cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
26308
Views
10
Helpful
18
Replies

Redirect http and https traffic from ASA 5520 via squid

ribin.jones
Level 1
Level 1

Hi,

Right now, in my network there is no proxy server and all users go straight through the ASA to access internet. I would like to put a squid with dansguardian (for web filtering). Can someone guide me the steps in getting all http and https traffic from ASA go via my squid? Any help greatly appreciated.

Thanks,

Ribin

18 Replies 18

It worked great ... Thank you Santhosh and others.....

- Ribin

Santhosh,

A clarification..What does the first line of below acl does for proxy redirect? I hope it denies all traffic except 80 and redirects 80 traffic to proxy ip?

access-list 111 deny   tcp any any neq www
access-list 111 deny   tcp host 192.168.40.11 any

access-list 111 permit tcp any any

192.168.40.11 is my proxy ip.

Hey Ribin

Please follow below steps to redirect http traffic to squid..

http://www.vmwareandme.com/2013/10/guide-how-to-redirect-http-traffic-from_23.html

Yes but you apply the route map on your L3 switch, NOT on the ASA.

ASA has not the set ip next hop feature, route maps are only used in routing protocol (RIP, OSPF, etc) redistribution!

Review Cisco Networking for a $25 gift card