1 00:00:10,090 --> 00:00:11,910 Alavi one that is my Habad here again. 2 00:00:11,920 --> 00:00:19,250 Well now on lab number 17 and in this lab I'm going to configure the transparent web proxy so I have 3 00:00:19,290 --> 00:00:25,000 said in the previous lecture that we can have or the regular web proxy or the transponders were proxy 4 00:00:25,020 --> 00:00:30,330 different between both that if you want to do with regular web proxy then you need to go for each of 5 00:00:30,330 --> 00:00:35,760 the PCs on the browser and then you have to put the IP address and the Port of the proxy. 6 00:00:35,970 --> 00:00:40,000 But that's something we'll take a lot of time from you instead of doing that. 7 00:00:40,110 --> 00:00:46,500 We make a transparent proxy that means that without putting anything on the PCs any traffic going to 8 00:00:46,890 --> 00:00:48,910 be it will pass via the router. 9 00:00:49,050 --> 00:00:55,080 But then they're out to redirect traffic to the web proxy and the mike to go out there and let it go. 10 00:00:55,290 --> 00:00:55,720 OK. 11 00:00:55,830 --> 00:00:58,480 So as you can see here we have three points to do. 12 00:00:58,690 --> 00:01:03,680 So before I start doing the boss let me just explain to you what we need to do in this law. 13 00:01:03,720 --> 00:01:09,890 So this is all optional you are still working on the same network that was connected before and that 14 00:01:09,900 --> 00:01:17,410 now what I'm going to do I have to go to the router here on about the one and enable web proxy. 15 00:01:18,120 --> 00:01:25,160 And I would say that all the traffic to be redirected to port number 80 80. 16 00:01:25,200 --> 00:01:31,800 That means that I have also to do this AutoNation to redirect So anyone opening here website when it 17 00:01:31,800 --> 00:01:33,190 comes to the router. 18 00:01:33,310 --> 00:01:40,680 The router redirect the traffic to its web proxy on port 80 80 and then on the web you can do a lot 19 00:01:40,680 --> 00:01:47,610 of things for example you can anyone of any initiative be upside than he can go to your website page 20 00:01:47,610 --> 00:01:48,140 on the. 21 00:01:48,270 --> 00:01:54,190 Then they cannot do anything then seeing a web site page where you can do also can do some type of firewalling. 22 00:01:54,210 --> 00:01:59,600 We have to can stop some file formats over there so you can do all of those things. 23 00:01:59,610 --> 00:02:05,950 But also what is most important in the what proxy is the caching because you are caching or the A.P. 24 00:02:06,180 --> 00:02:11,280 traffic that in this case if someone else in your network is opening that same page then it will be 25 00:02:11,460 --> 00:02:15,220 sent directly from your web proxy to him without going to the Internet. 26 00:02:15,330 --> 00:02:17,120 And that saves a lot of battles. 27 00:02:17,310 --> 00:02:18,990 So this is what we are going to do. 28 00:02:18,990 --> 00:02:26,020 We enabled the proxy we say for all the traffic going to it should be then we redirect them to the web 29 00:02:26,040 --> 00:02:31,890 proxy of the myopic router and then we will do something to show you what are the options that we have 30 00:02:32,130 --> 00:02:33,740 available on their web proxy. 31 00:02:33,930 --> 00:02:40,540 Let's not go to the ports and start doing them both number one enable web proxy using port 88. 32 00:02:40,740 --> 00:02:48,810 So I have to go now to Winbox and from here I will connect to the router to enable the word proxy on 33 00:02:48,810 --> 00:02:49,240 your mind. 34 00:02:49,260 --> 00:02:56,570 Rather it is very easy you just have to go to IP and then you go to work rushy and that is what you 35 00:02:56,570 --> 00:02:57,140 need to do. 36 00:02:57,140 --> 00:03:01,080 Enable the port by default is 80 80. 37 00:03:01,090 --> 00:03:06,790 That means the more proxy on the mighty router is working now from Port 80 80 here. 38 00:03:07,220 --> 00:03:13,780 You can't specify the IP address of your router which is ransoming to the 16 that one to fight for in 39 00:03:13,820 --> 00:03:19,790 case you are going to use the regular web proxy because when you use the regular proxy then you need 40 00:03:19,790 --> 00:03:23,760 to really put the IP address of the mike to corrupt. 41 00:03:24,050 --> 00:03:29,750 But in my case I'm using the transparent way so I'm going to anyway redirect all the traffic of the 42 00:03:29,750 --> 00:03:34,350 SGP to go to the Mattox out there again so I don't need to do that. 43 00:03:34,580 --> 00:03:40,730 So that's where you only need to do just click on the Enable and then now the word proxy is being enabled 44 00:03:40,730 --> 00:03:41,640 for you. 45 00:03:42,050 --> 00:03:46,320 And I would say OK both number one is done. 46 00:03:46,950 --> 00:03:52,680 And then number two we have to create a destination not chain using Ashbery traffic with redirect to 47 00:03:52,710 --> 00:03:53,410 partake. 48 00:03:53,460 --> 00:04:01,200 So now we have to say on the router that any traffic going to should it be then redirect them to the 49 00:04:01,200 --> 00:04:03,500 web proxy which is on port 80. 50 00:04:03,740 --> 00:04:04,140 OK. 51 00:04:04,170 --> 00:04:07,440 Let me just put the picture here so you can follow what I'm doing. 52 00:04:07,770 --> 00:04:13,390 So we have to go now to here and then again we have to use the destination now. 53 00:04:13,560 --> 00:04:22,470 So we go here to not add on that we have to go to general and then destination now for all the traffic. 54 00:04:22,560 --> 00:04:25,850 All of the piece of this donation board is 80. 55 00:04:26,010 --> 00:04:27,880 And protocol is disappear. 56 00:04:28,330 --> 00:04:36,340 Then the action is to direct the redirect message to send it to the mike copter on board. 57 00:04:36,870 --> 00:04:42,480 So now anyone opening a website or STPI that this comes to the router reroute the Russie. 58 00:04:42,490 --> 00:04:50,870 Oh that's actually our redirect you have to pass via my web proxy and then I would say OK. 59 00:04:51,210 --> 00:04:56,820 And that in this way you don't need to do anything at the user on their PC on the browser. 60 00:04:56,950 --> 00:05:04,380 Any traffic of how steeply they are going to be passing via the proxy without you change anything on 61 00:05:04,380 --> 00:05:05,580 the issue level. 62 00:05:05,760 --> 00:05:14,070 And again to say that were proxy wars on HTP That's why we have here it says it can cache the HTP it 63 00:05:14,070 --> 00:05:16,700 has nothing to do with the yes. 64 00:05:16,720 --> 00:05:19,320 Point number two is done. 65 00:05:19,560 --> 00:05:25,610 Now we before I got on point number three let me just check if the word proxy is working for me. 66 00:05:25,770 --> 00:05:37,460 Our open here a website which is a city does all that come and then I will go to the inbox. 67 00:05:38,250 --> 00:05:38,740 OK. 68 00:05:38,850 --> 00:05:42,810 First we see that the destination now it's working it's matching here. 69 00:05:42,810 --> 00:05:53,760 But if I go to IP when I go to a web proxy and I got the status you can see here these are the information 70 00:05:53,760 --> 00:05:57,320 or the statistics that the proxy has collected. 71 00:05:57,520 --> 00:05:58,100 OK. 72 00:05:58,230 --> 00:06:02,940 And also what we can do if we are now disable the web proxy. 73 00:06:03,030 --> 00:06:09,540 So that means that now the traffic is actually becoming to that out of that other saying you are sleepy 74 00:06:09,690 --> 00:06:11,520 you have to go to do a proxy. 75 00:06:11,620 --> 00:06:14,820 If we go to the web proxy and then the web proxy is disabled. 76 00:06:14,850 --> 00:06:16,510 So we see what will happen. 77 00:06:16,530 --> 00:06:26,950 So I would say apply and now again I would go to the browser and I will try again to offer any shiti 78 00:06:27,280 --> 00:06:34,160 Nashvilles of come and wishy that it's not working. 79 00:06:34,160 --> 00:06:34,520 Why. 80 00:06:34,520 --> 00:06:39,110 Because when it comes to the web proxy the web proxy is not working. 81 00:06:39,110 --> 00:06:44,130 So the packet doesn't know what to do then it is discarded by the microcosm. 82 00:06:44,150 --> 00:06:45,920 What if we enable this now again. 83 00:06:46,070 --> 00:06:55,210 So we say enable And OK now I go again and I read Cantor that we should have. 84 00:06:55,210 --> 00:06:57,790 Now the website working so can she. 85 00:06:57,940 --> 00:07:01,540 The website is opening without any problem. 86 00:07:01,810 --> 00:07:02,310 OK. 87 00:07:02,410 --> 00:07:07,120 So that's so you that that's how the web proxy work. 88 00:07:07,270 --> 00:07:10,140 Both of us will make the change needed on the web proxy. 89 00:07:10,270 --> 00:07:17,730 So BBC dot com which is an SCDP traffic or ACP website is being redirected to Google dot com. 90 00:07:17,800 --> 00:07:24,690 So anyone trying to open BBC account then he will go to come let's do it this way all we can say also 91 00:07:24,700 --> 00:07:30,640 anyone opening BBC account then it would go to our city council instead of google.com. 92 00:07:30,820 --> 00:07:31,550 Let's do that. 93 00:07:31,690 --> 00:07:34,450 And that's what we have here on the web proxy as a feature. 94 00:07:34,600 --> 00:07:41,330 So if we go to IP what proxy actually before I do this but I just want to show you something here that 95 00:07:41,400 --> 00:07:44,470 on this moment all the gashing are happening on the run. 96 00:07:44,660 --> 00:07:45,130 OK. 97 00:07:45,190 --> 00:07:53,200 And you can see that much cache object size is 2048 you know by and that's on the RAM if you want. 98 00:07:53,200 --> 00:07:58,950 You can if you have any stick and your router can accept you as vi then you can put it there and then 99 00:07:58,960 --> 00:08:00,150 you say gosh all this. 100 00:08:00,310 --> 00:08:03,760 And then you put the patch which is the disk. 101 00:08:04,000 --> 00:08:05,020 The U.S.. 102 00:08:05,140 --> 00:08:12,720 And then you have a bigger memory to be able to make more cash using the micro take what proxy. 103 00:08:12,760 --> 00:08:18,160 But in my case I don't have that problem with as it is now we need to let the BBC go when someone is 104 00:08:18,160 --> 00:08:22,330 trying to open that Web site to go to Google dotcom how to do it. 105 00:08:22,350 --> 00:08:25,780 And the proxy we have something called here access. 106 00:08:26,090 --> 00:08:28,480 OK what proxy access. 107 00:08:28,480 --> 00:08:38,680 And then we have to say here plus then here we have to say that if anyone going to WWT that we see that 108 00:08:38,890 --> 00:08:47,860 down then the action is D-NY I don't allow him to go to that website but I would like to redirect him 109 00:08:48,310 --> 00:08:53,240 to Google dot com or him I should consult as an example. 110 00:08:53,540 --> 00:08:54,000 OK. 111 00:08:54,130 --> 00:09:01,270 So anyone trying to open www.youtube.com would be denied from the web proxy but we will let them go 112 00:09:01,270 --> 00:09:08,680 to a man city that come and then I would say OK now we can do the experiment to see if it's going to 113 00:09:08,680 --> 00:09:09,040 work. 114 00:09:09,040 --> 00:09:13,680 So I go here to BBC. 115 00:09:13,780 --> 00:09:19,000 Sometimes you need to flash your DNS if you already have opened before. 116 00:09:19,000 --> 00:09:24,800 That's the upside then it has the information of the DNS entry on his computer. 117 00:09:25,080 --> 00:09:30,400 And then this will work but let's try it out to see if that will happen. 118 00:09:30,400 --> 00:09:37,210 So I'm hoping I'll BBC that come and you can see directly when I open BBC dotcom it has redirected me 119 00:09:37,240 --> 00:09:39,970 to my Asha's the national site. 120 00:09:40,300 --> 00:09:47,190 And that's because the web proxy has started and he said OK you have to go now to our city council. 121 00:09:47,430 --> 00:09:52,600 And we look here we can see that it has a head of one sort of news. 122 00:09:52,720 --> 00:09:56,770 One time someone tried to go to BBC dot com which I have done it. 123 00:09:56,950 --> 00:10:01,990 And then it has been redacted to shoot the dash console. 124 00:10:02,620 --> 00:10:09,070 So this is where you can do the redirection in case someone want to go to a website of this be you can 125 00:10:09,070 --> 00:10:12,820 redirect them to another website wannabee's is done. 126 00:10:13,080 --> 00:10:19,780 And with this part I have just covered the part of the what proxy and site the traffic control track 127 00:10:20,260 --> 00:10:26,650 and you can see that it's not a lot of things but proxy is very simple and it's very easy to configure 128 00:10:26,650 --> 00:10:32,640 it on the micro router and there are a lot of users all have problems with the word proxy. 129 00:10:32,710 --> 00:10:36,300 And sometimes they write me say that we have this problem this problem. 130 00:10:36,460 --> 00:10:40,830 So I can say that what proxy on the micro with the router is very limited. 131 00:10:40,930 --> 00:10:47,440 So it's better for you maybe to use to care for another proxy which is more professional if you will. 132 00:10:47,530 --> 00:10:52,750 That's the only thing that maybe one might think is not very big but you can use it if you have a small 133 00:10:52,750 --> 00:10:57,310 network and you want to do some type of caching on your IP traffic. 134 00:10:57,310 --> 00:11:01,240 So with this point I have just finished a section of the proxy. 135 00:11:01,270 --> 00:11:05,320 I hope that you enjoyed this live and I will see you in the upcoming section.