[squid-users] Mikrotik and Squid Transparent

Amos Jeffries squid3 at treenet.co.nz
Mon Jun 29 03:57:13 UTC 2015


On 29/06/2015 11:28 a.m., Alex Samad wrote:
> Hi
> 
> Thought I would re word what i got from this, see if I understood.
> 
> If squid and router (default gateway) are on the same box
> then
> DNAT to the SQUID listening port and local ip (Can you use localhost
> suppose it doesn't matter)

localhost does matter. Most systems have hardware level protection
preventing localhost IP or lo interface being used for non-local packets.

> else
> router the packet to the SQUID box (if possible)
> DNAT on the SQUID box to the local listening port and ip
> 
> 
> Squid is able to look in the NAT table ? to confirm what the
> destination would be not what the DNAT'ed ip would be.
> 

Yes.

> Does that sum it up ?
> 

And yes.

Amos



More information about the squid-users mailing list