Re: [squid-users] External nat'ed transparent proxy

2016-10-25 Thread Amos Jeffries
On 26/10/2016 5:26 a.m., Eliezer Croitoru wrote: > Hey Henry, > > It's not about RFC at all from my point of view. > It's very simple to setup the system in a way that will work as you want but > with Let say Ubuntu 16.04 or Debian 8(latest). > These are very stable in my environment and if you n

Re: [squid-users] External nat'ed transparent proxy

2016-10-25 Thread Eliezer Croitoru
Cc: squid-users@lists.squid-cache.org Subject: Re: [squid-users] External nat'ed transparent proxy Hi Eliezer, Thank you for looking into it. I fully understand the setup is far from ideal and breaks RFC's (I was already aware of this). The reason we would like to keep this in place is to

Re: [squid-users] External nat'ed transparent proxy

2016-10-25 Thread Eliezer Croitoru
e.org Subject: Re: [squid-users] External nat'ed transparent proxy Good morning Eliezer, It took some time for me to construct a drawing who would be understandable enough how our setup is, as the diagrams you provided didn't fully fit the case. But, I think I managed to make a underst

Re: [squid-users] External nat'ed transparent proxy

2016-10-24 Thread Eliezer Croitoru
...@ngtech.co.il -Original Message- From: squid-users [mailto:squid-users-boun...@lists.squid-cache.org] On Behalf Of Amos Jeffries Sent: Friday, September 30, 2016 20:36 To: squid-users@lists.squid-cache.org Subject: Re: [squid-users] External nat'ed transparent proxy On 1/10/2016 12:2

Re: [squid-users] External nat'ed transparent proxy

2016-09-30 Thread Amos Jeffries
On 1/10/2016 12:27 a.m., Henry Paulissen wrote: > Hi Matus, > > > On 30-09-16 12:36, Matus UHLAR - fantomas wrote: >> On 29.09.16 16:39, Henry Paulissen wrote: >>> In the company I work for we are currently using squid v2 proxies in >>> transparent mode to intercept traffic from servers to the ou

Re: [squid-users] External nat'ed transparent proxy

2016-09-30 Thread Henry Paulissen
Hi Matus, On 30-09-16 12:36, Matus UHLAR - fantomas wrote: > On 29.09.16 16:39, Henry Paulissen wrote: >> In the company I work for we are currently using squid v2 proxies in >> transparent mode to intercept traffic from servers to the outside >> (access control). >> >> The technical solution for

Re: [squid-users] External nat'ed transparent proxy

2016-09-30 Thread Matus UHLAR - fantomas
On 29.09.16 16:39, Henry Paulissen wrote: In the company I work for we are currently using squid v2 proxies in transparent mode to intercept traffic from servers to the outside (access control). The technical solution for this is roughly as follows: [server] -> [gateway] -> [firewall]

Re: [squid-users] External nat'ed transparent proxy

2016-09-30 Thread Henry Paulissen
nux System Administrator > Mobile+WhatsApp: +972-5-28704261 > Email: elie...@ngtech.co.il > > > -Original Message- > From: squid-users [mailto:squid-users-boun...@lists.squid-cache.org] On > Behalf Of Henry Paulissen > Sent: Thursday, September 29, 2016 5:40 PM > To: s

Re: [squid-users] External nat'ed transparent proxy

2016-09-29 Thread Amos Jeffries
On 30/09/2016 11:35 a.m., Eliezer Croitoru wrote: > Hey Henry, > > I want to emulate the setup to understand the complication with a FULL linux > based setup here on my local testing grounds. No need Eliezer. This is the basic NAT re-writing problem. > Can you give more details on the networks

Re: [squid-users] External nat'ed transparent proxy

2016-09-29 Thread Eliezer Croitoru
-Original Message- From: squid-users [mailto:squid-users-boun...@lists.squid-cache.org] On Behalf Of Henry Paulissen Sent: Thursday, September 29, 2016 5:40 PM To: squid-users@lists.squid-cache.org Subject: [squid-users] External nat'ed transparent proxy Hi all, In the company I work f

[squid-users] External nat'ed transparent proxy

2016-09-29 Thread Henry Paulissen
Hi all, In the company I work for we are currently using squid v2 proxies in transparent mode to intercept traffic from servers to the outside (access control). The technical solution for this is roughly as follows: [server] -> [gateway] -> [firewall] | -