PLEASE -- configure your mailer to fold your text at a reasonable width.
Your post is one long line which makes it a complete PITA to quote and
respond to.

Jeff Armstrong wrote:

> Does shorewall support a transparent proxy on a firewalled bridge?

Yes. But I don't know what happens if you try to redirect traffic that
is originally sent to a server on another bridge port; I suspect that
such traffic may not be redirected.

I've used the Squid (transparent) Running on the Firewall instructions.
My squid works manually and I see Shorewall:

work_dnat:REDIRECT: IN=br0 OUT=  SRC=192.168.1.86 DST=192.168.1.140
LEN=48 TOS=00 PREC=0x00 TTL=128 ID=28881 DF PROTO=TCP SPT=2438 DPT=80

in my firewall logs but I don't see any access in my squid logs.

Which usually means that Squid isn't configured properly for transparent
access.

So it looks like it's just not sending it to the right spot.

That is not a valid conclusion.


------------------------------------------------------------------------------
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to