[tproxy] Question about tproxy "connection source addres..."

Balazs Scheidler bazsi@balabit.hu
Mon, 19 May 2003 10:34:51 +0200


On Mon, May 19, 2003 at 01:22:22AM +0200, Tomasz Wrona wrote:
> Hello,
> 
>  Is it possible that tproxy works in following scheme:
> 
>  a) client_request goes from IP_Client ->
>  b) tproxy/iptables intercept it and redirect it to proxy_server [ie.
>  Squid] binded on IP_Proxy
>  c) proxy sends request for client to reqested_addres but source IP
>  isn't IP_Proxy but is [converted to] IP_Client.
> 
>  Reply is intercepted again and refined inversely...
> 
>  Could it be done in some way?

yes, but you need a patch for squid to work.

-- 
Bazsi
PGP info: KeyID 9AF8D0A9 Fingerprint CD27 CFB0 802C 0944 9CFD 804E C82C 8EB1