Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Eliezer Croitoru
-cache.org Subject: Re: [squid-users] Transparent and non Transparent at the same time -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Good. We are came to an agreement :) Peace :) Let's support to op :) 28.10.2016 1:14, Antony Stone пишет: > On Thursday 27 October 2016 at 21:09:44, Y

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Good. We are came to an agreement :) Peace :) Let's support to op :) 28.10.2016 1:14, Antony Stone пишет: > On Thursday 27 October 2016 at 21:09:44, Yuri Voinov wrote: > >> OP originally wrote - "I have no IPtables and so on." >> He needs

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Antony Stone
On Thursday 27 October 2016 at 21:09:44, Yuri Voinov wrote: > OP originally wrote - "I have no IPtables and so on." > He needs specific guidance, not word games. Agreed. Antony. -- There's no such thing as bad weather - only the wrong clothes. - Billy Connolly

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Antony Stone
On Thursday 27 October 2016 at 21:04:18, Yuri Voinov wrote: > (facepalm) > > rdr(REDIRECT) is NAT functionality? Yes or no? Apologies - I could have answered this better: Yes, REDIRECT is one NAT functionality. There are several others. On Thursday 27 October 2016 at 19:46:53, Eliezer

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Well, http://wiki.squid-cache.org/ConfigExamples/Intercept/LinuxRedirect http://wiki.squid-cache.org/ConfigExamples/Intercept/LinuxDnat If I'm not stupid completely, this examples both uses NAT functionality. Yes or no? The question - what do

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Antony Stone
On Thursday 27 October 2016 at 21:04:18, Yuri Voinov wrote: > (facepalm) > > rdr(REDIRECT) is NAT functionality? Yes or no? Yes, DNAT is one NAT functionality. There are several others. On Thursday 27 October 2016 at 19:46:53, Eliezer Croitoru wrote: > You need routing policy not DNAT. DNAT

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 (facepalm) rdr(REDIRECT) is NAT functionality? Yes or no? 28.10.2016 0:59, Antony Stone пишет: > On Thursday 27 October 2016 at 20:57:04, Yuri Voinov wrote: > >> You know method to do this without NAT? ;) > > I know how to do it without DNAT,

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Antony Stone
On Thursday 27 October 2016 at 20:57:04, Yuri Voinov wrote: > You know method to do this without NAT? ;) I know how to do it without DNAT, which is what Eliezer recommended and you challenged. Antony. -- "The tofu battle I saw last weekend was quite brutal." - Marija Danute Brigita

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Yuri Voinov
ministrator >>> Mobile: +972-5-28704261 >>> Email: elie...@ngtech.co.il >>> >>> >>> -Original Message- >>> From: squid-users [mailto:squid-users-boun...@lists.squid-cache.org] >> >> On Behalf Of erdosain9 >> >>>

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Antony Stone
lists.squid-cache.org] > > On Behalf Of erdosain9 > > > Sent: Thursday, October 27, 2016 19:08 > > To: squid-users@lists.squid-cache.org > > Subject: Re: [squid-users] Transparent and non Transparent at the same > > time > > > Ok... but i have this problem &g

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Yuri Voinov
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 erdosain9, here is documentation your required. http://wiki.squid-cache.org/ConfigExamples/Intercept Sadly, but interception proxy with modern Squid, in addition to router with PBR/WCCP redirection, also always required NAT, configured on proxy

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Yuri Voinov
rg] On Behalf Of Yuri Voinov > Sent: Thursday, October 27, 2016 20:51 > To: squid-users@lists.squid-cache.org > Subject: Re: [squid-users] Transparent and non Transparent at the same time > > > You absolutely sure, Eliezier? :) > > > 27.10.2016 23:46, Eli

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Eliezer Croitoru
and non Transparent at the same time -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 You absolutely sure, Eliezier? :) 27.10.2016 23:46, Eliezer Croitoru пишет: > You need routing policy not DNAT. > > Eliezer > > > Eliezer Croitoru > Linux System Administrator >

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Yuri Voinov
Email: elie...@ngtech.co.il > > > -Original Message- > From: squid-users [mailto:squid-users-boun...@lists.squid-cache.org] On Behalf Of erdosain9 > Sent: Thursday, October 27, 2016 19:08 > To: squid-users@lists.squid-cache.org > Subject: Re: [squid-users] Transparent and non T

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread Eliezer Croitoru
, 2016 19:08 To: squid-users@lists.squid-cache.org Subject: Re: [squid-users] Transparent and non Transparent at the same time Ok... but i have this problem ERROR: NAT/TPROXY lookup failed to locate original IPs on local=192.168.1.15:3130 remote=192.168.1.1:52090 FD 14 flags=33 ... I put some dstnat

Re: [squid-users] Transparent and non Transparent at the same time

2016-10-27 Thread erdosain9
Ok... but i have this problem ERROR: NAT/TPROXY lookup failed to locate original IPs on local=192.168.1.15:3130 remote=192.168.1.1:52090 FD 14 flags=33 ... I put some dstnat in Mikrotik (192.168.1.1) ip firewall nat add chain=dstnat src-add=192.168.1.121 protocol=tcp dst-port=80

[squid-users] Transparent and non Transparent at the same time

2016-10-26 Thread erdosain9
Hi. Well, i just want to know if is possible config at the same time Transparent and No Transparent for different subnets... Like 192.168.1.0/24 No transparent 192.168.100.0/24-- Transparent i want this, because i have a net (1.0) that i can manager and other