Page 1 of 1

Squid 3.0 Transparent Proxy Configuration Issue

Posted: Thu Jun 24, 2010 2:54 pm
by rmuhammadali
Dear All,
Here is my squid.conf configuration file. when i use it as transparent then the error occurs as page cannot be displayerd

acl manager proto cache_object
acl localhost src 127.0.0.1/32
acl to_localhost dst 127.0.0.0/8 0.0.0.0/32
acl localnet src 192.168.4.0/24
acl SSL_ports port 443
acl Safe_ports port 80 # http
acl Safe_ports port 21 # ftp
acl Safe_ports port 443 # https
acl CONNECT method CONNECT
http_access allow manager localhost
http_access deny manager
http_access deny !Safe_ports
http_access deny CONNECT !SSL_ports
http_access allow localnet
http_access deny all
icp_access allow localnet
icp_access deny all
htcp_access allow localnet
htcp_access deny all
http_port 3128 transparent
hierarchy_stoplist cgi-bin ?
access_log /usr/local/squid/var/logs/access.log squid
refresh_pattern ^ftp: 1440 20% 10080
refresh_pattern ^gopher: 1440 0% 1440
refresh_pattern -i (/cgi-bin/|\?) 0 0% 0
refresh_pattern . 0 20% 4320
visible_hostname cent.localdomain.local
icp_port 3130
coredump_dir /usr/local/squid/var/cache


Please help, waiting for response.

Regards RMA

Posted: Thu Jun 24, 2010 9:07 pm
by lambda
does the error occur if they go to the ip address as well? or just websites?

try

http://202.59.80.52/

what do you see?

can the clients do dns resolution properly?

please use something other than internet explorer for testing -- something that shows you the real error.

Posted: Fri Jun 25, 2010 11:00 am
by rmuhammadali
Yes Dear,
the problem is same as you mentioned. dns resolution problem occurs.

Regards
RMA

Posted: Sun Jun 27, 2010 3:03 am
by lambda
configure the client systems with a valid dns server. if nothing else, use this dns server: 8.8.8.8.

Posted: Tue Jun 29, 2010 4:54 pm
by Kamran.Ahmed
one more could be use 4.2.2.2

Posted: Tue Jun 29, 2010 11:22 pm
by lambda
sure, if you trust verizon with your data.