[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[no subject]



James - thanks for the info above. Could you clarify please?
I have a Linksys BEFSX41 router with 192.168.1.0 subnet on it's LAN port. My 
office laptop is on that subnet (don't want to go through the proxy, it 
caused problems with PC firewall and VPN software). So - 192.168.1.0 is my 
non-filtered subnet.

I set up a VLAN on my switch for proxied devices. My proxy server has 2 nics. 
Eth0 (192.168.1.25) on the 192.168.1.0 subnet. Eth1 (192.168.2.1) on the 
192.168.2.0 subnet. I am not doing NAT on the proxy as I am doing NAT on the 
Linksys. My wireless WAP54G and WET11 bridge, desktop and kids laptop are on 
the 192.168.2.0 subnet.

Routing is working. All packets from the 192.168.2.0 subnet are hitting my 
proxy server on eth1 and routing out through eth0, then on to the Linksys. 
DHCP is working, and I'm just pointing to the Linksys for DNS. Manual 
proxying is fine (specifying the proxy server and port in Mozilla).

Now - to force packets through the proxy, would I do:
iptables -t -l PREROUTING -p tcp -i eth0 -dport 80 -j REDIRECT --to-port 
192.168.1.25:3128

Is that the last step?


</pre>
<!--X-Body-of-Message-End-->
<!--X-MsgBody-End-->
<!--X-Follow-Ups-->
<hr>
<ul><li><strong>Follow-Ups</strong>:
<ul>
<li><strong><a name="00776" href="msg00776.html">[ale] Transparent Proxy - Almost There</a></strong>
<ul><li><em>From:</em> jkinney at localnetsolutions.com (James P. Kinney III)</li></ul></li>
</ul></li></ul>
<!--X-Follow-Ups-End-->
<!--X-References-->
<ul><li><strong>References</strong>:
<ul>
<li><strong><a name="00050" href="msg00050.html">[ale] The joy of false postives - squidGuard / blacklist-upd</a></strong>
<ul><li><em>From:</em> griffisb at bellsouth.net (BruceG)</li></ul></li>
<li><strong><a name="00067" href="msg00067.html">[ale] The joy of false postives - squidGuard / blacklist-upd</a></strong>
<ul><li><em>From:</em> griffisb at bellsouth.net (BruceG)</li></ul></li>
<li><strong><a name="00070" href="msg00070.html">[ale] The joy of false postives - squidGuard / blacklist-upd</a></strong>
<ul><li><em>From:</em> jkinney at localnetsolutions.com (James P. Kinney III)</li></ul></li>
</ul></li></ul>
<!--X-References-End-->
<!--X-BotPNI-->
<ul>
<li>Prev by Date:
<strong><a href="msg00764.html">[ale] SUSE 9.1 Mirror</a></strong>
</li>
<li>Next by Date:
<strong><a href="msg00766.html">[ale] OT: Fixing Patriot Act</a></strong>
</li>
<li>Previous by thread:
<strong><a href="msg00070.html">[ale] The joy of false postives - squidGuard / blacklist-upd</a></strong>
</li>
<li>Next by thread:
<strong><a href="msg00776.html">[ale] Transparent Proxy - Almost There</a></strong>
</li>
<li>Index(es):
<ul>
<li><a href="maillist.html#00765"><strong>Date</strong></a></li>
<li><a href="threads.html#00765"><strong>Thread</strong></a></li>
</ul>
</li>
</ul>

<!--X-BotPNI-End-->
<!--X-User-Footer-->
<!--X-User-Footer-End-->
</body>
</html>