Re: [squid-users] room for improvement in my proxy architecture

From: Gaylord Van Brocklin <vanbrockling@dont-contact.us>
Date: Tue, 26 Oct 2004 19:18:37 -0700

The Squid -> AV server will be bypassing the firewall, but I guess I
could throw another NAT box outside the AV servers.

Is this a common solution to this problem?

-gvb

On Oct 26, 2004, at 3:08 PM, Henrik Nordstrom wrote:

> On Tue, 26 Oct 2004, Gaylord Van Brocklin wrote:
>
>> One problem that I have had in the past with load balancing between
>> the two AV servers is that the destination web servers see the
>> traffic coming from two different IP addresses so some session based
>> websites (things like Cox Webmail) don't work properly.
>
> One simple solution to this is to place a NAT gateway infront of the
> proxy servers, natting all requests to the same source IP regardless
> which proxy was used.
>
> It is quite likely your existing network already is NAT capable, just
> waiting for you to start using the features of your network equipment.
>
> Regards
> Henrik
>
Received on Wed Oct 27 2004 - 11:19:51 MDT

This archive was generated by hypermail pre-2.1.9 : Mon Nov 01 2004 - 12:00:02 MST