Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 12 Sep 2004 19:14:56 +0530
From:      Subhro <subhro.kar@gmail.com>
To:        JP <planoprez@yahoo.com>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: Proxy/Firewall Question
Message-ID:  <b2807d0404091206441808bcc4@mail.gmail.com>
In-Reply-To: <20040912073141.46863.qmail@web40104.mail.yahoo.com>
References:  <2301747004091123051fa978f8@mail.gmail.com> <20040912073141.46863.qmail@web40104.mail.yahoo.com>

next in thread | previous in thread | raw e-mail | index | archive | help
That is expected. After all that is all about proxy. When NAT is
enabled then you can ping outside world, that is fine. If you want to
provide transparent access to the clients, then you need to enable
NAT. You can control the type of access provided (browsing, IRC, IMs,
etc) by blocking(opening) the required ports from the firewall.
Alternatively, as you say...PROXY, you wont be able to ping outside
and the clients have to explicitly configure their softwares to use
the proxy running on the BSD Box.

Regards
S.


On Sun, 12 Sep 2004 00:31:41 -0700 (PDT), JP <planoprez@yahoo.com> wrote:
> Thank you, I am using the standard firewall and
> firewall script that came with FreeBSD.  By default,
> everything on the firewall is set to open.  I
> attempting what you suggested (disabling nat) and I
> could no longer get ou to see the net.  I could ping
> the FreeBSD box just fine, but nothing beyond that.
> 
> Suggestions?
> 
> 
> --- Shantanoo <shantanoo@gmail.com> wrote:
> 
> > On Sat, 11 Sep 2004 22:48:50 -0700 (PDT), JP
> > <planoprez@yahoo.com> wrote:
> > > Hello Gang,
> > >
> > > I am a novice at this so please bear with me.  I
> > have
> > > successfully configured Squid, Nylon and my
> > firewall,
> > > my question is how do I disable any net traffic
> > that
> > > is not going through the proxy?  It would be best
> > for
> > > all LAN traffic (telnet, ftp, chat, socks, etc) to
> > > pass through the proxy otherwise get dropped.
> > >
> > > I would imagine its a Windows configuration thing
> > but
> > > I am not for certain.
> > >
> > > Thanks,
> > > JP
> > >
> > disable NATting.
> > using firewall allow connections to ports on which
> > squid and/or nylon
> > is listening.
> >
> > BTW, which firewall are you using?
> >
> > Shantanoo
> >
> 
> _______________________________
> Do you Yahoo!?
> Express yourself with Y! Messenger! Free. Download now.
> http://messenger.yahoo.com
> 
> 
> _______________________________________________
> freebsd-questions@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org"
> 



-- 
Subhro Sankha Kar
School of Information Technology
Block AQ-13/1 Sector V
ZIP 700091
India



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?b2807d0404091206441808bcc4>