cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
821
Views
0
Helpful
1
Replies

Iptables redirection to ASA configuration

davcommunay
Community Member

Dear All,

I would like to do something verys imple with IPTABLES but i canno't find any "simple" way to achieve...

iptables -t nat -A PREROUTING -i eth0 -s 10.0.0.0/24 -p tcp --dport 80 -j DNAT --to squid-box:3128

The idea is to redirect any connection to any host which try to connect to port tcp 80 being redirected to a server called squid-box on port 3128.

I have seen that for proxy squid implementation with ASA i had to use wccp but for my personnal understanding i would like to know if that kind of operations are possible and how ?

Please let me know.

Best regards,

David

1 Reply 1

mirober2
Cisco Employee
Cisco Employee

Hi David,

You are correct, if you want to redirect traffic from an ASA to a Squid proxy, you need to use WCCP. Config examples can be found here:

http://www.cisco.com/en/US/docs/security/asa/asa84/configuration/guide/access_wccp.html

Hope that helps.

-Mike

Review Cisco Networking for a $25 gift card