I've been working on an issue with Squid/Dansguardian/Shorewall
connecting to an OWA site outside of the network.  I was originally
thinking it was squid that was causing the issue now I'm leaning towards
something towards the iptables/shorewall configuration.

 

Squid is in transparent mode.

 

(This also applies to the sharepoint server which uses the same auth as
OWA)

 

On two different networks that has a shorewall firewall I cannot connect
to the OWA.  I get the login prompt to appear and in the case of IE,
after entering in my login ID/password the screen immediately goes to a
"Internet explorer cannot display the webpage".  In Chrome, the popup
auth window just keeps appearing and asks for the username/password over
and over.  So my assumption is that I'm getting to the site but not
allowing the auth.  I was originally thinking it was packet mangling but
I don't have that configured in my shorewall.conf on the 2nd shorewall
device.

 

Keep in mind, from this same network I can access other OWA sites just
fine that do not use shorewall.  So that's why I'm thinking it's a
shorewall/iptables configuration issue.

 

I can access the OWA that was having issues just fine without the proxy
though which makes this hard to decipher where the issue is coming from.

 

My rule is simple:

 

Rules:

ACCEPT net loc:10.1.1.3 tcp http # webmail2

 

Nat:

# EMail server

999.999.999.999    eth2            10.1.1.3        yes
yes

 

Does anyone have an idea on what is going on?

 

 Thanks!

------------------------------------------------------------------------------
ThinkGeek and WIRED's GeekDad team up for the Ultimate 
GeekDad Father's Day Giveaway. ONE MASSIVE PRIZE to the 
lucky parental unit.  See the prize list and enter to win: 
http://p.sf.net/sfu/thinkgeek-promo
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to