tcpdump -n -i eth0 port 3128
ne me donne rien, comme sirien ne passait par ce port?
ds ethereal avec squid configuré comme proxy ds firefox j'ai:
No. Time Source Destination Protocol Info
5 3.111355 82.xx 66.249.93.99 HTTP GET /search?sourceid=navclient-ff&ie=UTF-8&rls=GGGL,GGGL:2005-09,GGGL:fr&q=google HTTP/1.0
Frame 5 (728 bytes on wire, 728 bytes captured)
Ethernet II, Src: AsustekC_eb:8a:06 (00:0c:6e:eb:8a:06), Dst: FreeboxS_06:54:2c (00:07:cb:06:54:2c)
Internet Protocol, Src: 82.xx (xx), Dst: 66.249.93.99 (66.249.93.99)
Transmission Control Protocol, Src Port: 37402 (37402), Dst Port: http (80), Seq: 1, Ack: 1, Len: 674
Source port: 37402 (37402)
Destination port: http (80)
Sequence number: 1 (relative sequence number)
Next sequence number: 675 (relative sequence number)
Acknowledgement number: 1 (relative ack number)
Header length: 20 bytes
Flags: 0x0018 (PSH, ACK)
Window size: 5840
Checksum: 0x7f0c [correct]
Hypertext Transfer Protocol
GET /search?sourceid=navclient-ff&ie=UTF-8&rls=GGGL,GGGL:2005-09,GGGL:fr&q=google HTTP/1.0\r\n
Host: www.google.fr\r\n
User-Agent: Mozilla/5.0 (X11; U; Linux i686; fr-FR; rv:1.7.10) Gecko/20050717 Firefox/1.0.6\r\n
Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5\r\n
Accept-Language: fr\r\n
Accept-Encoding: gzip,deflate\r\n
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7\r\n
Keep-Alive: 300\r\n
Cookie: PREF=ID=ad7c7ba24735dd56:TM=1128259990:LM=1128259990=IXQjvqhyvMFJ0i4z; S=awfe=lnthdWzUcAo\r\n
Via: 1.1 localhost.localdomain:3128 (squid/2.5.STABLE9)\r\n
X-Forwarded-For: 82.xx\r\n
Cache-Control: max-age=0\r\n
Connection: keep-alive\r\n
\r\n
par contre pour toutes les regles iptable que tu m'as donné aucune trace de squid ds les trames
Poste le Sunday 2 October 2005 16:04:21