Would any of you Cisco experts know how to use ABF to route only http to a Squid server? J
We’ve tested intercept on a Mikrotik successfully by marking http traffic and sending it through to a different routing table. This works well on Mikrotik but we cannot find anything other than WCCP examples on Cisco.
This would be a good addition to the examples on http://wiki.squid-cache.org/ConfigExamples/Intercept/
Kind Regards
Garth
_____________________________________________
From: Eliezer Croitoru [mailto:eliezer@xxxxxxxxxxxx]
Sent: Tuesday, 25 October 2016 1:08 AM
To: 'Yuri Voinov' <yvoinov@xxxxxxxxx>
Cc: Garth van Sittert | BitCo <garth@xxxxxxxxxxx>; squid-users@xxxxxxxxxxxxxxxxxxxxx
Subject: RE: [squid-users] Squid with ASR9001
From: Eliezer Croitoru [mailto:eliezer@xxxxxxxxxxxx]
Sent: Tuesday, 25 October 2016 1:08 AM
To: 'Yuri Voinov' <yvoinov@xxxxxxxxx>
Cc: Garth van Sittert | BitCo <garth@xxxxxxxxxxx>; squid-users@xxxxxxxxxxxxxxxxxxxxx
Subject: RE: [squid-users] Squid with ASR9001
I do not need them that much but I know they use a special Packet Forwarding IE routing engine to overcome most of the issues that may arise by many routing policies.
It would work the same fine for a Linux based OS and I am pretty sure that many of these do use these engines.
Eliezer
From: Yuri Voinov [mailto:yvoinov@xxxxxxxxx]
Sent: Tuesday, October 25, 2016 02:03
To: Eliezer Croitoru <eliezer@xxxxxxxxxxxx>
Cc: 'Garth van Sittert | BitCo' <garth@xxxxxxxxxxx>; squid-users@xxxxxxxxxxxxxxxxxxxxx
Subject: Re: [squid-users] Squid with ASR9001
Sent: Tuesday, October 25, 2016 02:03
To: Eliezer Croitoru <eliezer@xxxxxxxxxxxx>
Cc: 'Garth van Sittert | BitCo' <garth@xxxxxxxxxxx>; squid-users@xxxxxxxxxxxxxxxxxxxxx
Subject: Re: [squid-users] Squid with ASR9001
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
No, Juniper is not my area. :)
It is impossible to know everything :)
25.10.2016 4:48, Eliezer Croitoru пишет:
> By any chance do you have any
experience\example with juniper interception?
> They seems to do everything in the IP level policy and not
Bridge level.
>
> Eliezer
>
> ----
> Eliezer Croitoru <http://ngtech.co.il/lmgtfy/>
> Linux System Administrator
> Mobile: +972-5-28704261
> Email: eliezer@xxxxxxxxxxxx
>
>
> From: Yuri Voinov [mailto:yvoinov@xxxxxxxxx]
> Sent: Tuesday, October 25, 2016 01:07
> To: Eliezer Croitoru <eliezer@xxxxxxxxxxxx>
> Cc: 'Garth van Sittert | BitCo' <garth@xxxxxxxxxxx>;
> Subject: Re: [squid-users] Squid with ASR9001
>
>
> Compared with PBR - definitely.
>
> IF OS TCP stack supports bridging - exactly.
>
> 25.10.2016 3:59, Eliezer Croitoru пишет:
> > So what you are illustrating is
> that if we will handle the connection
>
> > interception using bridge tables it would be much
more
> efficient then Policy
>
> > Based routing.
>
> > I believe it’s very simple to implement in linux.
>
>
>
> > Eliezer
>
>
>
> > ----
>
> > Eliezer Croitoru
>
> > Linux System Administrator
>
> > Mobile: +972-5-28704261
>
> > Email: eliezer@xxxxxxxxxxxx
>
>
>
>
>
> > From: Yuri Voinov [mailto:yvoinov@xxxxxxxxx]
>
> > Sent: Monday, October 24, 2016 22:01
>
> > To: Eliezer Croitoru <eliezer@xxxxxxxxxxxx>
>
> > Cc: 'Garth van Sittert | BitCo'
>
>
> > Subject: Re: [squid-users] Squid with ASR9001
>
The information contained in this message is intended solely for the individual to whom it is specifically and originally addressed. This message and its contents may contain
confidential or privileged information from BitCo. If you are not the intended recipient, you are hereby notified that any disclosure or distribution, is strictly prohibited. If you receive this email in error, please notify BitCo immediately and delete it.
BitCo does not accept any liability or responsibility if action is taken in reliance on the contents of this information.
_______________________________________________ squid-users mailing list squid-users@xxxxxxxxxxxxxxxxxxxxx http://lists.squid-cache.org/listinfo/squid-users