[squid-users] Intercept mode failing
Hoggins!
fuckspam at wheres5.com
Tue Jan 3 10:13:33 UTC 2017
Okay, I get that.
Le 03/01/2017 à 10:33, Antony Stone a écrit :
> No - you must do the NAT (or REDIRECT) rule *on the Squid server*.
Well, my Squid server is not on the same network as my clients, so I
need something else than just a REDIRECT on the Squid itself.
>
> If you need to use policy routing to get the packets to the Squid machine in
> the first place, that's okay, but this *must* be packet routing, not address
> translation
Policy routing was my first choice, but there is one important detail in
my setup : between my gateway (192.168.22.10) and my Squid
(192.168.55.3), there's an IPSec tunnel. My gateway does not have a
link-local route to 192.168.55.3 so I can't add the default route to it
inside a routing table (I get "Network is unreachable", which is expected).
So I guess I'm stuck.
Thanks anyway !
Hoggins!
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 181 bytes
Desc: OpenPGP digital signature
URL: <http://lists.squid-cache.org/pipermail/squid-users/attachments/20170103/70dafcd7/attachment.sig>
More information about the squid-users
mailing list