Gentoo Archives: gentoo-user

From: Joseph <syscon780@×××××.com>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] [SOLVED] squid - allowing only one domain
Date: Fri, 22 Jan 2010 14:43:06
Message-Id: 20100122144150.GB28268@syscon4.inet
In Reply to: Re: [gentoo-user] [SOLVED] squid - allowing only one domain by Stroller
1 On 01/22/10 10:43, Stroller wrote:
2 >>
3 >>I don't understand what kind of explanation you expect, just emerge
4 >>squid iptable (make sure kernel has the correct entries compiled
5 >>IN) and type those commends in at the command line; read the post
6 >>above some other users clearly suggested what to type at the
7 >>command line :-)
8 >>
9 >>It just works! I stated my objectives and I accomplished them.
10 >
11 >Maybe I'm being very dumb. I assumed a situation of router A, with
12 >Squid running on server B. The office staff are using browsers on
13 >client machines X, Y & Z. When a user on machine X browses to a
14 >website, his PC sends the packet to router A. The packet never
15 >reaches server B in order to be intercepted by B. We can configure B
16 >as the proxy in the browser settings of X, Y & Z, but then that no
17 >longer needs iptables configuration or interception mode.
18 >
19 >I'm not trying to argue with you, BTW. I'm just trying to learn from
20 >you.
21 >
22 >Stroller.
23
24 I'm not an expert with iptables but since you have multiple machine on your network your best option is to configure single machine to run squid on it and
25 forward the traffic to it.
26 You have to tell us your setup, what kind of equipment you have, it it a small firewall/router from store you build it etc.
27 How the traffic flow, I might suggest something.
28
29 I think in your situation best option would be if router A runs squid if possible; if not router A intercept all packets from X,Y,X and sends them to squid B
30 machine, B process the traffic and send it back to router A (rotter A forward all traffic from squid B to Internet).
31
32 --
33 Joseph

Replies

Subject Author
Re: [gentoo-user] [SOLVED] squid - allowing only one domain Stroller <stroller@××××××××××××××××××.uk>