Jump to content

squid проблемы с tproxy

У меня нистроет TPROXY в сквирд до следующей инструкции:

ip -f inet rule add fwmark 1 lookup 100
ip -f inet route add local default dev eth0 table 100

iptables -t mangle -N DIVERT
iptables -t mangle -A DIVERT -j MARK --set-mark 1
iptables -t mangle -A DIVERT -j ACCEPT

iptables  -t mangle -A PREROUTING -p tcp -m socket -j DIVERT

iptables  -t mangle -A PREROUTING -p tcp --dport 80 -j TPROXY --tproxy-mark 0x1/0x1 --on-port 3129



http_port 3130
http_port 3128 tproxy disable-pmtu-discovery=off
http_port intercept
acl localnet src
acl localhost src
acl bad_url url_regex "/opt/zapret_gov.txt"
http_access deny bad_url

http_access allow localnet
http_access allow localhost
http_access deny all

deny_info bad_url


cast [user]val[/user]


Импортированно из:https://www.linux.org.ru/forum/admin/11739874

Share this post

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
Sign in to follow this