[sslh] transparent proxy to different host?

Jason Cooper sslh at lakedaemon.net
Tue Aug 1 14:18:34 UTC 2017


Gentle ping?

On Tue, Jul 25, 2017 at 03:22:09PM +0000, Jason Cooper wrote:
> Yves,
> 
> Hope you are doing well.  I had a need to use sslh again, and it works
> great with the sni feature. :)  I'm now trying to set up transparent
> proxying and having a little trouble visualizing what's going on.
> 
> The setup described in the README.md, afaict, is for sslh and $webserver
> on the same host.  It's not exactly clear.  I looked at updating it for
> TPROXY, but the confusing part is, the TPROXY howto
> (linux.git/Documentation/networking/tproxy.txt) used the exact same
> routing rules over loopback.  :-/
> 
> Could you describe the scenario used in the README.md?  And how it would
> change for sending to $webserver on a different host?
> 
> I'm also completely lost as to why you are adding the rules to the
> OUTPUT chain and matching on source port = $serverport ...
> 
> thx,
> 
> Jason.
> 
> _______________________________________________
> sslh mailing list
> sslh at rutschle.net
> http://rutschle.net/cgi-bin/mailman/listinfo/sslh



More information about the sslh mailing list