[sslh] Plan to integrate IP_TRANSPARENT

Alexandre TOSTIVINT eclair121 at gmail.com
Fri Jul 5 22:41:35 CEST 2013


2013/7/5 Yves Rutschle <yves at naryves.com>

> On Fri, Jul 05, 2013 at 02:41:20PM +0200, Yves Rutschle wrote:
> > There is a patch to do this here:
> > http://rutschle.net/pipermail/sslh/2013-February/000299.html
> >
> > and Antonia managed to get it working:
> > http://rutschle.net/pipermail/sslh/2013-April/000308.html
> >
> > I personally haven't managed it, but the link you posted
> > mentions it cannot work if you target localhost, which I
> > did, so I'll need to try that again.
>
> Ok, I confirm that the patch works, you just have to target
> addresses that aren't localhost. This means you can't have
> Apache listen to localhost:443, but I guess that a small
> price to pay to get transparent proxy-ing.
>
> I'll start cleaning up the patch and porting it to
> sslh-select and add instructions to README, and release a
> new version at some point.
>
> Cheers,
> Y.
>

So you need 2 IP devices ( a proxy + SSH/OpenVPN/HTTPS server ) to get sslh
work with that ?
Anyway, thank you very very much !
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://rutschle.net/pipermail/sslh/attachments/20130705/3f02de24/attachment.html>


More information about the sslh mailing list