Place an access-list on the FE interface that only allows traffic with a source IP of the Squid server. Configure your clients to use the Squid proxy. If you run into issues of users trying to get around your proxy, it's a matter of policy, not technology, and should be addressed by your security policy and your management.
HTH, Kent -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of a. ahmad Sent: Wednesday, May 01, 2002 1:50 PM To: [EMAIL PROTECTED] Subject: help is needed! [7:43035] Dear Members, We have 2620 router with Fastethenet port and a Serial Interface. We just want that no user traffic should directly go to router and only the traffic that is coming through Squid should reach the router. How can we accomplish this task? Thank You In Advance! Ahmad Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=43057&t=43035 -------------------------------------------------- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]