This is really more of a squid question, but does have a little to do with iptables. For those that have implemented both a proxy/cache server and an iptables firewall on separate boxes, I'm interested in knowing where you placed the proxy. My current network architecture is pretty typical using a 3-homed linux box and looks like so:
F <----> Internet I R <----> DMZ E WALL<----> Internal network I am actually testing the proxy on the internal network but am considering placing it in the DMZ and using iptables rules to make it transparent. That way I don't have to change settings on every client. Any advice or sharing of experiences is appreciated. Matt
