[Wylug-help] transparent squid proxy and a firewall

DavidPashleycszdp@scs.leeds.ac.uk DavidPashleycszdp at scs.leeds.ac.uk
Thu, 27 Jul 2000 18:28:06 +0100


I currently have the following network layout

isdn  |----| ethernet
-------    |------------------|
      |____|       |          |
     firewall    |----|    |----|
                 |    |    |    |
                 |____|    |____| 
                 squid     client

firewall - 10.0.0.254 
squid    - 10.0.0.3
client   - 10.0.0.x

I want to prevent the client from bypassing the web cache and therefore
want to setup squid as a transparent proxy, using ipchains and
ipmasqadm/portfw/autofw. All the examples I have seen have the proxy
outside of the firewall, which I can not do. What I want is to block all
traffic destined to an external network with a port no of 80 or 443 and
redirect it to 10.0.0.3:3128, but allow anything from 10.0.0.3 through.

Does anyone know how to do this and does my description make sense?

-- 
David Pashley
david@davidpashley.com
[This line is still unavailable]