[KLUG Members] http switching?

Peter Buxton members@kalamazoolinux.org
Mon, 27 Aug 2001 17:31:30 -0400


On Mon, Aug 27, 2001 at 11:16:55AM -0400, Kevin DeGraaf was only 
   escaped alone to tell thee:

> Soon, I'll be in a situation where multiple Web servers will be behind a
> single masquerading Linux firewall.
> 
> I'm looking for a program which will run on the firewall, listening on
> port 80 and proxying incoming Web requests to the MASQ'ed servers
> depending on the value of the hostname in the HTTP/1.1 header.
> (Obviously, DNS will point all of these hostnames to the firewall
> machine.)
> 
> Can squid do this?  Apache?  Some other, more obscure utility?

I'm sure squid can do this. My question is, should a pure gateway service
such as squid run on a filewall? (Especially for a small business as opposed
to a home network.) My pet NPO could use a web proxy and a firewall.
Currently, they have:

P-166, 80 MG RAM: Samba, Exim MTA, qpopper POP3, hylafax, lprng (and bind,
                  soon).

This machine doesn't stress very much, needless to say. qpopper is probably
the busiest app, hylafax the most CPU-intensive, printing and filtering
TIFF's. But I wonder if squid would be a bit much--and it would require
repartitioning the hard drive.

I have a spare Cyrix 686 with 24MB which would make a great squid proxy, but
could this also serve as the firewall?

-Pete