On Tue, 31 Aug 2010 13:30:15 -0700, Darren <mister.raven@xxxxxxxxx> wrote: >>HTTP, SHOUTcast/ICY or RTSP streams? > > They use flash to stream, so I am assuming it will either be http or rtmp. > >> >> Your Squid config file as posted belies your claim of using DG. You both >> do NAT interception directly into Squid (ie bypassing DG at the firewall) >> and use always_direct to prevent any cache_peers (ie a DG sitting behind >> Squid) being used. >> > >> Either you are receiving traffic from a NAT firewall or from >> DansGuardian. >> Which is it? >> > > > I use dansguardian. Traffic gets transparently routed by a firewall > to dansguardian on port 8080, which then sends traffic to squid on > port 3128. > > > I will remove the transparent directive from squid and see if that > affects any changes. It will save squid attempting and failing to perform NAT lookups since NAT is not involved in the particular DG->Squid link. There are likely equivalent setting in DG that need to be set correctly to pull the client and destination info out of NAT for use there. Amos