On tis, 2007-09-18 at 14:29 +0800, Adrian Chadd wrote: > I've thought about it. I jotted down some brainstorming ideas when > thinking about how to handle asymmetric TCP flows during transparent > interception - http://www.creative.net.au/node/72 - it'd possibly > also "solve" your issues. I don't think its possible with current > kernels btw, you'd have to modify them to do the splicing. there is also the option of early access, delaying the SYN-ACK until the proxy has been able to contact the intended destination.. do not fit well with caching however... Regards Henrik
Attachment:
signature.asc
Description: This is a digitally signed message part