sön 2006-07-30 klockan 01:47 -0700 skrev Amir Ali Eshghi: > as a transparent proxy this shaping does not work. My > guess is that dansguardian somehow modifies TOS > headers.
dansguardian is a proxy, which means the connections client<->dansguardian is completely different from the connection dansguardian<->squid. So yes, ToS/DS marks set by Squid won't be reflected into the client connection as this is only set on the connection dansguardian<->squid. To have ToS/DS marks on the client<->dansguardian you need to extend Dansguardian to reflect the received ToS/DS key onto the client connection. But unfortunately I know of no method whereby an application can get the ToS/DS key from a TCP connection so it's kind of hard to do.. Regards Henrik
signature.asc
Description: Detta är en digitalt signerad meddelandedel
