cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
338
Views
3
Helpful
1
Replies

Redirection www to transparent proxy in DMZ

jsilverston
Level 1
Level 1

Hi,

I want to make a transparent redirection of www traffic to proxy (squid) in dmz to control access to internet.

lan---switch 3750----pix 515e----Internet

(ios 11.2 smi) |

|

proxy-(dmz)

(v6.3 limited)

I've search information on web and found this command :

route-map proxy-redirect permit 10

match ip address 110

set ip next-hop 'proxy's ip address'

access-list 110 deny tcp any any neq www

access-list 110 deny tcp host 'proxy's ip address' any

access-list 110 permit tcp any any

ip policy route-map proxy-redirect

but the pix doesn't understand the ip policy command

and the 3750 neither accept the command.

Is it on the 3750 or on the pix that I program the redirection ?

What command can do it ?

Thank you for your help.

1 Reply 1

pedroquiroga
Level 1
Level 1

The Ip policy comand should be configured under the layer 3 interface where the traffic is coming from. If you have the 3750 woring lin layer 3 you can configured there.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: