Re: split traffic

Linux Advanced Routing and Traffic Control

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



> # ip route add default via 192.168.1.1 table 1
> # ip rule add from 10.0.0.0/24 table 1
> 
> 
>  : I have the next network:
>  : 
>  : 
>  : Users LAN                    Servers   LAN 
>  : (10.0.0.0/24                (mail and web [200.30.57.32/24]
>  : web surf main activity)       homologated ip's)
>  : |                                |
>  : |                                | 
>  : |                                |
>  : |                                | 
>  : |________________________________| 
>  :                   |
>  : eth1:1 10.0.0.138 |      eth1 200.30.57.33
>  :                   |
>  :           {Linux Firewall. kernel 2.4.18}
>  :                   |
>  :      eth2         |      eth0 200.30.53.22/30
>  :     192.168.1.2/30|
>  :                   |
>  :   _______________/ \______________
>  :  |                                |
>  :  |                                |
>  : {adsl router}               {Cisco router}  200.30.53.21/30
>  :  |192.168.1.1                     |
>  :  |(phone line)                    |(DS0)
>  :  |                                |
>  :  |                                |
>  : {   --------   Internet -------    }
>  : 
>  : 
>  : 


Thanks, Martin. It worked(since last week) perfect.


Now I have the above network working. Users from class 10.0.0.0/24 go
out through the adsl router, and the servers via the DS0.

NowI want to put a transparent proxy with squid, but if I configure it
with just:

iptables -t nat -A PREROUTING -i eth1 -p tcp -m tcp --dport 80 -j
REDIRECT --to-ports 3128

http requests are processed via the DS0(this is because of the default
gw , I suppose), and I want them to go out via the adsl

My question is, how can I make that http requests go via the adsl with a
transparent proxy with this network configuration?

I've thought it must be the OUTPUT chain. But with what rule?


Hope you can orient me.

Thanks,

Omar




_______________________________________________
LARTC mailing list / LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/

[Index of Archives]     [LARTC Home Page]     [Netfilter]     [Netfilter Development]     [Network Development]     [Bugtraq]     [GCC Help]     [Yosemite News]     [Linux Kernel]     [Fedora Users]
  Powered by Linux