Rules for squid via ssh tunnel

srg srgqwerty at
Tue Aug 2 03:19:04 CEST 2005

change --dport 3128 to --dport 22

Gus Collins wrote:

> I believe this is suppose to be easily done, but I sure can't seem to 
> make it work.  Here's my setup.
> I setup a squid proxy on my firewall machine to allow http traffic 
> from my wlan to be encrypted through a ssh tunnel (i.e., ssh -L 
> 3128:squid_server:3128 ...).  Worked great until I added iptables to 
> that setup.
> My question is: what rules do I need on the server to allow my local 
> wlan to access the web via the proxy running on the firewall?
> I tried the rule below w/o success:
> iptables -A INPUT -p tcp --dport 3128 -m state --state 
> On the client, I have the default output policy of accept, so it 
> should be ok?
> Any help greatly appreciated!
> Gus Collins

