[Firehol-support] Transparent Proxy and firehol problem
emperor.cu at gmail.com
Wed Feb 18 07:39:38 GMT 2015
I can see logs normally from squid when is setted in browser
The wget and curl have to tested and yes the squid i setup in transparent
proxy because i copied from other network with same parameters in this one
just change wan with pppoe where before was eth0
Te version is 5 i can test with 6 if want
Il giorno mer 18 feb 2015 alle 08:09 AM Phil Whineray <phil at sanewall.org>
> On Tue, Feb 17, 2015 at 11:20:01PM +0100, Simon Szustkowski wrote:
> > If the interface is called ppp0 by the kernel, why are you accessing it
> as ppp+ in the firehol config?
> ppp+ means match anything starting ppp, so this should be fine.
> > > On 17 Feb 2015, at 21:12, Tony Peña <emperor.cu at gmail.com> wrote:
> > >
> > > Hi I used firehol with transparent proxy and everything works fine but
> > > the option inface eth1 (lan) outface eth0 (wan)
> > >
> > > But today i must have to configure the same with pppoe so i have change
> > > eth0 with ppp+ but not works
> Which version of firehol are you using? That may be pertinent these
> > > I can see in the logs like ppp0 in cant out to same ppp0
> > >
> > > in the logs i see the packets blocked and some time in the request is
> > > ppp0 can't go out with as ppp0 but with the ip of the peer.....
> Are you saying these are the browser requests? Odd.
> > > Any idea ? What i'm missing in the conf?
> I can't see anything obviously wrong with the config but I am not in
> a position to test it. I presume your squid is correctly set to
> transparent proxy? I expect that could cause odd problems if not.
> Could you run a controlled test, i.e. start the firewall then (try to)
> browse to somewhere new and extract the recent firewall logs so we can see.
> Ideally use wget or curl and report what it says too (timeout, connection
> refused etc.). Does your squid log have the request in it?
> Firehol-support mailing list
> Firehol-support at lists.firehol.org
More information about the Firehol-support