On Sun, 29 May 2005, Ronny wrote:
Both has very strict requirements on your networking setup as all return
traffic must go via the proxy even if the destination IP is the client IP.
You are right all traffic passes through the proxy.Is it okay if I do the
NATING on the same box as squid or some other box has tobe setup?
If your kernel has support for NAT of locally originating connections then
NAT:in on the same box is fine.
There has however been a lot of problems in that area of
netfilter/iptables and the safer bet is to NAT outside the box.
Regards
Henrik