I've been working on an issue with Squid/Dansguardian/Shorewall
connecting to an OWA site outside of the network. I was originally
thinking it was squid that was causing the issue now I'm leaning towards
something towards the iptables/shorewall configuration.
Squid is in transparent mode.
(This also applies to the sharepoint server which uses the same auth as
OWA)
On two different networks that has a shorewall firewall I cannot connect
to the OWA. I get the login prompt to appear and in the case of IE,
after entering in my login ID/password the screen immediately goes to a
"Internet explorer cannot display the webpage". In Chrome, the popup
auth window just keeps appearing and asks for the username/password over
and over. So my assumption is that I'm getting to the site but not
allowing the auth. I was originally thinking it was packet mangling but
I don't have that configured in my shorewall.conf on the 2nd shorewall
device.
Keep in mind, from this same network I can access other OWA sites just
fine that do not use shorewall. So that's why I'm thinking it's a
shorewall/iptables configuration issue.
I can access the OWA that was having issues just fine without the proxy
though which makes this hard to decipher where the issue is coming from.
My rule is simple:
Rules:
ACCEPT net loc:10.1.1.3 tcp http # webmail2
Nat:
# EMail server
999.999.999.999 eth2 10.1.1.3 yes
yes
Does anyone have an idea on what is going on?
Thanks!
------------------------------------------------------------------------------
ThinkGeek and WIRED's GeekDad team up for the Ultimate
GeekDad Father's Day Giveaway. ONE MASSIVE PRIZE to the
lucky parental unit. See the prize list and enter to win:
http://p.sf.net/sfu/thinkgeek-promo
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users