[squid-users] Transparent and non Transparent at the same time

Yuri Voinov yvoinov at gmail.com
Thu Oct 27 18:08:17 UTC 2016


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
 
erdosain9,

here is documentation your required.

http://wiki.squid-cache.org/ConfigExamples/Intercept

Sadly, but interception proxy with modern Squid, in addition to router
with PBR/WCCP redirection, also always required NAT, configured on proxy
box - iptables/IPF/IPFilter etc. and requires to build squid with
appropriate NAT support.

This is a bit more complex technical task, which is required more
computer skills.

So, start from good Squid's documentation. ;-)

Hard luck! :-)


27.10.2016 22:08, erdosain9 пишет:
> Ok... but i have this problem
>
>  ERROR: NAT/TPROXY lookup failed to locate original IPs on
> local=192.168.1.15:3130 remote=192.168.1.1:52090 FD 14 flags=33
>
> ...
> I put some dstnat in Mikrotik (192.168.1.1)
>
>
> ip firewall nat add chain=dstnat src-add=192.168.1.121 protocol=tcp
> dst-port=80  action=dst-nat
> to-addresses=192.168.1.20 to-ports=3129
>
> ERROR: NAT/TPROXY lookup failed to locate original IPs on
> local=192.168.1.20:3129 remote=192.168.1.1:52153 FD 14 flags=33
> 2016/10/27 14:01:43 kid1| ERROR: NF getsockopt(ORIGINAL_DST) failed on
> local=192.168.1.215:3129 remote=192.168.1.1:52154 FD 14 flags=33: (92)
> Protocol not available
>
> I dont have iptables or firewalld... im using Centos... is necessary
enable
> firewalld or iptables???
>
>
> im using the PC (192.168.1.121 for test)
> Thanks
>
>
>
> --
> View this message in context:
http://squid-web-proxy-cache.1019090.n4.nabble.com/Transparent-and-non-Transparent-at-the-same-time-tp4680309p4680330.html
> Sent from the Squid - Users mailing list archive at Nabble.com.
> _______________________________________________
> squid-users mailing list
> squid-users at lists.squid-cache.org
> http://lists.squid-cache.org/listinfo/squid-users

- -- 
Cats - delicious. You just do not know how to cook them.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
 
iQEcBAEBCAAGBQJYEkKQAAoJENNXIZxhPexGtP0H/0kB5mJMQmJWZgVCD7ZLQ5/A
lqYYEp0mwj2WiLMOeRa9uz+RW8qlzPX2Kw1DmrhjfMGTsCsjOcyRnd4w87hY0S1/
Q9DYJ4dfbtQMz/WKB6gf0D2/lv2Wc4eCuqS5QXGRgF5/wenfJuMKB42BN5dMshBN
hB5Kfw7p9ywvrB+GR9zHvADIcOlgu4tobR5bUAraQKhUk82PMRojbutnRBXcTUL3
gKjLFXg4VFi3LDJospVr4lMMif0vkacEpI8XHbscqClngTNEKQvQN1MLD+5JQL3y
oWGgmUzmvEGTJGRCntlKSriFS+DJn1GUcUVplALehXjSRAyJp7aIC0Q+Vc/GCfU=
=zxIL
-----END PGP SIGNATURE-----

-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0x613DEC46.asc
Type: application/pgp-keys
Size: 2437 bytes
Desc: not available
URL: <http://lists.squid-cache.org/pipermail/squid-users/attachments/20161028/5863dcdf/attachment.key>


More information about the squid-users mailing list