netdev
[Top] [All Lists]

TProxy, 2.4 Kernel and NetFilter

To: netfilter-devel@xxxxxxxxxxxxxxxxxxx
Subject: TProxy, 2.4 Kernel and NetFilter
From: Jambunathan Kalyanasundaram <k_jambunathan@xxxxxxxxxxx>
Date: Mon, 9 Feb 2004 07:56:44 +0000 (GMT)
Cc: netdev@xxxxxxxxxxx
Sender: netdev-bounce@xxxxxxxxxxx
( Sorry for posting in two mailing lists at the same
time )

I would like to implement Transparent HTTP Proxy  and
I have scoured through your archives for the related
threads. Can someone confirm that my following
understanding is still valid as of date considering
the latest Linux kernel and Netfilter source tree.

1) For packet interception from browser side, the
standard way is to use REDIRECT target of Netfilter.

2) But if I am not really interested in the overheads
imposed by the NetFilter, the only option is to patch
the Linux kernel with Balazs Scheidler's patch. 

If I don't like something as heavyweight as Netfilter
and something that is as  "non standard" as patching
the kernel, are there any ways out ? 

Also are there any existing NetFilter modules that
work on a standard, unpatched kerenel that allow proxy
to talk to the web server as though it's the web
browser ( source address spoofing ) ?

Regards,
Jambunathan K.




        
        
                
___________________________________________________________
BT Yahoo! Broadband - Free modem offer, sign up online today and save £80 
http://btyahoo.yahoo.co.uk

<Prev in Thread] Current Thread [Next in Thread>