Proxy IP to real IP conversion

Posted on 2011-05-03
Last Modified: 2012-05-11
I have a firewall Watchguard XTM-530 in the perimeter of Internet. The firewall will serve an entire building. The firewall has a content filter enabled, so the firewall must known who is the user sending a request to the Internet.

The clients computers have their own default gateway that connect to an MPLS, so the firewall can not be default gateway. I've installed a Squid proxy server but I can not see the real IP Addresses of the computers.

How can I solve it?
Question by:JOGUMI
    LVL 5

    Accepted Solution

    Can your default gateway do WCCP? Even a lowly Cisco 2600 is capable of doing WCCP. This would allow you to do transparent redirection which would send the real IP address to the firewall.
    LVL 10

    Expert Comment

    If you have placed your Squid Proxy (i fell that u might have) before the firewall for traffic going out to internet, you will not see actual users IP in firewall as all users connect to proxy and then proxy in-turn connects to internet to fetch the web page.

    You can make use of a reporting tool/software for the Squid proxy to get you the user activity reports.


    Else try one from the below link

    Featured Post

    Top 6 Sources for Identifying Threat Actor TTPs

    Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

    Join & Write a Comment

    I recently had the displeasure of buying a new firewall at one of the buildings I play Sys Admin at. I had to get a better firewall than the cheap one that I had there since I was reconnecting the main office to the satellite office via point-to-poi…
    I found an issue or “bug” in the SonicOS platform (the firmware controlling SonicWALL security appliances) that has to do with renaming Default Service Objects, which then causes a portion of the system to become uncontrollable and unstable. BACK…
    Here's a very brief overview of the methods PRTG Network Monitor ( offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…
    This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor ( If you're looking for how to monitor bandwidth using netflow or packet s…

    733 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    20 Experts available now in Live!

    Get 1:1 Help Now