> Dear All: > > I am running a squid 3.0 on a centos box and set it as > > http_port 3128 transparent > > It has been working well for a while. Then I noticed a traffic spike. > tcpdump shows > that there are a lot of traffic from port 3128 to other clients. I > have disabled incoming > traffic to 3128 from outside. > > What could be the reason? Someone hacked my cache? > > Best Regards, > Young Wen > Perhapse you are doing interception on inbound connections somehow? NAT will break past the firewall in that case. Amos