[squid-users] squid intercept config

Yuri Voinov yvoinov at gmail.com
Thu Mar 5 18:56:27 UTC 2015


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Yep.

I don't see any inconsistencies.

06.03.15 0:14, Monah Baki пишет:
> So from my proxy server, everything looks good?
> 
> 
> 
> On Thu, Mar 5, 2015 at 1:12 PM, Yuri Voinov <yvoinov at gmail.com>
> wrote:
> 
> Looks good too.
> 
> Damn.
> 
> Will think.
> 
> Need to run some external checks.
> 
> 06.03.15 0:10, Monah Baki пишет:
>>>> root at ISN-PHC-CACHE:/home/support # pfctl -s nat No ALTQ
>>>> support in kernel ALTQ related functions disabled rdr pass
>>>> inet proto tcp from 10.0.0.0/8 to any port = http ->
>>>> 10.0.0.24 port 3129
>>>> 
>>>> On Thu, Mar 5, 2015 at 1:08 PM, Yuri Voinov
>>>> <yvoinov at gmail.com> wrote:
>>>> 
>>>> Can you run pfctl -s nat state on proxy box?
>>>> 
>>>> 06.03.15 0:05, Monah Baki пишет:
>>>>>>> Ok let me ask the client tomorrow to run telnet
>>>>>>> 10.0.0.24 80 from a workstation
>>>>>>> 
>>>>>>> Thanks for he help Yuri
>>>>>>> 
>>>>>>> On Thu, Mar 5, 2015 at 1:02 PM, Yuri Voinov 
>>>>>>> <yvoinov at gmail.com> wrote:
>>>>>>> 
>>>>>>>> -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1
>>>>>>>> 
>>>>>>>> Sorry, I'm wrong. Netstat on host can't show
>>>>>>>> redirected listeners.
>>>>>>>> 
>>>>>>>> Need to check it externally.
>>>>>>>> 
>>>>>>>> 05.03.15 23:59, Monah Baki пишет:
>>>>>>>>> On 10.0.0.24
>>>>>>>>> 
>>>>>>>>> root at ISN-PHC-CACHE:/home/support # netstat -an
>>>>>>>>> Active Internet connections (including servers)
>>>>>>>>> Proto Recv-Q Send-Q Local Address Foreign Address
>>>>>>>>> (state) tcp4 0     52 10.0.0.24.22
>>>>>>>>> 96.255.8.226.50911 ESTABLISHED tcp4 0      0 *.3129
>>>>>>>>> *.*                    LISTEN tcp4 0      0 *.3128
>>>>>>>>> *.*                    LISTEN tcp4 0      0 *.81
>>>>>>>>> *.*                    LISTEN tcp6       0 0 *.81
>>>>>>>>> *.* LISTEN tcp4       0      0 *.22 *.* LISTEN tcp6
>>>>>>>>> 0      0 *.22 *.* LISTEN tcp6 0      0 ::1.562
>>>>>>>>> ::1.40066 ESTABLISHED tcp6 0      0 ::1.40066
>>>>>>>>> ::1.562 ESTABLISHED tcp6       0 0 *.561 *.* LISTEN
>>>>>>>>> tcp6       0      0 *.562 *.* LISTEN tcp4       0
>>>>>>>>> 0 *.199                  *.* LISTEN tcp4       0
>>>>>>>>> 0 *.10000                *.* LISTEN udp4 0      0
>>>>>>>>> *.3401                 *.* udp4 0 0 *.34985 *.*
>>>>>>>>> udp4       0      0 *.* *.* udp4       0 0 *.161
>>>>>>>>> *.* udp4       0 0 *.162                  *.* udp4
>>>>>>>>> 0 0 *.10000 *.* udp4       0      0 127.0.0.1.123
>>>>>>>>> *.* udp6       0 0 fe80::1%lo0.123 *.* udp6       0
>>>>>>>>> 0 ::1.123 *.* udp4       0      0 10.0.0.24.123
>>>>>>>>> *.* udp6 0 0 *.123 *.* udp4       0      0 *.123
>>>>>>>>> *.* udp4       0      0 *.514                  *.*
>>>>>>>>> udp6       0 0 *.514 *.*
>>>>>>>>> 
>>>>>>>>> 
>>>>>>>>> 
>>>>>>>>> On Thu, Mar 5, 2015 at 12:12 PM, Yuri Voinov 
>>>>>>>>> <yvoinov at gmail.com> wrote:
>>>>>>>>> 
>>>>>>>>> - From your PC run telnet 10.0.0.24 80. You've seen
>>>>>>>>> if TCP socket opens.
>>>>>>>> 
>>>>>>>> 
>>>>>>> 
>>>>> 
>>>> 
>> 
> 
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2

iQEcBAEBAgAGBQJU+KbbAAoJENNXIZxhPexGpa4IAJ2TC8byBNtJEEa8CfHSnYjd
3RPvzUzvzwaO2FWi0ZajDq0CYEJ8uTjdTiopZOVwGGAr5NdDk62Q7ZCwwZXgzEnD
SSve5Yl1lWpM6Zj9tDanCN3sw245te1MXer1CKLXR2bbd68WYQ0FT05fgCG9RrT7
XHZPvQRnE4BN5qIuu9pS3C9qvToYIM+C/jMqbT3MuDqrzPWksOnQ35LDf4mQAEgS
iH1XNM5bNVqrPIKTuZ8z8yJvZ+yuqkKde/6Y1k2QigocWre3jdDW0AdxXBZIo9QP
yCqkl9UmM/UefvvVgt44BftoJlUvaDYSoy2PAZ23khVHmDYY2bq0XJinKZwOHDQ=
=Z2XY
-----END PGP SIGNATURE-----


More information about the squid-users mailing list