On 02/07/2018 04:11 PM, setuid wrote: > That router has a firewall script on it that says: > ====================== > #!/bin/sh > PROXY_IP=192.168.2.25 Yes, this is a typo here in email but is correct in the router's firewall script. This should be either 192.168.2.20 or 192.168.1.25; both are Squid caches inside my LAN on Ubuntu and BSD respectively. Here's an example of my ipfw rules, for comparison: ====================== $cmd 00700 deny ip from any to any dst-port 3128 via em0 $cmd 00800 fwd 127.0.0.1,3128 tcp from 192.168.1.0/24 to any dst-port 80 via em0 $cmd 00810 fwd 127.0.0.1,3128 ip from any to any dst-port 21 src-ip 192.168.1.0/24 $cmd 00820 allow ip from any to any dst-port 3128 dst-ip 192.168.1.1 src-ip 192.168.1.0/24 ====================== _______________________________________________ squid-users mailing list squid-users@xxxxxxxxxxxxxxxxxxxxx http://lists.squid-cache.org/listinfo/squid-users