• Install AWStats for squid-cache stats

    1
    0 Votes
    1 Posts
    781 Views
    No one has replied
  • Content of "Target Rules" field is not saved - SquidGuard

    1
    0 Votes
    1 Posts
    396 Views
    No one has replied
  • Can't start squid, squidguard or lightsquid

    5
    0 Votes
    5 Posts
    1k Views
    F

    I just got the squid and squidguard working as it was before (fingers crossed as I still need to do some test) but again, I couldn't have done it without your help

    will keep the configuration backup suggestion in mind for next upgrade and I'll get a tab screen capture to redo the config which is not that bad.

    Thank you again!

    Cheers!

  • 0 Votes
    4 Posts
    1k Views
    D

    Ok, I managed to change my setup to use HTTPS instead, here's my config:

    global maxconn 1000 stats socket /tmp/haproxy.socket level admin uid 80 gid 80 nbproc 1 chroot /tmp/haproxy_chroot daemon listen HAProxyLocalStats bind 127.0.0.1:2200 name localstats mode http stats enable stats refresh 10 stats admin if TRUE stats uri /haproxy/haproxy_stats.php?haproxystats=1 timeout client 5000 timeout connect 5000 timeout server 5000 frontend SharedFront bind 58.182.70.241:443 name 58.182.70.241:443  mode tcp log global timeout client 30000 tcp-request inspect-delay 5s acl ACL1 req.ssl_sni -i aaa.ddns.net acl ACL2 req.ssl_sni -i bbb.ddns.net tcp-request content accept if { req.ssl_hello_type 1 } use_backend aaa_https_ipvANY  if  ACL1 use_backend bbb_https_ipvANY  if  ACL2 backend aaa_https_ipvANY mode tcp log global timeout connect 30000 timeout server 30000 retries 3 option httpchk GET / server aaa 192.168.1.23:443 check-ssl check inter 1000  verify none backend bbb_https_ipvANY mode tcp log global timeout connect 30000 timeout server 30000 retries 3 option httpchk GET / server bbb 192.168.1.24:443 check-ssl check inter 1000  verify none

    Can someone help check if there will be potential issues?

  • PfSense Reverse Proxy - HAProxy or Squid?

    2
    0 Votes
    2 Posts
    2k Views
    D

    HAProxy, hands down.

  • Enable userlist Squidguard Pfsense 2.3.2

    1
    0 Votes
    1 Posts
    501 Views
    No one has replied
  • Block Website Through squid proxy

    2
    0 Votes
    2 Posts
    662 Views
    S

    You need a program to look into the traffic - one possible solution is ICAP server - see https://docs.diladele.com/tutorials/filtering_https_traffic_squid_pfsense/index.html

  • Squid + Authentication Method : NT Domain

    6
    0 Votes
    6 Posts
    3k Views
    D

    LDAP/RADIUS should work with 0.4.26.

    NT Domain auth is gone with 0.4.29.

  • Reverse Proxy - 403 Denied

    6
    0 Votes
    6 Posts
    4k Views
    ?

    ive updated packages to latest, reconfigured everything and jeeeh, now i get another error which i am not able to fix too:

    1482081072.306      1 192.168.178.254 TAG_NONE/400 3795 NONE error:request-too-large - HIER_NONE/- text/html 1482081072.322    28 192.168.178.254 TCP_MISS/400 3858 GET http://blabla.myfritz.net:8080/ - HIER_DIRECT/192.168.178.253 text/html

    in browser i get squid error page:

    ERROR The requested URL could not be retrieved The following error was encountered while trying to retrieve the URL: error:request-too-large The request or reply is too large. ...

    config:

    http_port 192.168.178.253:8080 accel defaultsite=blabla.myfritz.net vhost cache_peer 10.10.55.10 parent 8080 0 proxy-only no-query no-digest originserver login=PASS name=rvp_pi_peer acl rvm_pi_uri url_regex -i ^http://blabla.myfritz.net:8080/.* cache_peer_access rvp_pi_peer allow rvm_pi_uri cache_peer_access rvp_pi_peer deny allsrc never_direct allow rvm_pi_uri http_access allow rvm_pi_uri

    its very frustrating  :o

  • RDS Gateway with Squid RP

    2
    0 Votes
    2 Posts
    638 Views
    F

    Up :)

  • Haproxy Backend clone bug

    2
    0 Votes
    2 Posts
    634 Views
    D

    Avoid the clone button.

    https://redmine.pfsense.org/issues/6756
    https://redmine.pfsense.org/issues/6511

  • SquidGuard question

    1
    0 Votes
    1 Posts
    620 Views
    No one has replied
  • SquidGuard & Squid Https Filtering

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    DerelictD

    Yeah I'll lock this. Thanks. If someone has a similar issue please post a new thread in Cache/Proxy.

  • Squid failed to install after upgrading to 2.3.2

    2
    0 Votes
    2 Posts
    1k Views
    L

    Hi.

    I had the same problem and found solution.

    So go to “Diagnostics->Command Prompt“.

    Type the command below on “Execute Shell command” and click ‘Execute‘.

    pw useradd clamav -G wheel

    Type again the command below on “Execute Shell command” and click ‘Execute‘.

    pw usermod clamav -G wheel

    Now try to install squid again.  ;)

  • Ssl https not work in some website (SSL Man In the Middle Filtering)

    12
    0 Votes
    12 Posts
    8k Views
    A

    Thank you for testing it. Can anyone else also try it please. Accessing https://workshop.olacabs.com  with SSL bump in transparent mode.

    Thank you
    Ashima

  • Sqstat forbidden error for version 2.3.2

    5
    0 Votes
    5 Posts
    4k Views
    Y

    Yes i follow the instruction but still not working..yes im using squidguard

  • Squid max download size not working in HTTPS sites

    1
    0 Votes
    1 Posts
    592 Views
    No one has replied
  • Squid & Squid Guard

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Explicit Proxy for mobile devices

    2
    0 Votes
    2 Posts
    943 Views
    KOMK

    1.  Yes, with the help of squidguard.

    2.  Yes, but make sure you run IIS in HTTP mode, not HTTPS.  WPAD directions for pfSense.

    3.  Not that I am aware of.

    4.  Never had this happen to me, but in squid's config options you need to check Disable VIA Header and set the X-Forwarded Header Mode to delete.  Without these changes, you are literally announcing to the world that you are proxied.

  • Ssl filtering seems impossible

    15
    0 Votes
    15 Posts
    2k Views
    S

    You seem to be using Firefox to test HTTPS filtering; please not FF does not use the system certificate storage as you indicated in your screenshot - you need to add trusted root certificate to FF own storage. See https://docs.diladele.com/administrator_guide_4_8/https_filtering/install_certificates/win_ff.html

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.