Re: [squid-users] wiki ConfigExamples/Intercept/LinuxDnat does not work

From: Harald Dunkel <harald.dunkel_at_aixigo.de>
Date: Thu, 17 Feb 2011 16:07:58 +0100

Hi Jeff,

On 02/17/11 14:24, jeffrey j donovan wrote:
>
>
> greetings
> im assuming your using ipfw on BSD, what does your redirect statement look like ?

OpenBSD comes with Packet Filter instead of ipfw. Here is
the pf code:

:
match out on $ext_if inet nat-to ($ext_if:0)
pass in quick on internal proto tcp from $int_squid_host to !$lan port $http_port tag LAN_INET
pass in quick on internal proto tcp from $lan to !$lan port $http_port route-to ( $int_if $int_squid_host ) tag HTTP_SQUID
:
pass out on external tagged LAN_INET
pass out on internal tagged HTTP_SQUID
:

Surely much more code than in your ipfw example.

Regards

Harri
Received on Thu Feb 17 2011 - 15:08:06 MST

This archive was generated by hypermail 2.2.0 : Thu Feb 17 2011 - 12:00:05 MST