Search squid archive

Re: squid 2.6 + transparent + ipfw

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



lör 2006-07-08 klockan 20:36 +0400 skrev Andrew Pantyukhin:

> "The fwd action does not change the contents of the packet at all.
> In particular, the destination address remains unmodified, so
> packets forwarded to another system will usually be rejected by
> that system unless there is a matching rule on that system to
> capture them.  For packets forwarded locally, the local address
> of the socket will be set to the original destination address of
> the packet.

Ok. This should mean that getsockname() returns the real destination
address of the intercepted connection.

> I might be wrong, but I think one should compare the address
> of an accepted socket to the address of the listening socket.

Only works when the listening socket is explicitly bound to a specific
address. Quite often it's a "any" socket bound to the wildcard address
"0.0.0.0".

Regards
Henrik

Attachment: signature.asc
Description: Detta =?ISO-8859-1?Q?=E4r?= en digitalt signerad meddelandedel


[Index of Archives]     [Linux Audio Users]     [Samba]     [Big List of Linux Books]     [Linux USB]     [Yosemite News]

  Powered by Linux