Ethernet Bridge development
 help / color / mirror / Atom feed
* [Bridge] transparent bridge and proxies
@ 2006-08-24 17:31 Julian Lyndon-Smith
  2006-08-24 18:20 ` Marek Kierdelewicz
                   ` (3 more replies)
  0 siblings, 4 replies; 9+ messages in thread
From: Julian Lyndon-Smith @ 2006-08-24 17:31 UTC (permalink / raw)
  To: bridge

I want to be able to install a box that is a transparent bridge, but 
that is also running a transparent proxy, but with a twist ..

i am a newbie in all things linux, so bear with me :)

So far I have managed to install centos 4.3, and following various 
guides on the net, created a bridge between eth1 (connected to lan) and 
eth0 (connected to router). That works great.

I also managed to install squid, get it running transparently and added 
a rule to iptables to make all that work just fine. So now, all my 
clients attached to the lan run through the squid proxy without them 
knowing.

Now, for the twist. For development and testing, I assigned an ip 
address and gateway to the bridge. I need to be able for a "non-it" 
person to install this box without having to set it up at all , so it 
cannot have an ip address assigned, as it *may* be in use somewhere else 
on the lan or router.

So, I changed the ip address to 0.0.0.0. Everything except squid still 
worked. I presume that's because it does not know how to route the data 
to get stuff.

Can I add a rule to iptables or something to say "anything that's come 
from eth1 into the local box, after processing send to eth0" and 
vice-versa ?

Julian.

^ permalink raw reply	[flat|nested] 9+ messages in thread
* Re: [Bridge] transparent bridge and proxies
@ 2006-08-25 10:53 Skept
  0 siblings, 0 replies; 9+ messages in thread
From: Skept @ 2006-08-25 10:53 UTC (permalink / raw)
  To: bridge

Julian,

I did not understand what you meant by this paragraph.

"Now, for the twist. For development and testing, I assigned an ip
address and gateway to the bridge. I need to be able for a "non-it"
person to install this box without having to set it up at all , so it
cannot have an ip address assigned, as it *may* be in use somewhere else
on the lan or router."

Did your bridge + transparent proxy work without you adding an ip[\and
route] to the bridge interface? I mean, before the "twist".

Skept

^ permalink raw reply	[flat|nested] 9+ messages in thread

end of thread, other threads:[~2006-08-25 10:53 UTC | newest]

Thread overview: 9+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2006-08-24 17:31 [Bridge] transparent bridge and proxies Julian Lyndon-Smith
2006-08-24 18:20 ` Marek Kierdelewicz
2006-08-24 20:17 ` Benny Amorsen
2006-08-24 22:42   ` Etienne Pretorius
2006-08-24 20:17 ` Melissa Meyer
2006-08-24 22:05   ` Julian Lyndon-Smith
2006-08-24 22:34     ` Melissa Meyer
2006-08-24 22:20 ` Marek Kierdelewicz
  -- strict thread matches above, loose matches on Subject: below --
2006-08-25 10:53 Skept

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox