[squid-users] Transparent and non Transparent at the same time

Yuri Voinov yvoinov at gmail.com
Thu Oct 27 18:57:04 UTC 2016


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
 
You know method to do this without NAT? ;)


28.10.2016 0:54, Antony Stone пишет:
> On Thursday 27 October 2016 at 19:51:22, Yuri Voinov wrote:
>
>> You absolutely sure, Eliezier? :)
>
> Yes - you do not use DNAT.
>
> You do use REDIRECT on the machine Squid is running on.
>
>
> Antony.
>
>> 27.10.2016 23:46, Eliezer Croitoru пишет:
>>> You need routing policy not DNAT.
>>>
>>> Eliezer
>>>
>>> ----
>>> Eliezer Croitoru
>>> Linux System Administrator
>>> Mobile: +972-5-28704261
>>> Email: eliezer at ngtech.co.il
>>>
>>>
>>> -----Original Message-----
>>> From: squid-users [mailto:squid-users-bounces at lists.squid-cache.org]
>>
>> On Behalf Of erdosain9
>>
>>> Sent: Thursday, October 27, 2016 19:08
>>> To: squid-users at lists.squid-cache.org
>>> Subject: Re: [squid-users] Transparent and non Transparent at the same
>>
>> time
>>
>>> Ok... but i have this problem
>>>
>>>  ERROR: NAT/TPROXY lookup failed to locate original IPs on
>>>
>>> local=192.168.1.15:3130 remote=192.168.1.1:52090 FD 14 flags=33
>>>
>>> ...
>>> I put some dstnat in Mikrotik (192.168.1.1)
>>>
>>>
>>> ip firewall nat add chain=dstnat src-add=192.168.1.121 protocol=tcp
>>> dst-port=80  action=dst-nat
>>> to-addresses=192.168.1.20 to-ports=3129
>>>
>>> ERROR: NAT/TPROXY lookup failed to locate original IPs on
>>> local=192.168.1.20:3129 remote=192.168.1.1:52153 FD 14 flags=33
>>> 2016/10/27 14:01:43 kid1| ERROR: NF getsockopt(ORIGINAL_DST) failed on
>>> local=192.168.1.215:3129 remote=192.168.1.1:52154 FD 14 flags=33: (92)
>>
>> Protocol not available
>>
>>> I dont have iptables or firewalld... im using Centos... is necessary
>>
>> enable firewalld or iptables???
>>
>>> im using the PC (192.168.1.121 for test) Thanks
>>
>>
http://squid-web-proxy-cache.1019090.n4.nabble.com/Transparent-and-non-Tran
>> sparent-at-the-same-time-tp4680309p4680330.html
>>
>>> Sent from the Squid - Users mailing list archive at Nabble.com.
>>> _______________________________________________
>>> squid-users mailing list
>>> squid-users at lists.squid-cache.org
>>> http://lists.squid-cache.org/listinfo/squid-users
>>>
>>> _______________________________________________
>>> squid-users mailing list
>>> squid-users at lists.squid-cache.org
>>> http://lists.squid-cache.org/listinfo/squid-users
>

- -- 
Cats - delicious. You just do not know how to cook them.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
 
iQEcBAEBCAAGBQJYEk4AAAoJENNXIZxhPexGGakIAMLVs9E4pOELHc2ER9TSQ2pD
VLPffzjRkSndZvv8Qck0rmoANfZHJoKFzCSx9EMifdiPQjQGRgFm19Hy6wjMNt0v
E7J6Qp5rC2BIIf/zg+rPj4Wz5dcSndV+3m+zk18oEOB47i4MCFkJCwPAYwSkHvXZ
8m4/5pMDSuS7rp+O2Pd217EvesSkMqUXOSKT1/iuvR5yqplTBgEQ8OOpEGYuui9c
dUMm73veIXF22gbcj4NgyFAWnnjJl4oOS7mAuJ2Vs+ZhQeY/uPlurJoCjGm2zXFB
QuhJj05bZkDUqwzWp3VsuXhhSk9skJSRVjqBzMS30q1ocBDN4+adcHrP1n1ISyU=
=jDMd
-----END PGP SIGNATURE-----

-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0x613DEC46.asc
Type: application/pgp-keys
Size: 2437 bytes
Desc: not available
URL: <http://lists.squid-cache.org/pipermail/squid-users/attachments/20161028/2eff3420/attachment.key>


More information about the squid-users mailing list