Still celebrating National IT Professionals Day with 3 months of free Premium Membership. Use Code ITDAY17

x
?
Solved

Adding squid to a hotspot setup

Posted on 2014-01-27
1
Medium Priority
?
1,411 Views
Last Modified: 2014-02-03
Hi
 
I have a client who is situated too far way from the
closest ADSL DSLAM. There isn't any 3G or 4G coverage
either. His ADSL bandwidth is: 1.1Mbps/0.6Mbps.

I suggested we take the satellite route and they are now
using NordNet/TooWay (Orange) 12Mbps/4Mbps.

Unfortunately the latency and frequent link disruptions
are not making this option very attractive to their clients.

I am contemplating adding Squid to a small Debian box which
is already collecting log data (MySQL).

Because of the limited number of connectors on the Mikrotik
RB450, I have had to connect this linux box as shown below
squidThough on different subnets the linux box and Zyxel can see
each other.

I have set the linux box's default gateway as the RB450
(192.168.150.5).

From what I understand, I must enable the Web proxy on the
RB450 and specify the linux box as 'parent' proxy.

I also read somewhere that I could use the NAT masquerade
rule on the RB450 to redirect http traffic to the squid.

I guess I'll have to setup a mangle rule to redirect the returning
http squid traffic in order to have it sent via the SAT link.

Any ideas, suggestions caveats ?

thanks

yann
0
Comment
Question by:Yann Shukor
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 

Accepted Solution

by:
Yann Shukor earned 0 total points
ID: 39830095
Answered on the Mikrotik forum by:
aacable
you can redirect http traffic from your rb450 box to squid using dst-nat rule,
squid can be configured with single lan interface too, just define default gateway of Squid pointing to Mikrotik. and in mikrotik create a NAT rule rule to allow traffic from the squid to be masqueraded.
and kilrathi
I have an external proxy for my users as well. In this post I listed a few things i manged to do in order to redirect my users to the proxy server transparently. You do not have to use the build in web proxy on the mikrotik device. In my case I didn't want to spend the extra CPU power on my mikrotik for proxy services plus the redirect to a parent proxy. I just tag all the port 80 traffic with mangle and route it directly to the external squid proxy server (mikrotik web proxy is disabled).
0

Featured Post

Moving data to the cloud? Find out if you’re ready

Before moving to the cloud, it is important to carefully define your db needs, plan for the migration & understand prod. environment. This wp explains how to define what you need from a cloud provider, plan for the migration & what putting a cloud solution into practice entails.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Every server (virtual or physical) needs a console: and the console can be provided through hardware directly connected, software for remote connections, local connections, through a KVM, etc. This document explains the different types of consol…
I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses

715 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question