[Wylug-help] transparent squid proxy and a firewall

MatthewJohnPalmermjp16@uow.edu.au MatthewJohnPalmermjp16 at uow.edu.au
Mon, 21 Aug 2000 18:58:05 +1000 (EST)


On Sat, 19 Aug 2000, Ben wrote:

> >I want to prevent the client from bypassing the web cache and therefore
> >want to setup squid as a transparent proxy, using ipchains and
> >ipmasqadm/portfw/autofw. All the examples I have seen have the proxy
> >outside of the firewall, which I can not do. What I want is to block all
> >traffic destined to an external network with a port no of 80 or 443 and
> >redirect it to 10.0.0.3:3128, but allow anything from 10.0.0.3 through.
> >
> >Does anyone know how to do this and does my description make sense?

Sorry, I missed the OP so I'm replying to a reply.

This is a fairly easy thing to do, really.  Just use the REDIRECT rule in
ipchains.

> hosts. Firewalls will change again with the new kernel.

Oh marvellous.  Just when I learn one system... <g>  (I still run 2.0.36 on
some non-safety-critical boxen).


-- 
-----------------------------------------------------------------------
#include <disclaimer.h>
Matthew Palmer
mjp16@uow.edu.au