sön 2006-07-30 klockan 01:47 -0700 skrev Amir Ali Eshghi:
> as a transparent proxy this shaping does not work. My
> guess is that dansguardian somehow modifies TOS
> headers.
dansguardian is a proxy, which means the connections
client<->dansguardian is completely different from the connection
dansguardian<->squid. So yes, ToS/DS marks set by Squid won't be
reflected into the client connection as this is only set on the
connection dansguardian<->squid.
To have ToS/DS marks on the client<->dansguardian you need to extend
Dansguardian to reflect the received ToS/DS key onto the client
connection. But unfortunately I know of no method whereby an application
can get the ToS/DS key from a TCP connection so it's kind of hard to
do..
Regards
Henrik
This archive was generated by hypermail pre-2.1.9 : Tue Aug 01 2006 - 12:00:02 MDT