Hello, there:

we set up a scenario where two layers of transparent proxies are used with squid and 
dansguardian. But it doesn't work for us.

Our situation is like this:

1. We have one broadband connection used for our web access of email server, which was 
NATed through the broadband router to an internal address (192.168.1.120). Our 
external address is for example 219.133.x.x. We use a squid + dansguardian for virus 
protection of web access, where the route is external -> dansgurdian ->squid -> 
mailserver In squid.conf, we put "httpd_accel_host 192.168.1.120" and 
"httpd_accel_uses_host_header off".

2. We have another connection used for Internet access of internal network. Our 
internal address is at range 192.168.0.x. We use squid + dansguardian for web
filtering. In squid.conf, we put "httpd_accel_host virtual" and 
"httpd_accel_uses_host_header on". Now when we try to access http://219.133.x.x/ from 
internal network, we got "Access Denied" error from squid. The pass is like internal 
-> dansgurdian->squid -> external. But when we take off squid + dansguardian at 
Internet access part, we are able to access the webpage. 

I wonder if anyone can give a hint from this list.

Thanks and regards,

Roland

-----
CISSP,CISA,CPMP
ZR InfoTech - Protect Your Information Asset
Tel: +86-755-26978741
Fax: +86-755-26978735
Web: http://www.zrinfo.net
BEGIN:VCARD
VERSION:2.1
N:��;����;;�����ܼ�
FN:������
ORG:׿��ΰҵ ��Ϣ��ȫר��
TITLE:�����ܼࣨCISSP��CISA��
TEL;WORK;VOICE:0755-26978741
TEL;WORK;VOICE:0755-26978886
TEL;CELL;VOICE:13609619761
TEL;WORK;FAX:0755-26978735
ADR;WORK:;0755-26978741;��ɽ����԰9¥;����;;518052
LABEL;WORK;ENCODING=QUOTED-PRINTABLE:0755-26978741=0D=0A=C4=CF=C9=BD=C8=ED=BC=FE=D4=B09=C2=A5=0D=0A=C9=EE=DB=DA 5=
18052
URL;WORK:http://www.zrinfo.net
EMAIL;PREF;INTERNET:[EMAIL PROTECTED]
REV:20040212T024958Z
END:VCARD

Reply via email to