Squid transparent proxy DNS error

jdferrell3_at_gmail.com
Date: 05/09/05


Date: 8 May 2005 21:08:19 -0700

I have a FreeBSD 5.3 box acting as my internet gateway. (Running named,
dhcpd, and nat) I am trying to configure it to also run squid in
transparent mode. I configured IPFW to forward all HTTP requests to
the the local squid port. When I open a browser on a client device I
get the following error:

The following error was encountered:

    Unable to determine IP address from host name for www.novell.com

The dnsserver returned:

    Name Error: The domain name does not exist.

This means that:

 The cache was not able to resolve the hostname presented in the URL.
 Check if the address is correct.

I have tried setting the DNS server in squid.conf to point to my ISP's
DNS servers and my local DNS server, unfortunately I always get the
same result. If I run "squidclient cache_object://localhost/idns" it
shows the proper DNS settings. If I disable port forwarding and
manually configure the client browser to use the proxy, it works fine.
It seems that when I enable HTTP forwarding to the proxy that either
the client or the proxy itself does not "know" where to look for name
resolution.

Any insight would be greatly appreciated.

thanks,
John



Relevant Pages

  • Re: add and remove program
    ... what to configure at squid / firewall, so that client could update the ... Are you saying your proxy requires authentication?? ...
    (Fedora)
  • Re: Re: tproxy on freebsd
    ... > when my client using the proxy. ... and there should be configuration options for squid. ... server; server thinks its talking to the client; proxy server IP isn't ...
    (freebsd-stable)
  • updates through squid
    ... transparent squid cache proxy. ... downloaded directly from the update server instead of my local squid. ... proxy has a "no-cache" directive which I suppose prevent the client to ...
    (alt.os.linux.suse)
  • Re: proxy to restrict the client systems from downloading anything from internet
    ... should not restrict them from browsing or surfing. ... You need to ensure at first that all client are forced to use the ... proxy to make any further control possible. ... Squid can be used as proxy and has ...
    (comp.os.linux.security)
  • Re: GPO problems
    ... It was the ISA 2004 firewall client. ... DNS settings and network properties on the server and client computers. ... > Service of SBS is configured to be the DNS server on the problematic ...
    (microsoft.public.windows.server.sbs)