Tom,
Sorry to be such a nusiance. Now that I have a good chance to get my 
failover,
working. I think I can figure out how to get tunneils back up on my own.
But for many years I have ran squid as a transparent proxy by entering
the net zones ip in squid.conf transparent proxy section. IF I recall
tcrules would not route this right and you had to enter tcpoutgoing to 
work.
Currently my tcrules have this as its only entry so far.
providers with track=yes and balanced assumed with use defaultroute=yes

rea     1       256     -               eth0            205.134.193.137     
   fallback
com     2       512     -               eth1            50.78.47.94


tcrules
512:P                   0.0.0.0/0
512                     $FW

I need webrowsing to work as well. If I leave tcpoutgoing empty or blank

When comcast is up will squid honor the tcrule below?
And use comcast exclusivly?
 512                     $FW

I am pretty sure that squid will work when the firewall is in failover 
state
if tcpouting is empty?


Mike


------------------------------------------------------------------------------
Live Security Virtual Conference
Exclusive live event will cover all the ways today's security and 
threat landscape has changed and how IT managers can respond. Discussions 
will include endpoint security, mobile security and the latest in malware 
threats. http://www.accelacomm.com/jaw/sfrnl04242012/114/50122263/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to