Squid/Solaris 2.6/Ip filter. Making it go?

From: Charles <charles@dont-contact.us>
Date: Wed, 15 Apr 1998 19:41:29 -0500 (CDT)

I have been trying to get Squid 1.1.21/Solaris 2.6/IP Filter 3.2.3 working with
transparent proxy without success.

The FAQ mentions it's possible, says its going to tell me how, then proceeds
not to. I've seen a couple queries in the mailing list with no real answers.
I'm hoping someone who does have it working can post their configuration and
any hints. Here's my setup:

The machine is running Solaris 2.6, IPFilter 3.2.3 and has interfaces hme0 and
hme1.

so it looks like this:

                      ---
Intranet <------>hme0|Sun|hme1<--------->Internet
                      ---
                
hme0=1.2.3.4 hme1=6.7.8.9

ipf.conf:
pass out log from any to any
pass in log from any to any

ipnat.conf:
rdr hme0 0.0.0.0/0 port http -> 127.0.0.1 port 3128

However, it's not working. ipmon shows:

14/04/1998 23:16:03.130882 hme0 @0:1 p client,34812 -> 127.0.0.1,3128 PR tcp len 20 44 -S
14/04/1998 23:16:03.130970 hme0 @0:1 p 204.162.80.142,3128 -> client,34812 PR tcp len 20 40 -AR
14/04/1998 23:16:03.134321 hme0 @0:1 p client,34813 -> 127.0.0.1,80 PR tcp len 20 44 -S
14/04/1998 23:16:03.134393 hme0 @0:1 p 204.162.80.142,3128 -> client,34813 PR tcp len 20 40 -AR

client is the ipaddr of a client browser on the Intranet trying to connect to
www.news.com for example. The browser instantly returns that the connection
was refused by the server.

Is it possible to get this configuration to work? If so, what have I done
wrong?

Thanks for any help.
Received on Thu Apr 16 1998 - 07:20:52 MDT

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 16:39:43 MST