[tproxy] Tproxy with WCCP configure error

Engr.M.monzur Alam monzur at citechco.net
Wed May 13 11:32:56 CEST 2009

Dear Nocolas,
Please see the router status...
Cisco IOS Software, 2800 Software (C2800NM-ADVIPSERVICESK9-M), Version 
ROM: System Bootstrap, Version 12.3(8r)T7, RELEASE SOFTWARE (fc1)
It's also mention that another one my proxy is running with WCCP same
router configuration.
But currently my project is tproxy configuration with WCCP, it's has not
running ok.
My question is TPROXY + WCCP anything misconfigured ????
Engr.M.Monzur Alam
Network & System Admin
Grameen CyberNet Ltd.
Dhaka, Bnagladesh
-----Original Message-----
From: Ritter, Nicholas [mailto:Nicholas.Ritter at americantv.com] 
Sent: Tuesday, May 12, 2009 10:33 PM
To: Engr.M.monzur Alam
Cc: tproxy at lists.balabit.hu
Subject: RE: [tproxy] Tproxy with WCCP configure error
Which cisco device is going the WCCP?

From: tproxy-bounces at lists.balabit.hu
[mailto:tproxy-bounces at lists.balabit.hu] On Behalf Of Engr.M.monzur Alam
Sent: Tuesday, May 12, 2009 9:43 AM
To: tproxy at lists.balabit.hu
Cc: tproxy-request at lists.balabit.hu
Subject: [tproxy] Tproxy with WCCP configure error
I successfully configure tproxy all the steps. (Patching Centos,
Patching iptables, Building squid). And also WCCP configuration with L4
WCCPv2. When I trying check gre0 tunnel with any packet flow but don't
found any request.
My error showed.............. 
[root at heldas]# tcpdump -i gre0 
tcpdump: WARNING: arptype 778 not supported by libpcap - falling back to
cooked socket 
tcpdump: verbose output suppressed, use -v or -vv for full protocol
listening on gre0, link-type LINUX_SLL (Linux cooked), capture size 96
0 packets captured 
0 packets received by filter 
0 packets dropped by kernel 
My iptables script is........... 
/sbin/iptables -t mangle -N DIVERT 
/sbin/iptables -t mangle -A PREROUTING -p tcp -m socket -j DIVERT 
/sbin/iptables -t mangle -A DIVERT -j MARK --set-mark 1 
/sbin/iptables -t mangle -A DIVERT -j ACCEPT 
/sbin/iptables -t mangle -A PREROUTING -p tcp --dport 80 -j TPROXY
--tproxy-mark 0x1/0x1 --on-port 3129 
My Physical connectivity structure is .... 
Internet cloud to Cisco core router to Juniper firewall to Distributed
Cisco router to Core Cisco switch to TPROXY  
Please give me a solution . 
Engr.Mohammad Monzur Alam 
Network & System Admin 
Grameen CyberNet Ltd. 
Dhaka, Bangladesh 
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.balabit.hu/pipermail/tproxy/attachments/20090513/7166abac/attachment-0001.htm 

More information about the tproxy mailing list