Passthrough with IPs *won't* work with passthrough=proxy since we
perform DNS blackholing on the registration VLAN (rewriting all DNS to
the same IP).

As you already noted, squid redirector is to bypass client-side proxy
configuration. This is not what you are looking for.

On 18/01/12 5:40 AM, Morris, Andi wrote:
> This is still causing trouble.  To troubleshoot I’ve added:
> 
> google=http://www.google.co.uk
> 
> under the [passthroughs] section of pf.conf and restarted the
> packetfence services.  The new entry appears under the passthroughs
> section of the admin GUI so I’m confident that it has taken effect.
> 
> However, I still cannot access www.google.co.uk
> <http://www.google.co.uk>.  The captive portal access log shows the
> following (sorry about the long log).  It looks to me like
> www.google.co.uk <http://www.google.co.uk> is still being blocked, but
> somehow windows update agent is successfully accessing the internet,
> which is odd as I haven’t declared this anywhere.
> 

Windows Update Agent is specifically denied by our server rules. What
you see is that it is hitting the apache server and that we are
returning an error 501.

Can you post your var/conf/httpd.conf?

Also, are you interested on this feature on VLAN isolation or Inline
interface?
-- 
Olivier Bilodeau
obilod...@inverse.ca  ::  +1.514.447.4918 *115  ::  www.inverse.ca
Inverse inc. :: Leaders behind SOGo (www.sogo.nu) and PacketFence
(www.packetfence.org)

------------------------------------------------------------------------------
Keep Your Developer Skills Current with LearnDevNow!
The most comprehensive online learning library for Microsoft developers
is just $99.99! Visual Studio, SharePoint, SQL - plus HTML5, CSS3, MVC3,
Metro Style Apps, more. Free future releases when you subscribe now!
http://p.sf.net/sfu/learndevnow-d2d
_______________________________________________
Packetfence-users mailing list
Packetfence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to