If you want to AVOID completely squid, adding exceptions to the transparent proxy iptables redirect rule is way. You can, however, create an acl in squid for the always_direct directive. From the squid docs:. acl local-servers dstdomain always_direct allow local-servers

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. It reduces bandwidth and improves response times by caching and reusing frequently-requested web pages. Squid has extensive access controls and makes a great server accelerator. It runs on most available operating systems, including Windows and is licensed under the GNU proxy - Squid proxy_protocol_access with dstdomain acl Squid (3.5+) "supports" the proxy protocol and allows it to be used in an acl. A working configuration that I have seen to allow proxy protocol access is below: acl localnet src http_port 3128 require-proxy-header http_port 3128 proxy_protocol_access allow localnet

Squid ACL Proxy Authentication with External Programs Last update: 1999/03/13 17:48h CET The proxy_auth code has been improved in Squid 2.X, please refer to the comments in the Squid 2.X squid.conf file for instructions on how to use it. These pages are currently a little out-of-date. 1. Introduction 2. Syntax 3. Authentication programs 4. ncsa