<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: How to Setup Transparent Squid Proxy Server in Ubuntu</title>
	<atom:link href="http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/feed" rel="self" type="application/rss+xml" />
	<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html</link>
	<description>Ubuntu Linux Tutorials,Howtos,Tips &#38; News &#124; Oneiric,Natty,Maverick</description>
	<lastBuildDate>Mon, 06 Feb 2012 15:40:01 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Keith</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-2#comment-116324</link>
		<dc:creator>Keith</dc:creator>
		<pubDate>Tue, 29 Nov 2011 17:39:12 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-116324</guid>
		<description>Can anyone help me, I have a very unique need for special Squid config. 
I am setting up a Linux (Ubuntu) with Squid (a proxy server). 
Basically we want to run 10K proxies on one linux box, only a handful would ever be in use at any one time so the throughput is not an issue.
Basically each &quot;proxy&quot; would be bound to the same IP but on a different port of that IP. Each port would redirect to (transparent proxy) one of our outbound IP addresses. So essentially you could change the IP address of your machine by simply changing the port of your proxy settings in your browser.
ALA
Proxy1 192.168.0.100:10000  redirects to 208.xxx.xxx.1
Proxy1 192.168.0.100:10001  redirects to 208.xxx.xxx.2
Proxy1 192.168.0.100:10002  redirects to 208.xxx.xxx.3
Proxy1 192.168.0.100:10003  redirects to 208.xxx.xxx.4
Proxy1 192.168.0.100:10004  redirects to 208.xxx.xxx.5
And so on xxx just there to hide real IP space</description>
		<content:encoded><![CDATA[<p>Can anyone help me, I have a very unique need for special Squid config.<br />
I am setting up a Linux (Ubuntu) with Squid (a proxy server).<br />
Basically we want to run 10K proxies on one linux box, only a handful would ever be in use at any one time so the throughput is not an issue.<br />
Basically each &#8220;proxy&#8221; would be bound to the same IP but on a different port of that IP. Each port would redirect to (transparent proxy) one of our outbound IP addresses. So essentially you could change the IP address of your machine by simply changing the port of your proxy settings in your browser.<br />
ALA<br />
Proxy1 192.168.0.100:10000  redirects to 208.xxx.xxx.1<br />
Proxy1 192.168.0.100:10001  redirects to 208.xxx.xxx.2<br />
Proxy1 192.168.0.100:10002  redirects to 208.xxx.xxx.3<br />
Proxy1 192.168.0.100:10003  redirects to 208.xxx.xxx.4<br />
Proxy1 192.168.0.100:10004  redirects to 208.xxx.xxx.5<br />
And so on xxx just there to hide real IP space</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ecco</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-2#comment-105961</link>
		<dc:creator>ecco</dc:creator>
		<pubDate>Mon, 04 Jul 2011 13:02:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-105961</guid>
		<description>Hello. This guide get me the solution to work now with a web proxy in my network! Thank You!</description>
		<content:encoded><![CDATA[<p>Hello. This guide get me the solution to work now with a web proxy in my network! Thank You!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bipin Bahuguna</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-2#comment-105703</link>
		<dc:creator>Bipin Bahuguna</dc:creator>
		<pubDate>Sat, 25 Jun 2011 23:25:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-105703</guid>
		<description>Hi,

I am configuring Squid as a Reverse Proxy With caching Enable For remote apache server.

Buts Hits Are Going to Main Apache Server.
How can i enable caching For that Remote Server.

Below is the details of scenario:

proxy.com this is the server where i have configured proxy machine (10.0.0.1)

And My Apache is installed on (10.0.0.1) with site name (main.com)


But unable to caching ..


Any Help Will Be appreciate.


Thanks,
Bipin Bahuguna</description>
		<content:encoded><![CDATA[<p>Hi,</p>
<p>I am configuring Squid as a Reverse Proxy With caching Enable For remote apache server.</p>
<p>Buts Hits Are Going to Main Apache Server.<br />
How can i enable caching For that Remote Server.</p>
<p>Below is the details of scenario:</p>
<p>proxy.com this is the server where i have configured proxy machine (10.0.0.1)</p>
<p>And My Apache is installed on (10.0.0.1) with site name (main.com)</p>
<p>But unable to caching ..</p>
<p>Any Help Will Be appreciate.</p>
<p>Thanks,<br />
Bipin Bahuguna</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mashuk</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-2#comment-105207</link>
		<dc:creator>mashuk</dc:creator>
		<pubDate>Wed, 08 Jun 2011 10:10:57 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-105207</guid>
		<description>Hi,

i want to setup a proxy server plz setup setup by setup command mail me.


mashuk</description>
		<content:encoded><![CDATA[<p>Hi,</p>
<p>i want to setup a proxy server plz setup setup by setup command mail me.</p>
<p>mashuk</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Map007</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-2#comment-59029</link>
		<dc:creator>Map007</dc:creator>
		<pubDate>Wed, 24 Nov 2010 03:55:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-59029</guid>
		<description>Hi,

And i want to monitor all the logs (i.e. ftp, p2p softwares,IM etc.. ) under my squid server.

How it is possible ?

Thanks,</description>
		<content:encoded><![CDATA[<p>Hi,</p>
<p>And i want to monitor all the logs (i.e. ftp, p2p softwares,IM etc.. ) under my squid server.</p>
<p>How it is possible ?</p>
<p>Thanks,</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Map007</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-2#comment-59028</link>
		<dc:creator>Map007</dc:creator>
		<pubDate>Wed, 24 Nov 2010 03:53:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-59028</guid>
		<description>Hi,

Authentication doesn&#039;t work with Transparent proxy....
Is there any other way ?

Thanks,</description>
		<content:encoded><![CDATA[<p>Hi,</p>
<p>Authentication doesn&#8217;t work with Transparent proxy&#8230;.<br />
Is there any other way ?</p>
<p>Thanks,</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jayson D. Martinez</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-2#comment-36893</link>
		<dc:creator>Jayson D. Martinez</dc:creator>
		<pubDate>Tue, 22 Jun 2010 05:06:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-36893</guid>
		<description>Complete Steps in Setting up UBUNTU Server 10 with SQUID 3 as a Transparent Proxy.


Step 1. Install the Ubuntu Server 10, include LAMP if you want

Step 2. Change the network interfaces from dhcp to static

 Sudo nano /etc/network/interfaces

auto eth0
iface eth0 inet static
address 192.168.1.250
netmask 255.255.255.0
network 192.168.1.0
broadcast 192.168.1.255
gateway 192.168.1.88

post-up iptables-restore &lt; /etc/iptables.up.rules

auto eth1
iface eth1 inet static
address 192.168.2.1
netmask 255.255.255.0
network 192.168.2.0
broadcast 192.168.2.255

 

Step 3. Install Web Admin (webmin) (Optional)

    wget http://prdownloads.sourceforge.net/webadmin/webmin_1.510-2_all.deb
    dpkg --install webmin_1.510-2_all.deb
    sudo apt-get -f install

     https://localhost-IP ADDRES:10000 

    *Note Make sure you give permission to the IPTABLES ruleset to for you to access webmin over the net.
    
Step 4. Install ClamAV and ClamAV-freshclam 

sudo apt-get install clamav clamav-freshclam






Step 5. The first step is to install squid 3

apt-get install squid3

edit the squid 3 configuration file in your favorite editor

sudo nano /etc/squid3/squid.conf

and set the transparency and the allowed hosts

http_port 3128 transparent
acl our_networks src 192.168.2.0/24
acl localnet src 127.0.0.1/255.255.255.255
http_access allow our_networks
http_access allow localnet

where 192.168.2.0/24 is the IP range of local network. Probably you need to adjust the swap size

cache_dir ufs /var/spool/squid3 7000 16 256

where the first number denotes the size of cache in megabytes. Save you changes and restart the squid proxy by

sudo /etc/init.d/squid3 restart


Step 6. Edit the /etc/sysctl.conf

 Sudo nano /etc/sysctl.conf

Uncomment the line that enable packet forwarding for IPv4 and IPv6
Net.ipv4.ip_forward = 1
Net.ipv6.conf.all.forwarding = 1












Step 7. Edit the IPTABLE ruleset of NAT and FILTER

Sudo nano /etc/iptables.up.rules

*nat

-A PREROUTING –i eth1 –p tcp –m tcp --dport 80 –j DNAT  --to-destination 192.168.2.1:3128
-A PREROUTING –i eth1 –p tcp –m tcp --dport 80 –j REDIRECT  --to-ports 3128 
-A POSTROUTING –s 192.168.2.0/24 –o eth0 –j MASQUERADE




*filter

-A INPUT –i lo –j ACCEPT
-A INPUT –m state –i eth0 –state REALATED,ESTABLISHED –j ACCEPT
-A INPUT eth1 –j ACCEPT
-A INPUT –p tcp –m tcp  --dport 22 –j ACCEPT  # permit ssh using putty
-A INPUT –p tcp –m tcp  --dport 10000 –j ACCEPT  # permit webmin access
-A INPUT –j LOG
-A INPUT –j DROP
-A FORWARD –i eth1 –j ACCEPT
-A OUTPUT –o lo –j ACCEPT
-A OUTPUT –o eth1 –j ACCEPT
-A FOWARD –o eth1 –j ACCEPT
-A FORWARD –s 192.168.2.0/24 –o eth0 –j ACCEPT
-A FORWARD –d 192.168.2.0/24 –m state  --state ESTABLISHED,REALTED –I eth0 –j ACCEPT


STEP 8. Edit  rc.local 

Sudo nano /etc/rc.local

iptables -t nat -A POSTROUTING -s 192.168.2.0/24 –o eth0 -j MASQUERADE

Step 9. reboot the server

Step 10. Configure the workstation for static IP Address making the LAN IP of the Ubuntu box as the gateway. Make sure that the IP Address of the work station is within the network you setup.</description>
		<content:encoded><![CDATA[<p>Complete Steps in Setting up UBUNTU Server 10 with SQUID 3 as a Transparent Proxy.</p>
<p>Step 1. Install the Ubuntu Server 10, include LAMP if you want</p>
<p>Step 2. Change the network interfaces from dhcp to static</p>
<p> Sudo nano /etc/network/interfaces</p>
<p>auto eth0<br />
iface eth0 inet static<br />
address 192.168.1.250<br />
netmask 255.255.255.0<br />
network 192.168.1.0<br />
broadcast 192.168.1.255<br />
gateway 192.168.1.88</p>
<p>post-up iptables-restore &lt; /etc/iptables.up.rules</p>
<p>auto eth1<br />
iface eth1 inet static<br />
address 192.168.2.1<br />
netmask 255.255.255.0<br />
network 192.168.2.0<br />
broadcast 192.168.2.255</p>
<p>Step 3. Install Web Admin (webmin) (Optional)</p>
<p>    wget <a href="http://prdownloads.sourceforge.net/webadmin/webmin_1.510-2_all.deb" rel="nofollow">http://prdownloads.sourceforge.net/webadmin/webmin_1.510-2_all.deb</a><br />
    dpkg --install webmin_1.510-2_all.deb<br />
    sudo apt-get -f install</p>
<p>     <a href="https://localhost-IP" rel="nofollow">https://localhost-IP</a> ADDRES:10000 </p>
<p>    *Note Make sure you give permission to the IPTABLES ruleset to for you to access webmin over the net.</p>
<p>Step 4. Install ClamAV and ClamAV-freshclam </p>
<p>sudo apt-get install clamav clamav-freshclam</p>
<p>Step 5. The first step is to install squid 3</p>
<p>apt-get install squid3</p>
<p>edit the squid 3 configuration file in your favorite editor</p>
<p>sudo nano /etc/squid3/squid.conf</p>
<p>and set the transparency and the allowed hosts</p>
<p>http_port 3128 transparent<br />
acl our_networks src 192.168.2.0/24<br />
acl localnet src 127.0.0.1/255.255.255.255<br />
http_access allow our_networks<br />
http_access allow localnet</p>
<p>where 192.168.2.0/24 is the IP range of local network. Probably you need to adjust the swap size</p>
<p>cache_dir ufs /var/spool/squid3 7000 16 256</p>
<p>where the first number denotes the size of cache in megabytes. Save you changes and restart the squid proxy by</p>
<p>sudo /etc/init.d/squid3 restart</p>
<p>Step 6. Edit the /etc/sysctl.conf</p>
<p> Sudo nano /etc/sysctl.conf</p>
<p>Uncomment the line that enable packet forwarding for IPv4 and IPv6<br />
Net.ipv4.ip_forward = 1<br />
Net.ipv6.conf.all.forwarding = 1</p>
<p>Step 7. Edit the IPTABLE ruleset of NAT and FILTER</p>
<p>Sudo nano /etc/iptables.up.rules</p>
<p>*nat</p>
<p>-A PREROUTING –i eth1 –p tcp –m tcp --dport 80 –j DNAT  --to-destination 192.168.2.1:3128<br />
-A PREROUTING –i eth1 –p tcp –m tcp --dport 80 –j REDIRECT  --to-ports 3128<br />
-A POSTROUTING –s 192.168.2.0/24 –o eth0 –j MASQUERADE</p>
<p>*filter</p>
<p>-A INPUT –i lo –j ACCEPT<br />
-A INPUT –m state –i eth0 –state REALATED,ESTABLISHED –j ACCEPT<br />
-A INPUT eth1 –j ACCEPT<br />
-A INPUT –p tcp –m tcp  --dport 22 –j ACCEPT  # permit ssh using putty<br />
-A INPUT –p tcp –m tcp  --dport 10000 –j ACCEPT  # permit webmin access<br />
-A INPUT –j LOG<br />
-A INPUT –j DROP<br />
-A FORWARD –i eth1 –j ACCEPT<br />
-A OUTPUT –o lo –j ACCEPT<br />
-A OUTPUT –o eth1 –j ACCEPT<br />
-A FOWARD –o eth1 –j ACCEPT<br />
-A FORWARD –s 192.168.2.0/24 –o eth0 –j ACCEPT<br />
-A FORWARD –d 192.168.2.0/24 –m state  --state ESTABLISHED,REALTED –I eth0 –j ACCEPT</p>
<p>STEP 8. Edit  rc.local </p>
<p>Sudo nano /etc/rc.local</p>
<p>iptables -t nat -A POSTROUTING -s 192.168.2.0/24 –o eth0 -j MASQUERADE</p>
<p>Step 9. reboot the server</p>
<p>Step 10. Configure the workstation for static IP Address making the LAN IP of the Ubuntu box as the gateway. Make sure that the IP Address of the work station is within the network you setup.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ravi</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-2#comment-31679</link>
		<dc:creator>Ravi</dc:creator>
		<pubDate>Tue, 01 Jun 2010 07:36:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-31679</guid>
		<description>how to setup transpernet squid proxy server in ubuntu</description>
		<content:encoded><![CDATA[<p>how to setup transpernet squid proxy server in ubuntu</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Douglas</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-2#comment-30246</link>
		<dc:creator>Douglas</dc:creator>
		<pubDate>Mon, 17 May 2010 02:21:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-30246</guid>
		<description>Fixed my problems :)

# Squid normally listens to port 3128
http_port 3128 transparent</description>
		<content:encoded><![CDATA[<p>Fixed my problems <img src='http://www.ubuntugeek.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p># Squid normally listens to port 3128<br />
http_port 3128 transparent</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Adam</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-1#comment-29545</link>
		<dc:creator>Adam</dc:creator>
		<pubDate>Wed, 05 May 2010 08:50:43 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-29545</guid>
		<description>Hello all,
I am using squid3.0 on Ubuntu server
I am having one particular problem, if anyone here can help me with please. here it is:

I can ssh the machine on which the proxy runs, but I cannot access the backend servers(machines) via ssh.

Let&#039;s say the proxy machine itself has the ssh 22xx
and the other three machines in the back end have each a different SSH port number example.

Proxy machine SSH 2222 works
Machine1 SSH 2223 doesn&#039;t work
Machine2 SSH 2224 doesn&#039;t work
Machine3 SSH 2225 doesn&#039;t work

I mean the access is refused 
Even though through my router Cisco/Linksys I have forwarded SSH requests to each of these machines

I even added the above ports as Safe_ports in my squid config but still can&#039;t access them.

Any suggestions or ideas would be very much appreciated.

I have posted on the userssquid mailing list but nobody replied or even tried to help me with it.

Thank you all</description>
		<content:encoded><![CDATA[<p>Hello all,<br />
I am using squid3.0 on Ubuntu server<br />
I am having one particular problem, if anyone here can help me with please. here it is:</p>
<p>I can ssh the machine on which the proxy runs, but I cannot access the backend servers(machines) via ssh.</p>
<p>Let&#8217;s say the proxy machine itself has the ssh 22xx<br />
and the other three machines in the back end have each a different SSH port number example.</p>
<p>Proxy machine SSH 2222 works<br />
Machine1 SSH 2223 doesn&#8217;t work<br />
Machine2 SSH 2224 doesn&#8217;t work<br />
Machine3 SSH 2225 doesn&#8217;t work</p>
<p>I mean the access is refused<br />
Even though through my router Cisco/Linksys I have forwarded SSH requests to each of these machines</p>
<p>I even added the above ports as Safe_ports in my squid config but still can&#8217;t access them.</p>
<p>Any suggestions or ideas would be very much appreciated.</p>
<p>I have posted on the userssquid mailing list but nobody replied or even tried to help me with it.</p>
<p>Thank you all</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: TorrentialStorm</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-1#comment-29471</link>
		<dc:creator>TorrentialStorm</dc:creator>
		<pubDate>Tue, 04 May 2010 14:53:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-29471</guid>
		<description>All you need for transparent:
iptables -t nat -I PREROUTING -i eth0 -p tcp --dport 80 -j DNAT --to 10.0.0.3:3128
Remember to change the interface &amp; IP/port.

with squid v2.7 you just need to add &quot;transparent&quot; to http_port.

squid.conf:
# Squid normally listens to port 3128
http_port 3128 transparent


Working on lucid.</description>
		<content:encoded><![CDATA[<p>All you need for transparent:<br />
iptables -t nat -I PREROUTING -i eth0 -p tcp --dport 80 -j DNAT --to 10.0.0.3:3128<br />
Remember to change the interface &amp; IP/port.</p>
<p>with squid v2.7 you just need to add &#8220;transparent&#8221; to http_port.</p>
<p>squid.conf:<br />
# Squid normally listens to port 3128<br />
http_port 3128 transparent</p>
<p>Working on lucid.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: KenWeiLL</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-1#comment-29432</link>
		<dc:creator>KenWeiLL</dc:creator>
		<pubDate>Tue, 04 May 2010 06:35:37 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-29432</guid>
		<description>I have 2 interfaces:
eth0 = connected to WAN (with internet connection)
eth1 = LAN (192.168.0.1)

Setting up proxy server. All windows box in LAN have proxy settings to 192.168.0.1:3128

My iptables rule to share internet connection is:
iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE

if i want to do transparent proxy? do i have to edit that rule? or add a new rule(without touching my current iptables rule)?</description>
		<content:encoded><![CDATA[<p>I have 2 interfaces:<br />
eth0 = connected to WAN (with internet connection)<br />
eth1 = LAN (192.168.0.1)</p>
<p>Setting up proxy server. All windows box in LAN have proxy settings to 192.168.0.1:3128</p>
<p>My iptables rule to share internet connection is:<br />
iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE</p>
<p>if i want to do transparent proxy? do i have to edit that rule? or add a new rule(without touching my current iptables rule)?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Advanced</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-1#comment-23075</link>
		<dc:creator>Advanced</dc:creator>
		<pubDate>Fri, 19 Feb 2010 03:44:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-23075</guid>
		<description>Hi, 
I have about three websites on one machine, 
I am using a router, all my local network is behind a router, but because 3 websites on one machine I realised that it was a bit too much for the machine.

I then decided to use a proxy server on one machine, and use three other machine each will hold it&#039;s own website, domain name, and database.

meaning serving three different websites from three different machines on the same network.

My confusion is this:
I hear that the proxy server listens on port 3128
Now let&#039;s say I have websites A, B, C on M1, M2, M3

How can serve these three websites with the proxy server??
people can&#039;t type http://mydomain-name.com:3128 every-time, I am sure we can configure it so people will access the website by simply typing http://www.mysite.com etc... any ideas please?

Thank you guys</description>
		<content:encoded><![CDATA[<p>Hi,<br />
I have about three websites on one machine,<br />
I am using a router, all my local network is behind a router, but because 3 websites on one machine I realised that it was a bit too much for the machine.</p>
<p>I then decided to use a proxy server on one machine, and use three other machine each will hold it&#8217;s own website, domain name, and database.</p>
<p>meaning serving three different websites from three different machines on the same network.</p>
<p>My confusion is this:<br />
I hear that the proxy server listens on port 3128<br />
Now let&#8217;s say I have websites A, B, C on M1, M2, M3</p>
<p>How can serve these three websites with the proxy server??<br />
people can&#8217;t type <a href="http://mydomain-name.com:3128" rel="nofollow">http://mydomain-name.com:3128</a> every-time, I am sure we can configure it so people will access the website by simply typing <a href="http://www.mysite.com" rel="nofollow">http://www.mysite.com</a> etc&#8230; any ideas please?</p>
<p>Thank you guys</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: win naing myint</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-1#comment-22709</link>
		<dc:creator>win naing myint</dc:creator>
		<pubDate>Sun, 14 Feb 2010 03:16:23 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-22709</guid>
		<description>this following command are not working in my PC. so please give me some commmand

iptables -t nat -A PREROUTING -i eth1 -p tcp -m tcp --dport 80 -j DNAT --to-destination 192.168.10.1:5050
iptables -t nat -A PREROUTING -i eth0 -p tcp -m tcp --dport 80 -j REDIRECT --to-ports 5050</description>
		<content:encoded><![CDATA[<p>this following command are not working in my PC. so please give me some commmand</p>
<p>iptables -t nat -A PREROUTING -i eth1 -p tcp -m tcp --dport 80 -j DNAT --to-destination 192.168.10.1:5050<br />
iptables -t nat -A PREROUTING -i eth0 -p tcp -m tcp --dport 80 -j REDIRECT --to-ports 5050</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Boomerang</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-1#comment-21530</link>
		<dc:creator>Boomerang</dc:creator>
		<pubDate>Fri, 29 Jan 2010 10:09:50 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-21530</guid>
		<description>Thanks for the comment Shawn, I have tried a few things since posting my query including installing a Windows Server 2003 version but I couldn&#039;t make it work. I am very interested in getting more info from you on this subject as I have not had any replies or found a solution to my problem. Could I contact you through another way eg email direct? I will post my email up if you would like me to. I look forward to your reply. Boomer</description>
		<content:encoded><![CDATA[<p>Thanks for the comment Shawn, I have tried a few things since posting my query including installing a Windows Server 2003 version but I couldn&#8217;t make it work. I am very interested in getting more info from you on this subject as I have not had any replies or found a solution to my problem. Could I contact you through another way eg email direct? I will post my email up if you would like me to. I look forward to your reply. Boomer</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Shawn</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-1#comment-21433</link>
		<dc:creator>Shawn</dc:creator>
		<pubDate>Wed, 27 Jan 2010 21:27:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-21433</guid>
		<description>Yes, squid can be a caching proxy for clients on a LAN, using a single NIC. We&#039;ve used this setup for over 10 years for our 600 users, and it works very well. It authenticates to AD for each request, provides all http/https traffic to our 1Gb internet link. With more wireless devices coming online, we are looking to replace it with a transparent proxy to avoid the need for client setup, although we will lose the auth capability.</description>
		<content:encoded><![CDATA[<p>Yes, squid can be a caching proxy for clients on a LAN, using a single NIC. We&#8217;ve used this setup for over 10 years for our 600 users, and it works very well. It authenticates to AD for each request, provides all http/https traffic to our 1Gb internet link. With more wireless devices coming online, we are looking to replace it with a transparent proxy to avoid the need for client setup, although we will lose the auth capability.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Boomerang</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-1#comment-19087</link>
		<dc:creator>Boomerang</dc:creator>
		<pubDate>Thu, 17 Dec 2009 08:43:49 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-19087</guid>
		<description>Can Squid be used as a cahing proxy (or similar)on a Ubuntu machine with only one Network card? In other words simply sitting in amongst all the other clients on the LAN side of the Router? If so, can some one point me to any info on this please. Ta, Boomer.</description>
		<content:encoded><![CDATA[<p>Can Squid be used as a cahing proxy (or similar)on a Ubuntu machine with only one Network card? In other words simply sitting in amongst all the other clients on the LAN side of the Router? If so, can some one point me to any info on this please. Ta, Boomer.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Peter</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-1#comment-12941</link>
		<dc:creator>Peter</dc:creator>
		<pubDate>Thu, 10 Sep 2009 16:29:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-12941</guid>
		<description>Thank you
 # so good even I could {eventually} follow the instructions.
Pity I can’t get it to NAT all protocols and log them.</description>
		<content:encoded><![CDATA[<p>Thank you<br />
 # so good even I could {eventually} follow the instructions.<br />
Pity I can’t get it to NAT all protocols and log them.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Baghathsingh</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-1#comment-11026</link>
		<dc:creator>Baghathsingh</dc:creator>
		<pubDate>Sat, 11 Jul 2009 07:59:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-11026</guid>
		<description>HI

   i want to configure the squid proxy server.
now i tried to install the squid in my server. its installed. i have made the changes but its not working properly.below i have mentioned the error message. help me

root@srv1:~# /etc/init.d/squid restart
 * Restarting Squid HTTP proxy squid                           *  Waiting...                                                 * ...                                                         * ...                                                         * ...                                                         * ...                                                         * ...                                                         * ...                                                 [ OK ]
2009/07/11 13:28:03&#124; decode_addr: Invalid IP address &#039;80&#039;
2009/07/11 13:28:03&#124; squid.conf line 18: acl www_ports src 80 443
2009/07/11 13:28:03&#124; aclParseIpData: Ignoring invalid IP acl entry: unknown first address &#039;80&#039;
2009/07/11 13:28:03&#124; decode_addr: Invalid IP address &#039;443&#039;
2009/07/11 13:28:03&#124; squid.conf line 18: acl www_ports src 80 443
2009/07/11 13:28:03&#124; aclParseIpData: Ignoring invalid IP acl entry: unknown first address &#039;443&#039;
2009/07/11 13:28:03&#124; aclParseAclLine: WARNING: empty ACL: acl www_ports src 80 443
2009/07/11 13:28:03&#124; aclParseIpData: WARNING: Netmask masks away part of the specified IP in &#039;192.168.1.2/192.168.1.253&#039;
2009/07/11 13:28:03&#124; parseConfigFile: squid.conf:33 unrecognized: &#039;HTTP&#039;
2009/07/11 13:28:03&#124; aclParseIpData: WARNING: Netmask masks away part of the specified IP in &#039;192.168.1.2/192.168.1.253&#039;
2009/07/11 13:28:03&#124; parseConfigFile: squid.conf:38 unrecognized: &#039;FTP&#039;
2009/07/11 13:28:03&#124; aclParseIpData: WARNING: Netmask masks away part of the specified IP in &#039;192.168.1.2/192.168.1.25&#039;
2009/07/11 13:28:03&#124; WARNING: &#039;192.168.1.0/192.168.1.253&#039; is a subnetwork of &#039;0.0.0.0/0.0.0.0&#039;
2009/07/11 13:28:03&#124; WARNING: because of this &#039;0.0.0.0/0.0.0.0&#039; is ignored to keep splay tree searching predictable
2009/07/11 13:28:03&#124; WARNING: You should probably remove &#039;192.168.1.0/192.168.1.253&#039; from the ACL named &#039;all&#039;
2009/07/11 13:28:03&#124; WARNING: &#039;192.168.1.0/255.255.255.0&#039; is a subnetwork of &#039;192.168.1.0/255.255.255.0&#039;
2009/07/11 13:28:03&#124; WARNING: because of this &#039;192.168.1.0/255.255.255.0&#039; is ignored to keep splay tree searching predictable
2009/07/11 13:28:03&#124; WARNING: You should probably remove &#039;192.168.1.0/255.255.255.0&#039; from the ACL named &#039;internal_network&#039;
2009/07/11 13:28:03&#124; WARNING: &#039;127.0.0.1&#039; is a subnetwork of &#039;127.0.0.1&#039;
2009/07/11 13:28:03&#124; WARNING: because of this &#039;127.0.0.1&#039; is ignored to keep splay tree searching predictable
2009/07/11 13:28:03&#124; WARNING: You should probably remove &#039;127.0.0.1&#039; from the ACL named &#039;localhost&#039;
                                                       [ OK ]</description>
		<content:encoded><![CDATA[<p>HI</p>
<p>   i want to configure the squid proxy server.<br />
now i tried to install the squid in my server. its installed. i have made the changes but its not working properly.below i have mentioned the error message. help me</p>
<p>root@srv1:~# /etc/init.d/squid restart<br />
 * Restarting Squid HTTP proxy squid                           *  Waiting&#8230;                                                 * &#8230;                                                         * &#8230;                                                         * &#8230;                                                         * &#8230;                                                         * &#8230;                                                         * &#8230;                                                 [ OK ]<br />
2009/07/11 13:28:03| decode_addr: Invalid IP address &#8217;80&#8242;<br />
2009/07/11 13:28:03| squid.conf line 18: acl www_ports src 80 443<br />
2009/07/11 13:28:03| aclParseIpData: Ignoring invalid IP acl entry: unknown first address &#8217;80&#8242;<br />
2009/07/11 13:28:03| decode_addr: Invalid IP address &#8217;443&#8242;<br />
2009/07/11 13:28:03| squid.conf line 18: acl www_ports src 80 443<br />
2009/07/11 13:28:03| aclParseIpData: Ignoring invalid IP acl entry: unknown first address &#8217;443&#8242;<br />
2009/07/11 13:28:03| aclParseAclLine: WARNING: empty ACL: acl www_ports src 80 443<br />
2009/07/11 13:28:03| aclParseIpData: WARNING: Netmask masks away part of the specified IP in &#8217;192.168.1.2/192.168.1.253&#8242;<br />
2009/07/11 13:28:03| parseConfigFile: squid.conf:33 unrecognized: &#8216;HTTP&#8217;<br />
2009/07/11 13:28:03| aclParseIpData: WARNING: Netmask masks away part of the specified IP in &#8217;192.168.1.2/192.168.1.253&#8242;<br />
2009/07/11 13:28:03| parseConfigFile: squid.conf:38 unrecognized: &#8216;FTP&#8217;<br />
2009/07/11 13:28:03| aclParseIpData: WARNING: Netmask masks away part of the specified IP in &#8217;192.168.1.2/192.168.1.25&#8242;<br />
2009/07/11 13:28:03| WARNING: &#8217;192.168.1.0/192.168.1.253&#8242; is a subnetwork of &#8217;0.0.0.0/0.0.0.0&#8242;<br />
2009/07/11 13:28:03| WARNING: because of this &#8217;0.0.0.0/0.0.0.0&#8242; is ignored to keep splay tree searching predictable<br />
2009/07/11 13:28:03| WARNING: You should probably remove &#8217;192.168.1.0/192.168.1.253&#8242; from the ACL named &#8216;all&#8217;<br />
2009/07/11 13:28:03| WARNING: &#8217;192.168.1.0/255.255.255.0&#8242; is a subnetwork of &#8217;192.168.1.0/255.255.255.0&#8242;<br />
2009/07/11 13:28:03| WARNING: because of this &#8217;192.168.1.0/255.255.255.0&#8242; is ignored to keep splay tree searching predictable<br />
2009/07/11 13:28:03| WARNING: You should probably remove &#8217;192.168.1.0/255.255.255.0&#8242; from the ACL named &#8216;internal_network&#8217;<br />
2009/07/11 13:28:03| WARNING: &#8217;127.0.0.1&#8242; is a subnetwork of &#8217;127.0.0.1&#8242;<br />
2009/07/11 13:28:03| WARNING: because of this &#8217;127.0.0.1&#8242; is ignored to keep splay tree searching predictable<br />
2009/07/11 13:28:03| WARNING: You should probably remove &#8217;127.0.0.1&#8242; from the ACL named &#8216;localhost&#8217;<br />
                                                       [ OK ]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: achulxp</title>
		<link>http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html/comment-page-1#comment-6410</link>
		<dc:creator>achulxp</dc:creator>
		<pubDate>Sat, 07 Mar 2009 00:35:33 +0000</pubDate>
		<guid isPermaLink="false">http://www.ubuntugeek.com/how-to-setup-transparent-squid-proxy-server-in-ubuntu.html#comment-6410</guid>
		<description>to--&gt;&gt;&gt;@iniabasi 

if.you.really.use.squid.version.2,6.x.above
try.this one...add.--------&gt;&gt;&quot;transparent&quot; beside your http_port
##########################################
# Squid normally listens to port 3128
http_port 3128 transparent
##########################################


and.dont.use.this.script
##########################################
httpd_accel_host virtual
httpd_accel_port 80
httpd_accel_with_proxy on
httpd_accel_uses_host_header on
##########################################

coz.i.knew.that.work.only.on.squid.ver.2.5.x.x</description>
		<content:encoded><![CDATA[<p>to--&gt;&gt;&gt;@iniabasi </p>
<p>if.you.really.use.squid.version.2,6.x.above<br />
try.this one&#8230;add.--------&gt;&gt;&#8221;transparent&#8221; beside your http_port<br />
##########################################<br />
# Squid normally listens to port 3128<br />
http_port 3128 transparent<br />
##########################################</p>
<p>and.dont.use.this.script<br />
##########################################<br />
httpd_accel_host virtual<br />
httpd_accel_port 80<br />
httpd_accel_with_proxy on<br />
httpd_accel_uses_host_header on<br />
##########################################</p>
<p>coz.i.knew.that.work.only.on.squid.ver.2.5.x.x</p>
]]></content:encoded>
	</item>
</channel>
</rss>

