Appendix 3. Configuring ICAP balancing using HAProxy

ICAP balancing using the HAProxy load balancer lets you connect one Squid service to several cluster nodes simultaneously and distribute the traffic processing load among them.

By default, ICAP traffic is not encrypted. The application administrator must independently ensure a secure network connection between the HAProxy server and Kaspersky Web Traffic Security, and between the Squid service and the HAProxy server by using traffic tunneling or iptables.

In this section:

Changing the IP address of the ICAP server

Installing and configuring HAProxy

Configuring the Squid service for HAProxy

