Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 24 Jul 1997 15:42:24 +1000 (EST)
From:      "Daniel O'Callaghan" <danny@panda.hilink.com.au>
To:        Dan Janowski <danj@3skel.com>
Cc:        hackers <freebsd-hackers@FreeBSD.ORG>
Subject:   Re: ipfw divert, transparent proxy
Message-ID:  <Pine.BSF.3.91.970724154016.869m-100000@panda.hilink.com.au>
In-Reply-To: <33D6E265.46DEFC7@3skel.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Thu, 24 Jul 1997, Dan Janowski wrote:

> I am replacing an old TIS firewall that has one very
> interesting feature that I am looking to provide with my
> FreeBSD 2.2.2 box. It is this:
> 
> They use ipfs which has the capability of "transparently" doing
> packet re-rerouting and, thereby, proxy transparently.

It is a nice feature, and divert sockets is the way to do it in FreeBSD, 
but it has not been done yet.  <peter@clari.net.au> got half-way through 
a transparent http proxy using divert sockets, but did a tcpdump analysis 
of his customers' traffic and found that < 1% were not using the proxy, 
so he did not bother finishing the code (too busy on paying work).

Danny



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.3.91.970724154016.869m-100000>