<html>
<head>
<meta content="text/html; charset=utf-8" http-equiv="Content-Type">
</head>
<body text="#000000" bgcolor="#FFFFFF">
<br>
-----BEGIN PGP SIGNED MESSAGE----- <br>
Hash: SHA256 <br>
<br>
And beware: Your current configuration is insecure. Very insecure.
Especially if you haven't firewall configured on squid box.<br>
<br>
14.07.15 2:15, John Pearson пишет:<br>
<span style="white-space: pre;">> Hi Everyone,<br>
><br>
> My setup is: Internet <--> Squid-eth0 <-->
Squid-eth1 <--> Router <--><br>
> Devices<br>
><br>
> Currently the Router is doing NAT and DHCP for the devices
connected to it.<br>
> Squid is in transparent mode. I set up a bridge ( br0). I set
up the<br>
> ebtables and iptables. It works but I want to figure out a
way without<br>
> having to configure Squid server or Router with hardcoded
addresses.<br>
><br>
> I have it working with either setup:<br>
> 1. Remove the bridge ( br0) and setup the Squid server eth1
as a static IP<br>
> address and set Squid server IP address as gateway in Router
settings.<br>
> 2. Since Squid server is in bridge mode, I can hard code IP
address in a<br>
> Squid ACL as all traffic appears to come this IP address from
the router.<br>
><br>
> I want a way to do this without any setup, basically to take
a Squid box<br>
> and place it before a Router. Is there a way to do this ?<br>
><br>
> A few ideas that might be wrong:<br>
> 1. In bridge mode, http_access allow CURRENTIPADDRESS (
CURRENTIPADDRESS<br>
> is the dynamic IP address provided the ISP ) Is there a way
to obtain this<br>
> in the squid.conf file ?<br>
> 2. Setup a DHCP server alongside Squid server and have
Squid(DHCP) <--><br>
> Router(DHCP, NAT) and have same dhcp address given to the
Router in<br>
> squid.conf as http_access allow localnet<br>
><br>
> Thanks in advance!<br>
><br>
><br>
><br>
> _______________________________________________<br>
> squid-users mailing list<br>
> <a class="moz-txt-link-abbreviated" href="mailto:squid-users@lists.squid-cache.org">squid-users@lists.squid-cache.org</a><br>
> <a class="moz-txt-link-freetext" href="http://lists.squid-cache.org/listinfo/squid-users">http://lists.squid-cache.org/listinfo/squid-users</a></span><br>
<br>
-----BEGIN PGP SIGNATURE-----
<br>
Version: GnuPG v2
<br>
<br>
iQEcBAEBCAAGBQJVpB57AAoJENNXIZxhPexG/JEIAI06Ksm0R7n2O8h5mHO0HgFe
<br>
8r/bmmcKcmkmRiWXJGAq/zKY5oBuzeNocuwS4HNkj+//hYkdRpTyF8+ozFNeoSYj
<br>
2AnEkmcjZLjGk3kG/RcBpdIY8n1iXBQuD0I/4UrTleeG282tVeZJbe+qWVXvG1nB
<br>
7N7dyB/kYeKnlmhUNfCCbhyoLD3dJyC+8ECYjwAKIWspdPnzAPUFMIPc1NmWnMWU
<br>
IiQJe73wCITVd100YCSeCBbOvlvoYbWbQrymOb7rWMVJJq/qQxa2R27660DHAvjj
<br>
pnF0bnh94kvjFJ7Pk3AXM3d4jXKt0DbJLiXuw6Ch2MzZcfN0cYfpTDiGvH6XcBY=
<br>
=dAJc
<br>
-----END PGP SIGNATURE-----
<br>
<br>
</body>
</html>