|
![]() |
|
| Author |
|
|||||||
|
natslovR
Posts: 6113
Location: Sydney, New South Wales
|
I've had enough of being region restricted and want to setup a US proxy.
I have: a US based linux host I need: a clue What software would I need to get up and running? Any guides to follow in particular? Initially i would like to redirct some HTTP traffic through it, but also other stuff like online video would be good too. I had cgiproxy up and running for a while, but it broke, and ideally I would setup something a bit more robust - I just have no idea where to even start reading. |
|||||||
| #0 08:46am 11/03/09 |
|
|||||||
|
system
|
--
|
|||||||
| #0 |
|
|||||||
|
tequila
Posts: 1586
Location: Sydney, New South Wales
|
if you want to do your own i recommend this method;
> www.slicehost.com > get your root login # apt-get install squid let me know when you've done that and i'll send you my squid config from here you can either just firewall all traffic but your own or set it up so you are accessing the proxy via a secure tunnel if you need help let us know infact in the above example if a few people (5 or more) are willing to chip in $5/month i'd be happy to run it and everyone gets an account so they can all do the same I use this method myself to access msn/irc/all websites while @ work not because its banned at work, just because it cant be snooped unless they're super 1337 SSL-hackers |
|||||||
| #1 08:55am 11/03/09 |
|
|||||||
|
Creepy
Posts: 1281
Location: USA
|
Tell you what, I'll give you money if you make an Australian proxy that I can use to avoid Australian geo-locking crap...
:( |
|||||||
| #2 09:11am 11/03/09 |
|
|||||||
|
Jim
Posts: 9379
Location: Brisbane, Queensland
|
as painful as it might be, it's worth setting up squid yourself and making sure you spend a bit of time understanding it - blindly accepting someone else's config has a high chance of asking for trouble imo
|
|||||||
| #3 09:15am 11/03/09 |
|
|||||||
|
TicMan
Posts: 4300
Location: Melbourne, Victoria
|
I use Quantact ($8/mth) for a VPS that I've setup Squid and the worlds-most-awesome-ping-reducing-ticcles-modified-socks5 proxy.
Install Squid, read some config guides and just lock it down. Out of the box it's virtually ready to get going. |
|||||||
| #4 09:46am 11/03/09 |
|
|||||||
|
tequila
Posts: 1588
Location: Sydney, New South Wales
|
true Jim, however I am doing exactly what nats wants to do on my slicehost
I just proxy localhost:3128 to localhost:3128 via an SSH tunnel on the colo box no ip conenctivity to the primary interface on the colo box, just to lo0 squid only listens on 127.0.0.1:3128 on the colo box, perfectly secure |
|||||||
| #5 10:05am 11/03/09 |
|
|||||||
|
Jim
Posts: 9380
Location: Brisbane, Queensland
|
perfectly secure eh
you could bottle that and sell it |
|||||||
| #6 10:24am 11/03/09 |
|
|||||||
|
tequila
Posts: 1593
Location: Sydney, New South Wales
|
please deposit $1337 into my bank account and i'll send you bottle #001
|
|||||||
| #7 10:38am 11/03/09 |
|
|||||||
|
pARODY
Posts: 257
Location: Brisbane, Queensland
|
I'll buy 30000 bottles of your Perfectly Secure so I can send them out to clients as christmas gifts :P
|
|||||||
| #8 02:37pm 11/03/09 |
|
|||||||
|
tequila
Posts: 1605
Location: Sydney, New South Wales
|
special discount 4 u short time offer only limit 1 per customer!!!1
30000 * 1337 = 40,110,000 - $110,000 = $40,000,000 !!!!! |
|||||||
| #9 02:42pm 11/03/09 |
|
|||||||
|
ara
Posts: 2465
Location: Sydney, New South Wales
|
i would set up squid. the docs on their site are pretty good. i would stay away from pre-configured options just because you don't learn anything that way.
i would also look into openvpn if you want to do more than just webpages. |
|||||||
| #10 02:51pm 11/03/09 |
|
|||||||
|
Spook
Posts: 24454
Location: Brisbane, Queensland
|
i would have signed up for this, but we found a sneaky backdoor way to get to gmail through horrible new work proxy;
www.google.com/ig for the win! |
|||||||
| #11 03:51pm 11/03/09 |
|
|||||||
|
TicMan
Posts: 4307
Location: Melbourne, Victoria
|
Tell me more about your sneaky backdoor..
|
|||||||
| #12 03:52pm 11/03/09 |
|
|||||||
|
Spook
Posts: 24455
Location: Brisbane, Queensland
|
well, most places will block gmail with the usual gmail address
mail.google.com but not www.google.com/ig (which is your personal google page) if you use the google ig page with the gmail applet, it accesses your gmail fine, but not through the usual address, for the win: if didnt have access to gmail and qgl (which also isnt blocked for now under the new proxy) i mite well have topped myself as far as i know, most government offices will block gmail, but not google, so it will work fine for them also |
|||||||
| #13 03:58pm 11/03/09 |
|
|||||||
|
TicMan
Posts: 4308
Location: Melbourne, Victoria
|
You missed my innuendo :(
|
|||||||
| #14 04:01pm 11/03/09 |
|
|||||||
|
tequila
Posts: 1610
Location: Sydney, New South Wales
|
spook lies, he runs the proxy server and just sets up acls for his kiddy pr0n
|
|||||||
| #15 04:01pm 11/03/09 |
|
|||||||
|
Jim
Posts: 9385
Location: Brisbane, Queensland
|
we all miss putting it in ur endo since you went south ticcles
|
|||||||
| #16 04:32pm 11/03/09 |
|
|||||||
|
Fireblood
Posts: 9117
Location: Brisbane, Queensland
|
as far as i know, most government offices will block gmail, but not google, so it will work fine for them also omg...I love you spook! :D YAY FOR GMAIL AT WORK!!!! edit: actually, which Addon did you use? I have tried a few now, they either don't work or get blocked by the policy (for having gmail in the address) :( last edited by Fireblood at 20:00:43 11/Mar/09 |
|||||||
| #17 08:00pm 11/03/09 |
|
|||||||
|
Skitza
Posts: 8662
Location: Brisbane, Queensland
|
https://vpnout.com/ could try that but you want linux based.
|
|||||||
| #18 07:44pm 11/03/09 |
|
|||||||
|
Spook
Posts: 24459
Location: Brisbane, Queensland
|
http://www.google.com/ig/adde?moduleurl=builtin_gmail.xml&source=imag
(make sure you are using the gadget at www.google.com/ig |
|||||||
| #19 08:06pm 11/03/09 |
|
|||||||
|
natslovR
Posts: 6114
Location: Sydney, New South Wales
|
Thanks. Squid looks good, i'll give it a shot hopefully this weekend.
|
|||||||
| #20 09:30pm 11/03/09 |
|
|||||||
|
Zylox
Posts: 872
Location: Brisbane, Queensland
|
super 1337 SSL-hackers you cant beat SSL? |
|||||||
| #21 06:17am 12/03/09 |
|
|||||||
|
tequila
Posts: 1628
Location: Sydney, New South Wales
|
I just don't think anyone who has the ability to launch a man-in-the-middle attack within this network would actually bother
|
|||||||
| #22 08:44am 12/03/09 |
|
|||||||
|
Nathan
Posts: 3101
Location: Canberra, Australian Capital Territory
|
If it was me I'd be looking at routing all your traffic over OpenVPN, and just turning that on and off at the client-side as desired. |
|||||||
| #23 09:41am 12/03/09 |
|
|||||||
|
simul
Posts: 459
Location: Brisbane, Queensland
|
Side question, does anyone know why the only site that seems to be blocked on UQ ITEE VPN is qgl forums? There has to be a good story behind it :D
|
|||||||
| #24 09:51am 12/03/09 |
|
|||||||
|
Jim
Posts: 9388
Location: Brisbane, Queensland
|
the vpn option is useful for things that might not necessarily be http/s but it would cause any existing connections you might have to other places prior to flicking it on, to be dropped each time, and then again when you turn it off. unless you manually set specific routes at the time just for the traffic you want to go via the vpn, as opposed to routing everything
that'd be annoying for me where I'm connected to a bunch of different things all the time like irc, any number of ssh and RD sessions, steam (where a reconnect from a new ip often requires entering your user/pass again) etc having said all that, maybe learning to use the route/ip commands for that reason would be easier than using squid |
|||||||
| #25 12:29pm 12/03/09 |
|
|||||||
|
trog
AGN Admin
Posts: 26316
Location: Brisbane, Queensland
|
Side question, does anyone know why the only site that seems to be blocked on UQ ITEE VPN is qgl forums? There has to be a good story behind it :DReally?! That's crazy. When I was there I don't recall it being blocked. |
|||||||
| #26 01:05pm 12/03/09 |
|
|||||||
|
taggs
Posts: 2447
Location: Brisbane, Queensland
|
i was on qgl the other day at uni (uq), def not blocked for me.
|
|||||||
| #27 01:55pm 12/03/09 |
|
|||||||
|
natslovR
Posts: 6141
Location: Sydney, New South Wales
|
i had lots of problems setting up squid. i'm not root at the webhost where i have an account, so i got the source and tried to set it up in my home dir.
Should that work or do i need to be root to run squid? When i gave up i was having authentication problems. The guide i was following said to add the following to the config: auth_param basic program /usr/lib/squid/ncsa_auth /etc/squid/squid_passwd auth_param basic childred 5 auth_param basic realm Squid proxy-caching web server auth_param basic credentialsttl 2 hours acl ncsaauth proxy_auth REQUIRED http_access allow ncsaauth (so i changed those paths to line up with where i was installing in my homedir), but it errored on squid/ncsa_auth. The guide included creating a squid_passwd file using htpasswd but not a squid/ncsa_auth file, so it kept falling over at that point. |
|||||||
| #28 09:03am 22/03/09 |
|
|||||||
|
hast
Posts: 970
Location: Brisbane, Queensland
|
you don't even need squid. if you have ssh installed you can set up putty to act as socks server. under tunnels add source port: xxx and destination:dynamic then just point your web browser to connect to socks server on port: xxx.
|
|||||||
| #29 09:53am 22/03/09 |
|
|||||||
|
ara
Posts: 2485
Location: Sydney, New South Wales
|
since you are not root, you need to change the prefix when you run configure prior to compiling. try adding --prefix=/your/home/dir/squid to your configure line. then after you make and make install, go into that dir and edit etc/squid.conf to reflect the the directory. |
|||||||
| #30 10:08am 22/03/09 |
|
|||||||
|
simul
Posts: 471
Location: Brisbane, Queensland
|
Really?! That's crazy. When I was there I don't recall it being blocked. was on qgl the other day at uni (uq), def not blocked for me. Getting to it via standard uq network is fine, its only ITEE staff VPN that blocks it. I asked infrastructure why it was blocked and they can't remember: ps ausgamers is fine to get to, its only qgl. Was more just curious if there was some urban legend. Screeny: http://img.skitch.com/20090321-mmwrdqqi46e5bsxrr2we2dnxs6.jpg |
|||||||
| #31 10:52am 22/03/09 |
|
|||||||
|
natslovR
Posts: 6142
Location: Sydney, New South Wales
|
you don't even need squid. if you have ssh installed you can set up putty to act as socks server. under tunnels add source port: xxx and destination:dynamic then just point your web browser to connect to socks server on port: xxx.f*** ducks that was too easy. where were you a week ago?? :-) --> IP Address Location: Orem, UT United States |
|||||||
| #32 01:29pm 22/03/09 |
|
|||||||
|
natslovR
Posts: 6143
Location: Sydney, New South Wales
|
I just bought my first kindle book and successfully loaded it on to iKindle. f*** yeah!
Video on hulu.com doesn't work. It gets past the first check, like it doesn't reject me for not being american, but then the video doesn't play "Sorry we are unable to stream this video. Please check your internet connection and try again" Should I be able to do that over putty? |
|||||||
| #33 02:04pm 22/03/09 |
|
|||||||
|
tequila
Posts: 1743
Location: Sydney, New South Wales
|
root@extortion:~# grep -i acl /etc/squid/squid.conf | grep -v ^# |
|||||||
| #34 03:03pm 22/03/09 |
|
|||||||
|
hast
Posts: 972
Location: Brisbane, Queensland
|
sounds like flash is ignoring your proxy settings :( if you are doing this in a non-IE browser change IE to use socks as well and try again with your non-IE browser. flash might be looking at your system proxy settings instead of your browser proxy settings. otherwise maybe it will be back to squid....
|
|||||||
| #35 08:11pm 22/03/09 |
|
|||||||
|
Furgle
Posts: 872
Location:
|
you don't even need squid. if you have ssh installed you can set up putty to act as socks server. under tunnels add source port: xxx and destination:dynamic then just point your web browser to connect to socks server on port: xxx. Just tried that as well. Amazing. Something simple that just works, no hassle. Thanks for the tip. |
|||||||
| #36 08:27pm 22/03/09 |
|
|||||||
|
natslovR
Posts: 6144
Location: Sydney, New South Wales
|
I just tried it in IE, using IE as the browser, same problem.
It must be something hulu is doing, cause i can play youtube videos no problem in the same browser using the proxy :-( I did a test at whatismyipaddress.com to see if it could detect my proxy, and it didn't: http://whatismyipaddress.com/staticpages/index.php/advanced-proxy-test IP 69.89.xx.xxx rDNS FALSE WIMIA Test FALSE TOR Test FALSE Loc Test FALSE Header Test FALSE DNSBL Test FALSE damn you hulu. last edited by natslovR at 21:20:15 22/Mar/09 |
|||||||
| #37 09:20pm 22/03/09 |
|
|||||||
|
hast
Posts: 974
Location: Brisbane, Queensland
|
yeah hlu is using a thingo to make direct connections and ignore proxy settings. if you have access to lunix you can get around it: http://www.alternativedenial.org/?p=94
|
|||||||
| #38 09:29pm 22/03/09 |
|
|||||||
|
hast
Posts: 975
Location: Brisbane, Queensland
|
allegedly this program can help you out: http://www.ufasoft.com/socks/
/SCRATCH THAT. won't work :( http://www.freecap.ru/eng/ -> will do the job http://www.widecap.com/ -> is the pay version with 30 day trial might be easier to set up a vpn though... last edited by hast at 21:38:34 22/Mar/09 |
|||||||
| #39 09:38pm 22/03/09 |
|
|||||||
|
Symo
Posts: 1
Location: Brisbane, Queensland
|
Torrents at UQ: Hi guys, i know this is a bit of topic, but i noticed a few replies from ppl at UQ. Is there anywhere on the UQ network where people keep torrents? (movies / tv / games / etc)?? I've just started going there this year, but i'm only part-time, so i'm only there a few hours a week and haven't had time to sus it out. |
|||||||
| #40 01:35pm 08/04/09 |
|
|||||||
|
Creepy
Posts: 1351
Location: USA
|
I suggest you try contacting the Prentice Centre for your question - they are more than happy dealing with newcomer students to UQnet.
|
|||||||
| #41 11:37pm 08/04/09 |
|
|||||||
|
system
|
--
|
|||||||
| #41 |
|
|||||||
|
| ||||||||