privoxy 3.0.5.
+ See
the User Manual for details on how to install and configure
Privoxy as a service.
-
- Earlier ]]>3.x versions could run as a system service using srvany.exe.
- See the discussion at https://sourceforge.net/tracker/?func=detail&atid=361118&aid=485617&group_id=11118,
- for details, and a sample configuration.
-
@@ -1267,7 +1225,7 @@ and thus avoid individual browser configuration?
The whole idea of Privoxy is to modify client requests
and server responses in all sorts of ways and therefore
it's not a transparent proxy as described in
- RFC 2616.
+ RFC 2616.
However, some people say transparent proxy when they
@@ -1333,7 +1291,8 @@ and thus avoid individual browser configuration?
For a good discussion of some of the issues involved (including privacy and
security issues), see
- https://sourceforge.net/tracker/?func=detail&atid=211118&aid=629518&group_id=11118.
+ https://sourceforge.net/p/ijbswa/support-requests/107/.
@@ -1341,19 +1300,20 @@ and thus avoid individual browser configuration?
I sometimes notice cookies sneaking through. How?Cookies can be
+ url="https://en.wikipedia.org/wiki/Browser_cookie">Cookies can be
set in several ways. The classic method is via the
Set-Cookie HTTP header. This is straightforward, and an
easy one to manipulate, such as the &my-app; concept of
session-cookies-only.
There is also the possibility of using
- Javascript to
+ Javascript to
set cookies (&my-app; calls these content-cookies). This
is trickier because the syntax can vary widely, and thus requires a certain
amount of guesswork. It is not realistic to catch all of these short of
disabling Javascript, which would break many sites. And lastly, if the
cookies are embedded in a HTTPS/SSL secure session via Javascript, they are beyond
- Privoxy's reach.
+ Privoxy's reach unless you enable
+ https-inspection.
All in all, &my-app; can help manage cookies in general, can help minimize
@@ -1367,7 +1327,7 @@ and thus avoid individual browser configuration?
No, in fact there are many beneficial uses of
cookies. Cookies are just a
+ url="https://en.wikipedia.org/wiki/Browser_cookie">cookies. Cookies are just a
method that browsers can use to store data between pages, or between browser
sessions. Sometimes there is a good reason for this, and the user's life is a
bit easier as a result. But there is a long history of some websites taking
@@ -1379,7 +1339,7 @@ and thus avoid individual browser configuration?
See the
- Wikipedia cookie
+ Wikipedia cookie
definition for more.
@@ -1397,11 +1357,9 @@ and thus avoid individual browser configuration?
To disable all cookie actions, so that cookies are allowed unrestricted,
both in and out, for example.com:
-
{ -crunch-incoming-cookies -crunch-outgoing-cookies -session-cookies-only -filter{content-cookies} }
.example.com
-
Place the above in user.action. Note that some of these may
be off by default anyway, so this might be redundant, but there is no harm
@@ -1492,16 +1450,13 @@ and thus avoid individual browser configuration?
can very easily over-ride all blocking with the
following very simple rule in your user.action:
-
# Unblock everybody, everywhere
{ -block }
/ # UN-Block *all* URLs
-
Or even a more comprehensive reversing of various ad related actions:
-
# Unblock everybody, everywhere, and turn off appropriate filtering, etc
{ -block \
@@ -1510,7 +1465,6 @@ and thus avoid individual browser configuration?
allow-popups \
}
/ # UN-Block *all* URLs and allow ads
-
This last action in this compound statement,
allow-popups, is an
during upgrades. You can, however, create completely new templates,
place them in another directory and specify the alternate path in the main
config. For details, have a look at the templdir option.
+ url="../user-manual/config.html#TEMPLDIR">templdir option.
@@ -1551,10 +1505,8 @@ the BLOCKED page?
available as compile-time options. You should
configure the sources as follows:
-
./configure --disable-toggle --disable-editor --disable-force
-
This will create an executable with hard-coded security features so that
&my-app; does not allow easy bypassing of blocked sites, or changing the
@@ -1855,11 +1807,9 @@ us help you. Your efforts are not wasted, and we do appreciate them.
forwarding section
and uncomment the line:
-
# forward-socks5t / 127.0.0.1:9050 .
-
-
+
Note that if you got Tor through one of the bundles, you may
have to change the port from 9050 to 9150 (or even another one).
@@ -1872,13 +1822,11 @@ us help you. Your efforts are not wasted, and we do appreciate them.
uncomment the following forward rules, to make sure your local network is still
reachable through Privoxy:
-
# forward 192.168.*.*/ .
# forward 10.*.*.*/ .
# forward 127.*.*.*/ .
-
-
+
Unencrypted connections to systems in these address ranges will
be as (un)secure as the local network is, but the alternative is
@@ -1892,11 +1840,9 @@ us help you. Your efforts are not wasted, and we do appreciate them.
network by using their names, you will need additional exceptions
that look like this:
-
# forward localhost/ .
-
-
+
Save the modified configuration file and open
http://config.privoxy.org/show-status
@@ -1971,7 +1917,7 @@ speed up web browsing?
No, it does not have this ability at all. You want something like
Squid or
- Polipo for this.
+ Polipo for this.
And, yes, before you ask, Privoxy can co-exist
with other kinds of proxies like Squid.
See the forwarding
@@ -2022,9 +1968,17 @@ ads used to be. Why?
How can Privoxy filter Secure (HTTPS) URLs?
- Since secure HTTP connections are encrypted SSL sessions between your browser
- and the secure site, and are meant to be reliably secure,
- there is little that Privoxy can do but hand the raw
+ If you enable
+ https-inspection
+ Privoxy will impersonate the destination
+ server and can thus filter encrypted requests and responses as well.
+
+
+ Without
+ https-inspection
+ secure HTTP connections are encrypted SSL sessions between your
+ browser and the secure site, and there is little
+ that Privoxy can do but hand the raw
gibberish data though from one end to the other unprocessed.
@@ -2060,8 +2014,9 @@ ads used to be. Why?
for HTTPS.
- Adding HTTP/2 support is on the TODO list but currently
- nobody is known to work on it.
+ Adding HTTP/2 support is on the
+ TODO
+ list but currently nobody is known to work on it.
@@ -2241,14 +2196,12 @@ altered it! Yikes, what is wrong!
your hosts list is neglected by Privoxy's
configuration, consider adding your list to your user.action file:
-
{ +block }
www.ad.example1.com
ad.example2.com
ads.galore.example.com
etc.example.com
-
@@ -2344,7 +2297,6 @@ and related issues?
There are several possibilities:
-Privoxy is not running. Solution: verify
@@ -2364,7 +2316,6 @@ and related issues?
try disabling or removing the firewall as a simple test.
-
@@ -2417,7 +2368,6 @@ still getting through. How?
our job a little easier. &my-app; has crunched (meaning caught
and BLOCKED) quite a few items in this example, but perhaps missed a few as well.
-
-
Despite 12 out of 32 requests being blocked, the page looked, and seemed to
behave perfectly normal (minus some ads, of course).
@@ -2745,7 +2694,7 @@ Why?
Upgrading Privoxy, or going to the most recent
default.action file available from SourceForge
+ url="https://www.privoxy.org/gitweb/?p=privoxy.git;a=blob_plain;f=default.action.master;hb=HEAD">git
might be worth a try, too.
@@ -2799,7 +2748,7 @@ Why?
Privoxy is attempting to disable malicious
- Javascript
+ Javascript
in this case, with the unsolicited-popups
filter. Privoxy cannot tell very well
good code snippets from bad code snippets.
@@ -2915,14 +2864,12 @@ browsing has slowed to a crawl. What gives?
To do that, enable logging to figure out which requests get blocked by
&my-app; and add the hosts (no path patterns) to a section like this:
-
-
Additionally you have to configure your browser to contact
127.0.0.1:0 directly (instead of through &my-app;).
@@ -2934,6 +2881,11 @@ browsing has slowed to a crawl. What gives?
section, and add 127.0.0.1:0 in the No Proxy for:
field.
+
+ You can also prevent the problem by enabling
+ https-inspection
+ in which case Privoxy's error messages are delivered encrypted.
+
@@ -3033,10 +2985,10 @@ browsing has slowed to a crawl. What gives?
this is not considered a Privoxy bug.
- To prevent the crashes you can rewrite your filter to use less ressources,
+ To prevent the crashes you can rewrite your filter to use less resources,
increase the relevant memory limit or recompile pcre to use less stack space.
For details please see the
- pcrestack man page
+ pcrestack man page
and the documentation of your operating system.
@@ -3047,11 +2999,12 @@ browsing has slowed to a crawl. What gives?
Your userid probably isn't allowed to edit the file.
On Windows you can use the windows equivalent of sudo:
- runas /user:administrator "notepad \privoxy\config.txt"
+ runas /user:administrator "notepad \privoxy\config.txt"
or fix the file permissions:
+C:\Privoxy>icacls config.txt
config.txt BUILTIN\Administrators:(I)(F)
NT AUTHORITY\SYSTEM:(I)(F)
@@ -3074,7 +3027,6 @@ config.txt I3668\Lee:(F)
Successfully processed 1 files; Failed processing 0 files
C:\Privoxy>
-
or try to point-n-click your way through adjusting the file
@@ -3106,7 +3058,7 @@ C:\Privoxy>
- License
+ License
&license;
@@ -3114,7 +3066,7 @@ C:\Privoxy>
- History
+ History
&history;