[squid-users] Two layers of transparent proxy no working

From: Roland Xinlei Wang <rolandwang@dont-contact.us>
Date: Mon, 14 Jun 2004 20:17:06 +0800

Hello, there:

we set up a scenario where two layers of transparent proxies are used with squid and dansguardian. But it doesn't work for us.

Our situation is like this:

1. We have one broadband connection used for our web access of email server, which was NATed through the broadband router to an internal address (192.168.1.120). Our external address is for example 219.133.x.x. We use a squid + dansguardian for virus protection of web access, where the route is external -> dansgurdian ->squid -> mailserver In squid.conf, we put "httpd_accel_host 192.168.1.120" and "httpd_accel_uses_host_header off".

2. We have another connection used for Internet access of internal network. Our internal address is at range 192.168.0.x. We use squid + dansguardian for web
filtering. In squid.conf, we put "httpd_accel_host virtual" and "httpd_accel_uses_host_header on". Now when we try to access http://219.133.x.x/ from internal network, we got "Access Denied" error from squid. The pass is like internal -> dansgurdian->squid -> external. But when we take off squid + dansguardian at Internet access part, we are able to access the webpage.

I wonder if anyone can give a hint from this list.

Thanks and regards,

Roland

-----
CISSP,CISA,CPMP
ZR InfoTech - Protect Your Information Asset
Tel: +86-755-26978741
Fax: +86-755-26978735
Web: http://www.zrinfo.net

Received on Mon Jun 14 2004 - 06:12:39 MDT

This archive was generated by hypermail pre-2.1.9 : Thu Jul 01 2004 - 12:00:02 MDT