Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Squid proxy for outbound traffic of ssh tunnel via ssm agent #583

Open
chary1112004 opened this issue Aug 28, 2024 · 1 comment
Open

Squid proxy for outbound traffic of ssh tunnel via ssm agent #583

chary1112004 opened this issue Aug 28, 2024 · 1 comment

Comments

@chary1112004
Copy link

chary1112004 commented Aug 28, 2024

Hi,

We are setting up ssh tunnel via ssm agent in bastion host to connect resource in private subnet. With ssh tunnel, from browser we configure socks5 to access private resource, however we could also access to unexpected page. We would like to control from browser only some whitelist domains are allowed via squid proxy similar this one for whole server by configure proxy in /etc/environment https://aws.amazon.com/blogs/networking-and-content-delivery/providing-controlled-internet-access-through-centralised-proxy-servers-using-aws-fargate-and-privatelink/.

We follow the guide https://docs.aws.amazon.com/systems-manager/latest/userguide/configure-proxy-ssm-agent.html to configure proxy for ssm however from browser, we still access unexpected pages.

Any suggestion to resolve this issue would be very much appreciated!

Thanks!

@Aperocky
Copy link
Contributor

Can you elaborate to the nature of the "unexpected pages", are these resources within the private subnet that you own or is it in the public internet?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants