ClearFoundation Tracker - ClearOS
View Issue Details
0000096ClearOSapp-web-proxy - Web Proxypublic2010-06-01 22:312019-03-11 06:17
dloper 
 
lowfeaturealways
closedsuspended 
 
 
0000096: Add configuration for other internal or remote subnets
Need to add the ability to add additional subnets other than just the default webconfig acl.
No tags attached.
related to 0000097closed  ClearCenter Add static route configuration to webconfig 
Issue History
2010-06-01 22:31dloperNew Issue
2010-06-02 09:38user2Relationship addedrelated to 0000097
2010-06-02 09:41user2Note Added: 0000158
2010-06-02 09:42user2Prioritynormal => low
2010-06-02 09:42user2Statusnew => confirmed
2010-06-02 09:42user2SummaryOther internal subnets => Add configuration for other internal or remote subnets
2013-02-01 15:07user2Target Version => 6.4.0 Updates
2013-06-07 05:25dcclaytonNote Added: 0000874
2013-06-07 08:30user2Note Added: 0000877
2013-07-29 13:58user2Target Version6.4.0 Updates => 6 Future
2014-04-22 13:28user2Target Version6 Future => Future
2015-05-25 05:10user2Target VersionFuture =>
2019-03-11 06:17NickHNote Added: 0010581
2019-03-11 06:17NickHStatusconfirmed => closed
2019-03-11 06:17NickHResolutionopen => suspended

Notes
(0000158)
user2   
2010-06-02 09:41   
ClearOS was not designed for multiple LAN segments or complex networks, so this feature has never been implemented in webconfig. It is possible to add these changes via the command line. See "Additional LAN Networks" in the following document:

http://www.clearfoundation.com/docs/howtos/managing_static_routes#additional_lan_networks [^]

This feature would is (mostly) a side effect of implementing static routes (feature 0000097)
(0000874)
dcclayton   
2013-06-07 05:25   
It would be very good if this could parse the VPN configuration, as most companies using the hub and spoke VPN model with the proxy server will want the remote VPN subnets included for web access. I appreciate that having things automatically add is whole new level of complexity, and I would be more than happy to start with a GUI page to update the squid.conf.

It wouldn't be too much more to incorporate the !safe_ports part of the squid.conf file into a GUI page (again future scope for integration with firewall rule creation...).

David
(0000877)
user2   
2013-06-07 08:30   
Ah yes, remote VPN networks should be tracked automatically. Good idea.
(0010581)
NickH   
2019-03-11 06:17   
Migrated to: https://gitlab.com/clearos/clearfoundation/app-web-proxy/issues/3 [^]