Hi, On Fri, 2008-10-10 at 02:41 +0200, Henrik Nordstrom wrote: > It's not from Squid, these packets are from the client, and because the > proxy server no longer knows about the connection the packet gets > forwarded. Thank You Henrik, it's so obvious right now. > You can avoid this if you disable ip forwarding on the proxy server, bu > you then also loose the ability to bypass interception at the proxy, > requiring any bypass rules to be in the router acl. I didn't get this bypass interception? I have another SQUID box in this setup in same wccp web-cache group but with disabled ip forwarding. What exactly I'm loosing? Thank You in advance, Dalibor