LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 01-07-2008, 12:50 AM   #1
vedang
Member
 
Registered: May 2006
Posts: 89

Rep: Reputation: 15
Squid proxy problem in RHEL4


I have a squid proxy server installed on RHEL4 server.

I want to go live with this server in my office and want to use this as the only proxy server.

It works ok with basic https proxying but a dangerous thing I noticed is that I can connect to it with mozilla, if configured as Direct connection to internet. I want to use site restriction with it further but if I can connect to it like this then it is as good as no proxy server avalible.

I want all users in office to use internet through proxy only and no direct connection to internet should be avalible.

Please provide me a solution for this.
 
Old 01-07-2008, 02:59 AM   #2
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
you can connect to the proxy server without specifying a proxy server? do you actually mean that you can reach the internet without using the proxy? you'd just need to provide a firewall within your LAN so that the IP of the proxy and that IP alone is able to reach the internet. unless the proxy is the gateway too then there is no relation to the squid box in your situation.
 
Old 01-07-2008, 11:22 PM   #3
vedang
Member
 
Registered: May 2006
Posts: 89

Original Poster
Rep: Reputation: 15
Squid Problem.

Thanks for reply.

In my setup my linux box is configured with squid for proxying and it is also acting as gateway. I have no other option to go to the internet.
But when client connects to it without configuring proxy, it works.
I think i have to implement Iptables for firewall rules.

If you can provide me some help for that, it would be great.
 
Old 01-08-2008, 02:24 AM   #4
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
yes you would do, so just use the redhat-config-security tool to block outbound access to anythign other than what you want.
 
Old 01-08-2008, 11:51 PM   #5
vedang
Member
 
Registered: May 2006
Posts: 89

Original Poster
Rep: Reputation: 15
Squid problem

OK Achieved.

Another help needed.
I have an ADSL broadband router. Provider assigns dynamic IP. I have a squirrelmail web access to mail in LAN. I want to access squirrelmail from outside. I forwarded web request to Firewall machine in the router and used REDIRECT nat rule to forward it to squirrelmail machine.
Every time I restart the router, I observe the IP and try to access it from internet without success.
When I hit enter key from my dialup machine from which i connect to net to check web access, I can observe Router lights are blinking. That means some thing is coming in to the router but not getting forwarded to the squirrelmail machine. My router do not store logs for accessing it stores logs only for start and restart the router so I cannot observe if the request is really coming in.


Another thing I observed is that, when I restart the network service it shows a message

Disabling IPv4 packet forwarding [ok]

I have set set Ipv4 forwarding to 1 in /etc/sysctl.conf and

/proc/sys/net/ipv4/ip_forward

Is it disabling iptables to forward REDIRECT request to my squirrelmail?


Please it is very urgent.


I may loose my job if I could not solve this problem.
 
Old 01-09-2008, 04:28 AM   #6
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
please do not demand urgent help. your question is not about squid, so please start a new thread, without demanding priority attention and i'm sure someone will help.
 
Old 01-09-2008, 05:58 AM   #7
vedang
Member
 
Registered: May 2006
Posts: 89

Original Poster
Rep: Reputation: 15
squid problem

ok.

Please do not misunderstant me.

Posting a new thread.

Thanks..
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
some problem with squid proxy prajakta0shimpi Linux - Server 2 09-01-2007 05:54 AM
configure squid proxy with microsoft proxy as a parent proxy nintykola Linux - Software 1 08-28-2007 01:38 AM
squid proxy problem linuxboy_inside Linux - Networking 2 01-04-2006 11:17 PM
RHEL4 -Squid Cache Problem saneax Red Hat 0 05-25-2005 01:03 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 07:55 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration