• Squid Package Causes System to become Unresponsive

    5
    0 Votes
    5 Posts
    821 Views
    D

    This really cannot be caused by Squid, Squid won't even run until it's configured and enabled via the GUI.

  • Exclude LAN IP from Squid Proxy Report

    1
    0 Votes
    1 Posts
    457 Views
    No one has replied
  • Problem with HTTPS

    1
    0 Votes
    1 Posts
    528 Views
    No one has replied
  • SKYPE: Squidguard Whitelist working

    2
    0 Votes
    2 Posts
    2k Views
    X

    I'm using squid with domain authentication + squidguard , but if I enter the whitelist Skype does not work
    if I do I disable squidguard Skype works  :-\

  • Lightsquid - Tracking / Reporting on blocked sites

    1
    0 Votes
    1 Posts
    691 Views
    No one has replied
  • Squid routing

    3
    0 Votes
    3 Posts
    828 Views
    S

    thats what i was thinking, thank you

  • HAProxy WAF Redundancy ACL

    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Pfsense 2.3.3 squid 0.4.3.6

    2
    0 Votes
    2 Posts
    1k Views
    G

    Hi,

    Why did you create another thread?
    It's best to just add your comment into an existing thread if it exists instead.
    Spreading the same issue in the forum decreases it's value and causes mod's / the people you want not to respond to it.

  • Clamav doesn't stop download of virus signature file

    7
    0 Votes
    7 Posts
    2k Views
    D

    Transparent proxy will filter HTTP (port 80). It can only do content filtering for HTTPS with MITM and certificate installed on all clients.

  • SQUID REVERSE PROXY WITH MORE WEBSERVER

    4
    0 Votes
    4 Posts
    3k Views
    D

    Yeah, for reverse proxy HAproxy is strongly preferred. Much more flexible than Squid.

  • So badly want to run pfsense with multiwan and squid

    2
    0 Votes
    2 Posts
    721 Views
    G

    Squid is both Proxy and Reverse proxy.

    For what purpose do you want / need this combination?

    Why would you need a second machine?

    You probably didn't receive a proper response because you are asking a question that is far to generic and not pointing towards something you actually try to achieve.

  • Reverse Proxy on WAN

    2
    0 Votes
    2 Posts
    836 Views
    G

    Probably no-one responded to this because this is one of the main things you can do with PFSense using HAProxy and even Squid 3 Package.

    Go for HAProxy and dive deep into the Doc's and find examples.
    It's magic!

  • HAProxy frontend listening address

    2
    0 Votes
    2 Posts
    907 Views
    G

    Hi Fluxx,

    It kindof depends on how professional your setup is.
    You will usually have a VIP when you i.e. have two firewalls in a redundant setup.
    If one fails the other one takes over and the both will normally have different IP addresses.

    For this reason a Virtual IP is used as a listening address.
    If one firewall fails the other firewall will start Listening on the VIP address causing all traffic to be routed through that firewall.

    If you have a single firewall setup; I'd forget about it.
    The WAN rule will need to be arranged depending on where you want it to listen on.
    If you're using a VIP; you'll want to be using the VIP to listen on.
    If not I'd advise to use WAN since This Firewall is in fact comparible to any IP the firewall serves (I believe even 127.0.0.1)

  • Haproxy acls

    4
    0 Votes
    4 Posts
    1k Views
    G

    Hmm make sure to setup a proper ACL and get to know regular expressions (www.regexr.com)

    Example for mysite:

    And ACL

    And Actions

  • Unable to Authenticate users!! Can anyone help me ??????

    2
    0 Votes
    2 Posts
    472 Views
    D

    Squid users have really nothing in common with captive portal users nor with users set up in System - User Manager. Completely confused about what you are trying to do there.

  • Squid / Squidguard - or go with freestanding instances?

    7
    0 Votes
    7 Posts
    1k Views
    D

    @aGeekHere:

    ah thanks was a bit hard to find

    https://doc.pfsense.org/index.php/Package_Port_List

    @aGeekHere:

    with https://github.com/pfsense/FreeBSD-ports/commits/devel/www/pfSense-pkg-squidGuard i get Sorry, this commit history is taking too long to generate

    GitHub sucks.

  • SSL Filtering blocks some windows apps (Dropbox, Anydesk and etc.)

    12
    0 Votes
    12 Posts
    7k Views
    D

    @emammadov:

    Then keeping ClamAV Antivirus turned on doesn't make sense?

    "Content filtering (such as Antivirus) will not be available for SSL sites"

  • 0 Votes
    4 Posts
    7k Views
    P

    The backend "Frontend3-offloading" under the header "offloading backend with special check" is sending traffic to the second 1443 frontend.

  • Issue with bypass proxy for these source IPs

    5
    0 Votes
    5 Posts
    2k Views
    jimpJ

    Just because you can, doesn't mean you should.

    Put the hostname in an alias, put the alias name in the squid settings.

    That will (a) stop a bad hostname from tanking squid and (b) allow pfSense to update the alias if the results of the hostname resolution changes.

  • Squid error ERR_READ_ERROR No such file or directory

    3
    0 Votes
    3 Posts
    2k Views
    C

    @doktornotor:

    The problem probably is that you switched the error messages locale to NL but the state of Squid localization sucks goats nuts, to put it mildly. Leave that at English, unless you'd like to finish the translations and submit them upstream.

    Hello doktor,

    Thanks! Nothing to worry about then. Can you tell me where I can change this? Logging settings for squid (access.log) is turned off.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.