Joined: Sat Jan 22, 2011 3:04 am

ACL Squid from DHCP Mikrotik

Wed Oct 03, 2012 7:08 am

Hi All,

Is there any possibilities on squid to set acl from RouterOS..

this is my current network configuration :

1. Proxy with squid
>> ip address proxy :

2. MikroTik router
>> ip eth1 :
>> ip eth2 :

mikrotik gateway : gw

in the squid.conf :

acl me src
http_access allow me

this configuration is working perfectly..

the question is how to set acl from ?

I need to set acl from client who get ip from dhcp mikrotik

ex : acl client1 src
acl client2 src

Thanks in advance..
Posts: 195
Joined: Wed Feb 23, 2011 8:33 am

Re: ACL Squid from DHCP Mikrotik

Wed Oct 03, 2012 10:19 am

i don't think you can
what you can do is use web proxy feature of routeros.
set the parent proxy and parent proxy port of web proxy to (and the port squid is listening to)
create on routeros an address-list with the ip's of the computers you want to connect via proxy.
use this how to to set routeros web proxy as a transparent proxy ... _web_proxy
add a rule in filter to allow requests to the port the web proxy is listening to from the address-list
block all other requests
Posts: 1726
Joined: Tue Dec 01, 2009 11:46 pm

Re: ACL Squid from DHCP Mikrotik

Wed Oct 03, 2012 5:26 pm

Why not just accept everything from the subnet? That would be a lot easier than trying to script in functionality that doesn't really do anything but give it more places to break.

