Re: [squid-users] wccp and squid

From: Chad Whitten <cwhitten@dont-contact.us>
Date: Wed, 23 Apr 2003 10:00:31 -0500

well, it turns out it is my squid box after all
tried with another squid server i have that is only on public network and not
in private network and it works fine. what i cant figure out is why it works
and the other doesnt. confs are the same on both, iptables rules are the
same on both, same kernel version, same squid version. only difference is
one has two network interfaces.

is there a way to make squid only listen on 1 interface?

On Wednesday 23 April 2003 08:26, Ahmad Masood Shah wrote:
> Dear cw,
>
> in squid.conf give wccp router public IP which you are using on external
> interface on border router it will work...
>
> Best Regs,
> Masood Ahmad Shah
> System Administrator
>
> ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^
>
> | * * * * * * * * * * * * * * * * * * * * * * * *
> | Fibre Net (Pvt) Ltd. Lahore, Pakistan
> | Tel: +92-42-6677024
> | Mobile: +92-300-4277367
> | http://www.fibre.net.pk
> | * * * * * * * * * * * * * * * * * * * * * * * *
>
> ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^ ^
>
> ----- Original Message -----
> From: "Chad Whitten" <cwhitten@nexband.com>
> To: <squid-users@squid-cache.org>
> Sent: Wednesday, April 23, 2003 5:44 PM
> Subject: [squid-users] wccp and squid
>
> | having some trouble getting wccp and squid working in a particular case.
>
> its
>
> | not really a squid issue but more wccp and iptables but i was hoping
>
> someone
>
> | here might could help
> |
> | setup
> |
> | web
> | / \
> | router proxy
> |
> | switch
> |
> | client
> |
> | the router and proxy server both have a public interface (e0/0 and eth0)
>
> and a
>
> | private interface (fa1/0 and eth1). client is on private network
> | (172.16.0.0/24)
> |
> | i compiled squid with netfilter support, took a config from another
>
> working
>
> | wccp/squid setup i have (albeit a bit different).
> |
> | wccp router in squid.conf is set to the private ip of router - 172.16.0.1
> | sho ip wccp web-cache detail on router shows
> | router#sho ip wccp web-cache detail
> | WCCP Cache-Engine information:
> | IP Address: 172.16.0.12
> | Protocol Version: 0.4
> | State: Usable
> | Initial Hash Info: 00000000000000000000000000000000
> | 00000000000000000000000000000000
> | Assigned Hash Info: FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
> | FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
> | Hash Allotment: 256 (100.00%)
> | Packets Redirected: 3
> | Connect Time: 14:28:54
> |
> | my iptables rules are
> | iptables -t nat -A PREROUTING -i eth1 -p tcp --dport 80 -j
>
> REDIRECT --to-port
>
> | 3128
> |
> | im not doing nat/masquerading anywhere
> |
> | on the router i have an access-list like
> | access-list 120 permit ip 172.16.0.0 0.0.255.255 any
> | access-list 120 deny ip any any
> |
> | then
> | ip wccp version 1
> | ip wccp web-cache redirect-list 120
> |
> | ive checked my acls in squid.conf and they are okay.
> |
> | ive tried applying the command
> | ip wccp web-cache redirect out
> | to each interface on the router and neither one gets any packets to the
>
> squid
>
> | proxy.
> |
> | --
> | Chad Whitten
> | Network/Systems Administrator
> | neXband Communications
> | cwhitten@nexband.com
> | 601-944-4801 Phone
> | 601-714-5012 Fax

-- 
Chad Whitten
Network/Systems Administrator
neXband Communications
cwhitten@nexband.com
601-944-4801 Phone
601-714-5012 Fax
Received on Wed Apr 23 2003 - 09:00:34 MDT

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 17:15:16 MST