Re: [squid-users] squid cache ip problem

2007-03-12 Thread Henrik Nordstrom
mån 2007-03-12 klockan 17:41 +0200 skrev [EMAIL PROTECTED]:
> i am using squid only for cache
> and i don't want the users to be
> seen as the cache server ip
> but with the ip that they have.

See Linux TPROXY.

Has quite strict network requirements and requires Squid to run either
on the router/gateway, or transparent interception. The reason is that
all port 80 traffic (requests and responses) must be redirected to the
proxy server.

Regards
Henrik


signature.asc
Description: Detta är en digitalt signerad	meddelandedel


[squid-users] squid cache ip problem

2007-03-12 Thread robert
i am using squid only for cache
and i don't want the users to be
seen as the cache server ip
but with the ip that they have.

this is my config:
http_port ip:8080
acl QUERY urlpath_regex cgi-bin \?
no_cache deny QUERY
cache_mem 128 MB
cache_dir ufs /var/spool/squid 285696 32 215
cache_access_log /var/log/squid/access.log
cache_log /var/log/squid/cache.log
cache_store_log /var/log/squid/store.log
acl all src 0.0.0.0/0.0.0.0
acl manager proto cache_object
acl localhost src 127.0.0.1/255.255.255.255
acl to_localhost dst 127.0.0.0/8
acl SSL_ports port 443
acl Safe_ports port 80 # http
acl Safe_ports port 21 # ftp
acl Safe_ports port 443 # https
acl Safe_ports port 70 # gopher
acl Safe_ports port 210 # wais
acl Safe_ports port 1025-65535 # unregistered ports
acl Safe_ports port 280 # http-mgmt
acl Safe_ports port 488 # gss-http
acl Safe_ports port 591 # filemaker
acl Safe_ports port 777 # multiling http
acl CONNECT method CONNECT
acl clientd myip xxx.x.x.x/21
http_access allow all clients
http_access allow all
http_access deny manager
http_access deny !Safe_ports
http_access deny CONNECT !SSL_ports
http_access allow localhost
http_reply_access allow all
httpd_accel_host virtual
httpd_accel_port 80
httpd_accel_with_proxy on
httpd_accel_uses_host_header on
forwarded_for on


and that's all