On 03/15/2016 05:18 AM, Göran Höglund wrote:
> Hi,
> I am trying ti use per ip accounting from lan (eth1) to net (eth0),
> ACCOUNT(lan,192.168.1.0/24)    -       eth1    eth0
> ACCOUNT(lan,192.168.1.0/24)    -       eth0    eth1
> 
> This works very well except for traffic redirected to squid used as 
> transparent proxy.
> How do I define a rule for the firewall itself?
> 

Place those rules in the INPUT and OUTPUT sections.

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Transform Data into Opportunity.
Accelerate data analysis in your applications with
Intel Data Analytics Acceleration Library.
Click to learn more.
http://pubads.g.doubleclick.net/gampad/clk?id=278785231&iu=/4140
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to