R: Transparent proxy

From: Carlo Granisso <c.granisso#dnshosting.it>
Date: Tue, 12 May 2009 10:20:44 +0200

 

-----Messaggio originale-----
Da: John Lauro [mailto:john.lauro#covenanteyes.com] Inviato: luned́ 11 maggio 2009 18.30
A: 'Carlo Granisso'; haproxy#formilux.org Oggetto: RE: Transparent proxy

>>
>> And no request were found into webserver (netstat -ntap | grep :80)
>>
>> After few seconds: "503 Service Unavailable No server is available to
>> handle this request. "
>>

> Can you ping your webserver from the haproxy box ok?

Yes

> What does the following show from your webserver:
> netstat -rn
> Does it show the private IP address of your haproxy box as the gateway for
> 0.0.0.0?

Here's the output:

Kernel IP routing table
Destination Gateway Genmask Flags MSS Window irtt Iface
0.0.0.0 192.168.0.56 255.255.255.255 UGH 0 0 0 eth1
192.168.0.0 0.0.0.0 255.255.255.0 U 0 0 0 eth1

On my haproxy box I've lot of connecctions in "TIME_WAIT" state from haproxy to webservers.
When I try to get default page from browser no connections were made on webserver (haproxy open only one tcp connection in "SYN_SENT" state).

Thanks for your patience.

Carlo

No virus found in this incoming message. Checked by AVG - www.avg.com
Version: 8.5.325 / Virus Database: 270.12.24/2107 - Release Date: 05/10/09 07:02:00 Received on 2009/05/12 10:20

This archive was generated by hypermail 2.2.0 : 2009/05/12 10:30 CEST