[squid-users] Intercept mode failing

Hoggins! fuckspam at wheres5.com
Tue Jan 3 10:13:33 UTC 2017


Okay, I get that.

Le 03/01/2017 à 10:33, Antony Stone a écrit :
> No - you must do the NAT (or REDIRECT) rule *on the Squid server*.

Well, my Squid server is not on the same network as my clients, so I
need something else than just a REDIRECT on the Squid itself.

>
> If you need to use policy routing to get the packets to the Squid machine in 
> the first place, that's okay, but this *must* be packet routing, not address 
> translation

Policy routing was my first choice, but there is one important detail in
my setup : between my gateway (192.168.22.10) and my Squid
(192.168.55.3), there's an IPSec tunnel. My gateway does not have a
link-local route to 192.168.55.3 so I can't add the default route to it
inside a routing table (I get "Network is unreachable", which is expected).

So I guess I'm stuck.

Thanks anyway !

    Hoggins!

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 181 bytes
Desc: OpenPGP digital signature
URL: <http://lists.squid-cache.org/pipermail/squid-users/attachments/20170103/70dafcd7/attachment.sig>


More information about the squid-users mailing list