Re: Q. How to configure transparency proxy with Redhat Linux??

From: Clifton Royston <cliftonr@dont-contact.us>
Date: Thu, 27 Jan 2000 08:19:50 -1000

On Fri, Jan 28, 2000 at 01:52:46AM +0900, SeonKyu Park wrote:
> I do Kernel Compiled ( Redhat 6.1 )
> [*] Network firewalls
> [ ] Socket Filtering
> [*] Unix domain sockets
> [*] TCP/IP networking
> [ ] IP: multicasting
> [ ] IP: advanced router
> [ ] IP: kernel level autoconfiguration
> [*] IP: firewalling
> [ ] IP: firewall packet netlink device
> [*] IP: always defragment (required for masquerading)
> [*] IP: transparent proxy support
>
> and squid configure --enable-ipf-transparent

FAQ: read <http://squid.ircache.net/Doc/FAQ/FAQ-17.html>,
 especially the introduction and
<http://squid.ircache.net/Doc/FAQ/FAQ-17.html#trans-linux-2>

"3.Compile and run a version of Squid which accepts connections for
other addresses. For some operating systems, you need to have
configured and built a version of Squid which can recognize the
hijacked connections and discern the destination addresses. For Linux
this seems to work automatically."

  In other words, remove the --enable-ipf-transparent, since you are
not using the ipf package, and it will work. (Then you can get into a
whole list of new problems, because transparent proxying is hard to
make work correctly.)

  -- Clifton

-- 
 Clifton Royston  --  LavaNet Systems Architect --  cliftonr@lava.net
        "An absolute monarch would be absolutely wise and good.  
           But no man is strong enough to have no interest.  
             Therefore the best king would be Pure Chance.  
              It is Pure Chance that rules the Universe; 
          therefore, and only therefore, life is good." - AC
Received on Thu Jan 27 2000 - 12:22:19 MST

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 16:50:44 MST