• Squid3 Rev.Proxy 'wan' <-> DMZ ? How to disable NAT ?

    1
    0 Votes
    1 Posts
    581 Views
    No one has replied
  • Custom Squid Error Page (sgerror.php)

    2
    0 Votes
    2 Posts
    2k Views
    KOMK

    Stop using Transparent proxy in the first place.  It's nothing but a hassle with HTTPS.  Implement it properly in explicit mode w/ WPAD and you won't have this problem

  • WPAD and mobile users

    5
    0 Votes
    5 Posts
    3k Views
    N

    In the end will be a pain for all Android devices / users that want to use your wifi… I was on the same road like you to filter https and after first 4 mobile devices I disabled wpad, one of them did not had te option to enter proxy, other did not worked properly... ( now wait for pfblocker until it will replace squid with filtering by IP using available blocking lists.)

  • Deleting SquidGuard cache

    3
    0 Votes
    3 Posts
    2k Views
    KOMK

    You should shut down squid first,  then rm -r the cache dir, then run squid -z to recreate it.

  • Another Squid + MultiWan Thread :D

    1
    0 Votes
    1 Posts
    612 Views
    No one has replied
  • Squid 3.5.8

    2
    0 Votes
    2 Posts
    1k Views
    S

    Yes there is a possibility to install the latest version of squid in pfSense,

    but its difficult because you have to build your own .pbi and modify some path links (and so on) to keep the possibility to perform an update later via the webinterface and the full features of the web interface.

    I use a pcbsd for these, I read that it should be easier with the tools repo (link see below) or you could post a bounty.

    tools repo https://forum.pfsense.org/index.php?topic=76132.0

    Bounty https://forum.pfsense.org/index.php?board=34.0

  • 0 Votes
    4 Posts
    2k Views
    KOMK

    Both of those sites work for me, and I'm using squid and squidguard.  In Services - Proxy server - General - Logging Settings, what do you have for X-Forward Mode and Disable VIA?  Try setting X-Forward to Delete and check the Disable VIA box and try again.

  • Squidguard Problem

    3
    0 Votes
    3 Posts
    732 Views
    KOMK

    You have already posted about this here.  Posting several times about the one problem will not get it fixed any faster.

  • WPAD configuration

    3
    0 Votes
    3 Posts
    768 Views
    E

    Thanks for the reply,

    I want to clarify that, when we are blocking http site, squidguard block message is shown, but as soon as we block https site, no block message is shown but the only site not found.

    Also when I try to configure anti virus in squid 3 it start giving icap error and pfsense web page  doesn't open.

  • Havp and snort dont work after fresh install of 2.2.4

    16
    0 Votes
    16 Posts
    4k Views
    M

    just did a another clean install of 2.2.4 x64 and i guess the packages were updated, but everything is working now

  • Squid + traffic shaper (limit per one ip numer) did not work !

    2
    0 Votes
    2 Posts
    1k Views
    K

    Alright lets first check something does your NIC support Limiting? When you go to traffic limiter and go to by interface does it show WAN and LAN?

    Next what do you want to accomplish on squid? block only http sites or block https?

    If you want to block certain IP from the internet why not just create an Alias with a group lets say ex: 192.168.1.5-192.168.1.10 then use that alias on the firewall rules.

    Or do you want to limit certain IP speeds?

  • SQUID3 limit bandwidth by default.

    2
    0 Votes
    2 Posts
    1k Views
    K

    what is your total internet speed on speedtest?

    Have you checked your speed after turning off squid and squidguard?

    Are you running transparent proxy?

  • Squid cache lan speed

    3
    0 Votes
    3 Posts
    1k Views
    A

    In Proxy server: Cache management
    Post your config.

  • 0 Votes
    1 Posts
    4k Views
    No one has replied
  • Getting squid to cache more data

    1
    0 Votes
    1 Posts
    527 Views
    No one has replied
  • HAVP package custom pages folder obsolete?

    2
    0 Votes
    2 Posts
    546 Views
    D

    That's never been the correct path with the PBI crap.

    https://github.com/pfsense/pfsense-packages/pull/1062

  • HAProxy 1.5 and OCSP

    24
    0 Votes
    24 Posts
    8k Views
    M

    Dear PiBa,

    Thank you very much. The OCSP issue was indeed caused by a problem in StartCom's infrastructure, as StartCom's friendly certmaster did confirm. It is gone at present and I hope that it will remain OK in the future.

    Thanks for following up with the OpenSSL issue. It would be good to move from npn to alpn before major providers and their browsers (Chrome) will make the switch, probably by the end of 2015, if they stick to their announcements. Nevertheless all of us should practically take it as it is.

    Regards,

    Michael

  • FTP Client Proxy 0.2.1 questions

    2
    0 Votes
    2 Posts
    1k Views
    D

    Guess its working, when I add Anonymous Only, that works.

    Guess I'll mess with it… maybe I'll get something to click

  • Squid3 no working transparent

    6
    0 Votes
    6 Posts
    1k Views
    N

    did you remember to reboot?

  • Squid-Squidguard-DansGuardian Integration with SARG Request (oh and LDAP)

    13
    0 Votes
    13 Posts
    3k Views
    D

    Frankly, the Squid* stuff is beyond repair. Perhaps, if someone makes a decision what's gonna be the deal with 2.3 packages, people can start reworking those from scratch, without the tons of legacy, buggy and messy code bloat.

    Regarding the changes you mentioned, the only stuff touched there were completely broken cronjobs handling and boot checks. Finally, there's been a change regarding the pinger helper permissions that didn't work due to idiotic chmod() implementation in PHP and - mainly - couldn't have broken anything because it never worked in the first place, due to permissions being screwed by the package code from the very beginning. (https://github.com/pfsense/pfsense-packages/pull/1056).

    I cannot see how's that causing any other breakage anywhere, except that the whole package is just bunch of badly broken code that only works when the moon phase is right and the butterflies wave their wings carefully enough, plus the generic issues with upgrades mentioned above plus the generic issues with the PBI idiocy well known by anyone who touched the packages code.

    I've requested input regarding the cron changes from marcelloc on GitHub. Received absolutely none. Assume he's just dropped the ball due to all that PBI shit. Not surprised and don't blame him.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.