Re: [squid-users] possible bug on 2.7S9

From: Leonardo Rodrigues <leolistas_at_solutti.com.br>
Date: Mon, 08 Nov 2010 17:19:37 -0200

Em 07/11/2010 01:45, Amos Jeffries escreveu:
>
> Indicating that your NAT rules are incorrect.
>
> The above line is simply forcing Squid to send from 127.0.0.1. It
> would only have any effect if your NAT intercept rules were forcing
> all localhost traffic back into Squid.
>
> Removing the above line may mean that you are simply shifting the
> problem from your Squid to some web server elsewhere. Your Squid will
> be passing it requests for "http://localhost:8080/...". The upside is
> that at least it will not be a DoS flood when it arrives there.

     Hi Amos,

     Thanks for your tips .... they made me realize that i was doing
some 'dangerous' configurations. I have just adjusted things here,
changed the transparent port and made a little more secure http_access
rules to protect localhost_to access.

     Thanks !

-- 
	Atenciosamente / Sincerily,
	Leonardo Rodrigues
	Solutti Tecnologia
	http://www.solutti.com.br
	Minha armadilha de SPAM, NÃO mandem email
	gertrudes_at_solutti.com.br
	My SPAMTRAP, do not email it
Received on Mon Nov 08 2010 - 19:20:01 MST

This archive was generated by hypermail 2.2.0 : Tue Nov 09 2010 - 12:00:02 MST