Redirection works, now the problem is that all requests come from 192.168.1.1

1271846322.812      0 192.168.1.1 TCP_DENIED/403 3059 GET
http://www.facebook.com/ - NONE/- text/html

but we do have access levels, for example, sam can browse facebook
freely but manuel can't. So this is unnaceptable for us.

Since i have to get this done... ill just change the ip addresses,
since i cant order every user here to change the proxy settings.

But... can you help me to finish this? ill set up a test environment...

<
2010/4/20 Santiago Zarate <[email protected]>:
> Hmm at one point i was using:
> DNAT    loc     loc:192.168.1.10   tcp  3128    -       !192.168.1.1
>
>
> Gonna try tomorrow as soon as i can.. thanks...
>
>
> 2010/4/20 Tom Eastep <[email protected]>:
>> Santiago Zarate wrote:
>>> I just want traffic to 192.168.1.1:3128 be forwarded/redirected to
>>> 192.168.1.10:3128
>>
>> And that is Shorewall FAQ 2!
>>
>> In /etc/shorewall/rules:
>>
>> DNAT    loc     loc:192.168.1.10   tcp  3128    -       192.168.1.1
>>
>> In /etc/shorewall/interfaces:
>>
>> loc     ethX    -       routeback,...
>>
>> In /etc/shorewall/masq:
>>
>> ethX:192.168.1.10       192.168.1.0/24  192.168.1.1     tcp     3128
>>
>> -Tom
>> --
>> Tom Eastep        \ When I die, I want to go like my Grandfather who
>> Shoreline,         \ died peacefully in his sleep. Not screaming like
>> Washington, USA     \ all of the passengers in his car
>> http://shorewall.net \________________________________________________
>>
>> ------------------------------------------------------------------------------
>> _______________________________________________
>> Shorewall-users mailing list
>> [email protected]
>> https://lists.sourceforge.net/lists/listinfo/shorewall-users
>>
>

------------------------------------------------------------------------------
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to