Re: [squid-users] squid 3.2.0.18 transparent nat interception

From: Eliezer Croitoru <eliezer_at_ngtech.co.il>
Date: Thu, 30 Aug 2012 12:13:13 +0300

On 8/30/2012 11:25 AM, Pawel Mojski wrote:
> W dniu 29-Aug-12 16:41, Amos Jeffries pisze:
>>
>> There is a patch in bug 3626 to try.
>
> After applying this patch squid correct recognizes loop and gives me
> error 403 page.
> But, this not solve my problem. I want to force squid to use resolved
> from Host: header ip address to connect to remote host, not tcp
> destination address from tcp header of received packet.
> Is it possible to do that?
>
> Regards;
> Pawel Mojski
as i said you must change the DNAT rule and be more explicit because it
will cause a loop when squid tries to read port 80 it will be dnated to
itself.
since these squid versions you are talking about are at my sleeve it
must be the reason.

Good luck,
Eliezer

-- 
Eliezer Croitoru
https://www1.ngtech.co.il
IT consulting for Nonprofit organizations
eliezer <at> ngtech.co.il
Received on Thu Aug 30 2012 - 09:13:48 MDT

This archive was generated by hypermail 2.2.0 : Thu Aug 30 2012 - 12:00:04 MDT