LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 07-28-2009, 10:53 PM   #1
crackyblue
LQ Newbie
 
Registered: Sep 2007
Posts: 25

Rep: Reputation: 15
Squid to detect workstation's ip address inside a LAN


Hi,

I am using NAT on my firewall on a certain department which browse the internet using my squid outside of this firewall. I am using a filtering system on squid, managers inside this LAN must access certain sites where others should not reach. My problem is squid only sees the firewall ip address which in turn all workstations are filtered based on the firewall's ip address. Is there a way that i can manipulate my firewall not to use NAT but has the same effect to send packets without altering the ip address and since I am NAT, it eventually return to the firewall ip address.

LAN (sending ip address) ----> FIREWALL ----> (Receive workstation ip address not firewall ip address)Squid

Thank you.

Last edited by crackyblue; 07-28-2009 at 10:55 PM.
 
Old 07-29-2009, 04:40 AM   #2
fotoguy
Senior Member
 
Registered: Mar 2003
Location: Brisbane Queensland Australia
Distribution: Custom Debian Live ISO's
Posts: 1,291

Rep: Reputation: 62
No it's not possible with your current setup, you internal lan uses private A, B, or C class networks, these are not routable over the internet. Any other gateway would not know where to send the packet of data if it has a private ipaddress, so it will by default send it to it's gateway, eventually the packet will reach it's TTL value (Time-To-Live), and be discarded. The only way I think it would be possible would be to setup A VPN perhaps.
 
  


Reply

Tags
firewall, ip, squid, workstation



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
convert LAN IP address to Host Name when I give cmd tail -f /var/log/squid/access.log rs15 Linux - Networking 6 01-22-2012 01:45 AM
binding of IP address to its mac address in squid proxy ramamalempati Linux - Server 5 06-05-2009 02:51 AM
Server from inside LAN andrewjjones Linux - Networking 53 04-22-2005 02:07 PM
Apache 2 Server - Can't access it via ip address from inside LAN Robstro Linux - Networking 1 06-30-2004 01:50 PM
pop3 inside and outside LAN clinger Linux - Software 2 03-20-2004 10:55 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 07:14 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration