Marco Salimu wrote:
> Hi Tom
> Before i send the document, i know the shorewall dump will not show that
> because that is the issue of proxy server.
> 
> Is there any way to bypass proxy server once per all users in Local net
> apart from adding bypass in browsers.
> if i remove proxy setting in browsers i can access mydomain.or.tz.

<Marco sent me shorewall dump output>

Marco,

Why do you have proxy settings in the browsers when you have configured
transparent proxy? Your Shorewall configuration is correct for bypassing
the proxy when local hosts try to connect to the web server in your DMZ
with transparent proxy.

At any rate, if you replace this rule:

   ACCEPT  $FW  dmz             tcp     80

with this rule:

   DNAT    $FW  dmz:10.4.15.254 tcp     80   -  <IP addr of eth0>

it should work.

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Let Crystal Reports handle the reporting - Free Crystal Reports 2008 30-Day 
trial. Simplify your report design, integration and deployment - and focus on 
what you do best, core application coding. Discover what's new with
Crystal Reports now.  http://p.sf.net/sfu/bobj-july
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to