Passthrough with IPs *won't* work with passthrough=proxy since we perform DNS blackholing on the registration VLAN (rewriting all DNS to the same IP).
As you already noted, squid redirector is to bypass client-side proxy configuration. This is not what you are looking for. On 18/01/12 5:40 AM, Morris, Andi wrote: > This is still causing trouble. To troubleshoot I’ve added: > > google=http://www.google.co.uk > > under the [passthroughs] section of pf.conf and restarted the > packetfence services. The new entry appears under the passthroughs > section of the admin GUI so I’m confident that it has taken effect. > > However, I still cannot access www.google.co.uk > <http://www.google.co.uk>. The captive portal access log shows the > following (sorry about the long log). It looks to me like > www.google.co.uk <http://www.google.co.uk> is still being blocked, but > somehow windows update agent is successfully accessing the internet, > which is odd as I haven’t declared this anywhere. > Windows Update Agent is specifically denied by our server rules. What you see is that it is hitting the apache server and that we are returning an error 501. Can you post your var/conf/httpd.conf? Also, are you interested on this feature on VLAN isolation or Inline interface? -- Olivier Bilodeau obilod...@inverse.ca :: +1.514.447.4918 *115 :: www.inverse.ca Inverse inc. :: Leaders behind SOGo (www.sogo.nu) and PacketFence (www.packetfence.org) ------------------------------------------------------------------------------ Keep Your Developer Skills Current with LearnDevNow! The most comprehensive online learning library for Microsoft developers is just $99.99! Visual Studio, SharePoint, SQL - plus HTML5, CSS3, MVC3, Metro Style Apps, more. Free future releases when you subscribe now! http://p.sf.net/sfu/learndevnow-d2d _______________________________________________ Packetfence-users mailing list Packetfence-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/packetfence-users