Re: transparent proxy in BSD

From: carlos <carlos@dont-contact.us>
Date: Thu, 24 Sep 1998 06:44:34 +0700

As i still got the problem after changing the squid.conf,
i repeated my question : here's my PC (202.150.0.117)
which is gatewayed to 202.150.0.119(machine running ipnat)
opening yahoo web site (squid server is 202.150.2.12) :

#ipnat -l
List of active MAP/Redirect filters:
rdr ef0 202.150.0.1/32 port 80 -> 202.150.2.12 port 3128 tcp
rdr ef0 0.0.0.0/0 port 80 -> 202.150.2.12 port 3128 tcp

List of active sessions:
RDR 202.150.2.12 3128 <- -> 204.71.200.202 80 [202.150.0.117 1701]
117 0 4378
RDR 202.150.2.12 3128 <- -> 204.71.200.247 80 [202.150.0.117 1698]
64 0 434b
RDR 202.150.2.12 3128 <- -> 204.71.200.247 80 [202.150.0.117 1697]
46 0 434b
RDR 202.150.2.12 3128 <- -> 204.71.200.247 80 [202.150.0.117 1696]
46 0 434b

Ipnat works fine from the report,
here's trafshow report in squid machine :

#trafshow src net 202.150.0 and port 3128
202.150.0.117..1706 papparazi.vision.net.i..3128 tcp 312 20
202.150.0.117..1704 papparazi.vision.net.i..3128 tcp 104
202.150.0.117..1705 papparazi.vision.net.i..3128 tcp 104

the packets came to the right machine and the right proxy port.
but like before, no packet processed in application layer
(squid -access.conf).

i'm also visiting our client web site,
but the log file still recognize me as 202.150.0.117,
not 202.150.2.12,- the squid is 1.1.22, ipnat 3.2.9
both running BSDI 3.1 O/S.

I am attached a part of my squid.conf below,

http_port 3128
icp_port 3130

httpd_accel virtual 80
httpd_accel_with_proxy on
httpd_accel_uses_host_header on

Thanks for any help.

TIA

Carlos
Received on Thu Sep 24 1998 - 23:39:18 MDT

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 16:42:11 MST