Re: [squid-users] Squid, Firewall & TCP RST Flags

From: Amos Jeffries <squid3_at_treenet.co.nz>
Date: Sat, 28 Dec 2013 17:26:12 +1300

On 28/12/2013 5:03 p.m., Nyamul Hassan wrote:
> Thank you all for your responses!
>
> This is setup as a forward transparent proxy for an ISP. Most of the RST
> packets are targeted towards remote IPs (not the ISP users).
>
> Although we do not see any detrimental effect on Squid functioning in our
> setup, would you recommend that we stop blocking these in iptables?

I would expect it is a good idea to let these packets go through, yes.

Amos
Received on Sat Dec 28 2013 - 04:26:23 MST

This archive was generated by hypermail 2.2.0 : Sat Dec 28 2013 - 12:00:06 MST