-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 You know method to do this without NAT? ;) 28.10.2016 0:54, Antony Stone пишет: > On Thursday 27 October 2016 at 19:51:22, Yuri Voinov wrote: > >> You absolutely sure, Eliezier? :) > > Yes - you do not use DNAT. > > You do use REDIRECT on the machine Squid is running on. > > > Antony. > >> 27.10.2016 23:46, Eliezer Croitoru пишет: >>> You need routing policy not DNAT. >>> >>> Eliezer >>> >>> ---- >>> Eliezer Croitoru >>> Linux System Administrator >>> Mobile: +972-5-28704261 >>> Email: eliezer@xxxxxxxxxxxx >>> >>> >>> -----Original Message----- >>> From: squid-users [mailto:squid-users-bounces@xxxxxxxxxxxxxxxxxxxxx] >> >> On Behalf Of erdosain9 >> >>> Sent: Thursday, October 27, 2016 19:08 >>> To: squid-users@xxxxxxxxxxxxxxxxxxxxx >>> Subject: Re: Transparent and non Transparent at the same >> >> time >> >>> Ok... but i have this problem >>> >>> ERROR: NAT/TPROXY lookup failed to locate original IPs on >>> >>> local=192.168.1.15:3130 remote=192.168.1.1:52090 FD 14 flags=33 >>> >>> ... >>> I put some dstnat in Mikrotik (192.168.1.1) >>> >>> >>> ip firewall nat add chain=dstnat src-add=192.168.1.121 protocol=tcp >>> dst-port=80 action=dst-nat >>> to-addresses=192.168.1.20 to-ports=3129 >>> >>> ERROR: NAT/TPROXY lookup failed to locate original IPs on >>> local=192.168.1.20:3129 remote=192.168.1.1:52153 FD 14 flags=33 >>> 2016/10/27 14:01:43 kid1| ERROR: NF getsockopt(ORIGINAL_DST) failed on >>> local=192.168.1.215:3129 remote=192.168.1.1:52154 FD 14 flags=33: (92) >> >> Protocol not available >> >>> I dont have iptables or firewalld... im using Centos... is necessary >> >> enable firewalld or iptables??? >> >>> im using the PC (192.168.1.121 for test) Thanks >> >> http://squid-web-proxy-cache.1019090.n4.nabble.com/Transparent-and-non-Tran >> sparent-at-the-same-time-tp4680309p4680330.html >> >>> Sent from the Squid - Users mailing list archive at Nabble.com. >>> _______________________________________________ >>> squid-users mailing list >>> squid-users@xxxxxxxxxxxxxxxxxxxxx >>> http://lists.squid-cache.org/listinfo/squid-users >>> >>> _______________________________________________ >>> squid-users mailing list >>> squid-users@xxxxxxxxxxxxxxxxxxxxx >>> http://lists.squid-cache.org/listinfo/squid-users > - -- Cats - delicious. You just do not know how to cook them. -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iQEcBAEBCAAGBQJYEk4AAAoJENNXIZxhPexGGakIAMLVs9E4pOELHc2ER9TSQ2pD VLPffzjRkSndZvv8Qck0rmoANfZHJoKFzCSx9EMifdiPQjQGRgFm19Hy6wjMNt0v E7J6Qp5rC2BIIf/zg+rPj4Wz5dcSndV+3m+zk18oEOB47i4MCFkJCwPAYwSkHvXZ 8m4/5pMDSuS7rp+O2Pd217EvesSkMqUXOSKT1/iuvR5yqplTBgEQ8OOpEGYuui9c dUMm73veIXF22gbcj4NgyFAWnnjJl4oOS7mAuJ2Vs+ZhQeY/uPlurJoCjGm2zXFB QuhJj05bZkDUqwzWp3VsuXhhSk9skJSRVjqBzMS30q1ocBDN4+adcHrP1n1ISyU= =jDMd -----END PGP SIGNATURE-----
Attachment:
0x613DEC46.asc
Description: application/pgp-keys
_______________________________________________ squid-users mailing list squid-users@xxxxxxxxxxxxxxxxxxxxx http://lists.squid-cache.org/listinfo/squid-users