31
Web Proxy Filtering and Caching / Re: Newbie Web Proxy Bypass Question
« on: November 16, 2020, 01:57:37 pm »
hello GunShotResidue,
Have you considered adding the devices to the "Unrestricted IP addresses" and accepting your certificate on each of them?
well anyway , to achieve what you want follow these steps:
1-give static IPs (through the DHCP) to the desired devices
2- Create an alias for these devices ( Firewall > Aliases) EX: "no-redirection" and add all of the devices IPs.
3-In port forward (Firewall > NAT) add the following rule:
Interface : LAN
Source / Invert : check this box (this is a logical NOT operator)
Source : no-redirection (the alias you made)
Destination : any
Destination port range : HTTP and HTTPS (you can add two rules one for HTTP and one HTTPS or create an alias for both)
Redirect target IP: the prxoy's IP
Redirect target port : the port that it listens to
Basically it tells the firewall to route traffic that does "NOT" come from the alias's ip range to the proxy
alternatively you can create an alias for all the ips that's going to be redirected and simply redirect it.
Have you considered adding the devices to the "Unrestricted IP addresses" and accepting your certificate on each of them?
well anyway , to achieve what you want follow these steps:
1-give static IPs (through the DHCP) to the desired devices
2- Create an alias for these devices ( Firewall > Aliases) EX: "no-redirection" and add all of the devices IPs.
3-In port forward (Firewall > NAT) add the following rule:
Interface : LAN
Source / Invert : check this box (this is a logical NOT operator)
Source : no-redirection (the alias you made)
Destination : any
Destination port range : HTTP and HTTPS (you can add two rules one for HTTP and one HTTPS or create an alias for both)
Redirect target IP: the prxoy's IP
Redirect target port : the port that it listens to
Basically it tells the firewall to route traffic that does "NOT" come from the alias's ip range to the proxy
alternatively you can create an alias for all the ips that's going to be redirected and simply redirect it.