Re: [squid-users] Tproxy iptables rules issue

From: Henrik Nordstrom <henrik_at_henriknordstrom.net>
Date: Sun, 01 Jun 2008 01:18:27 +0200

On fre, 2008-05-30 at 15:58 -0500, Ritter, Nicholas wrote:
> Symptomatically, I see the router redirecting via the GRE tunnel, the
> squid box sees the gre packets (2.6 kernel), but ifconfig does not show
> the GRE interface counters incrementing

Then your GRE/WCCP endpoint on the proxy is not matching what the router
sends. This is very low level.

> , and the squid service run in
> debug mode shows no transactions. Something is wrong with either my
> iptables rules or my GRE tunnel setup. I don't think it is the GRE
> tunnel because I set it up the same exact was as I did the non-tproxy
> squid boxes that I have in the same setup which are working.

Since you say that the GRE interface counters do not indicate any
traffic there must be something different. The use of TPROXY or not does
not affect the GRE level.

Regards
Henrik

Received on Sat May 31 2008 - 23:18:33 MDT

This archive was generated by hypermail 2.2.0 : Tue Aug 05 2008 - 01:05:14 MDT