Rules for squid via ssh tunnel

srg srgqwerty at telefonica.net
Tue Aug 2 03:19:04 CEST 2005


change --dport 3128 to --dport 22

Gus Collins wrote:

> I believe this is suppose to be easily done, but I sure can't seem to 
> make it work.  Here's my setup.
>
> I setup a squid proxy on my firewall machine to allow http traffic 
> from my wlan to be encrypted through a ssh tunnel (i.e., ssh -L 
> 3128:squid_server:3128 ...).  Worked great until I added iptables to 
> that setup.
>
> My question is: what rules do I need on the server to allow my local 
> wlan to access the web via the proxy running on the firewall?
>
> I tried the rule below w/o success:
>
> iptables -A INPUT -p tcp --dport 3128 -m state --state 
> NEW,ESTABLISHED,RELATED
>
> On the client, I have the default output policy of accept, so it 
> should be ok?
>
> Any help greatly appreciated!
>
> Gus Collins
>
>




More information about the netfilter mailing list