• 0 Votes
    6 Posts
    2k Views
    KOMK

    No idea.  I've never done what you're doing there.

  • Why I dont have connection with my proxy?

    12
    0 Votes
    12 Posts
    2k Views
    C

    Ah ok thank you very much for your help.
    Regards.

  • Squid3 (0.2.9) Anti virus warning alerting page

    2
    0 Votes
    2 Posts
    738 Views
  • Skip SSL certificate on squid3

    4
    0 Votes
    4 Posts
    2k Views
    KOMK

    I use squid in explicit mode so that I don't have to play around with certificates.  Configure WPAD to allow your clients to auto-detect your proxy.  I am currently running pfSense 2.2.4 with squid3 0.2.8.  Everything works fine for me.  Transparent mode seduces you with promises of everything just working by magic, but then she stabs you in the back when HTTPS comes along.

  • Shared object "libldap-2.4.so.2" not found

    30
    0 Votes
    30 Posts
    19k Views
    F

    This code may help
    https://forum.pfsense.org/index.php?topic=88221.msg550496#msg550496

  • Squid3 automatically stop at 00:00 (50/50 solved)

    3
    0 Votes
    3 Posts
    947 Views
    C

    Thanks for the help :D

    I found that swapstate_check.php clean is scheduled on 00:00.

    I also found this thread
    https://forum.pfsense.org/index.php?topic=91796.0

    lets try to disable "clear cache on log rotate" :P

    Capture.JPG
    Capture.JPG_thumb

  • Problem Opening Websities when using Transparent https (Squid)

    11
    0 Votes
    11 Posts
    3k Views
    C

    KOM, I'll make my own thread.

    Chidgear, i have this option. i can access in some sites clicking in add to exception,on gmail.com not. Also when i have to updates my applications the proxy server doesn't let me update (Windows, antivirus, local software, etc) this is other problem, i'll make too other thread. like i said; i've tried with, ssl_bump, authentic certificate and my problem is the same.

    I'll tell you any notice

  • Problem with web uploads in new dansguardian 2.12.0.3

    69
    0 Votes
    69 Posts
    33k Views
    marcellocM

    HI James,

    Thank's for the feedback.

    Consider using e2guardian as well. It has many bug fixes from 2.12 dansguardian version

    https://forum.pfsense.org/index.php?topic=87526.msg538417#msg538417

  • Squid Transparent SSL Proxy for pcaps of decrypted traffic

    1
    2 Votes
    1 Posts
    1k Views
    No one has replied
  • Squid logs overhead?

    4
    0 Votes
    4 Posts
    969 Views
    KOMK

    10 users is nothing.  I was talking hundreds or more.

  • Squid3 Transparent Proxy Not working on LAN

    1
    0 Votes
    1 Posts
    942 Views
    No one has replied
  • My HDD got full - squid

    8
    0 Votes
    8 Posts
    1k Views
    A

    @KOM:

    squid -z
    cd /var/squid/cache
    rm -rf *

    This is backwards.  Why would you create the cache structure only to delete immediately afterwards??

    cd /var/squid/cache rm -rf * squid -z

    Whoops, i'll fix it

  • Correct method of configuring PFsense squid proxy non transparent

    6
    0 Votes
    6 Posts
    3k Views
    KOMK

    Google for 'wpad.dat example' and you will get responses that show you how to edit you wpad.dat file to handle local requests.  Your OS should already handle it if you have it set to bypass the proxy for local addresses.

  • Memory utilization is too high

    3
    0 Votes
    3 Posts
    1k Views
    ?

    If there are only 2 GB of memory in, why not even hug up the entire amount of memory to 4 GB or 8 GB
    and forget this "problem" forever? But not slowing down the entire proxy and having some more free
    space for other actions to offer to your firewall? I really don´t know what you have to pay for a 2 GB
    or 4 GB RAM module in your area, but this is not a real big deal today, or?

  • 0 Votes
    1 Posts
    850 Views
    No one has replied
  • Sarg Reports Showing up Blank

    5
    0 Votes
    5 Posts
    2k Views
    D

    I was able to get the reports running using the following procedure.

    1. Start a console/terminal session as root. (I used the shell selection from the serial port.)

    2. rm -Rf /usr/pbi/sarg-amd64/local/sarg-reports/

    3. Edit: /usr/local/www/sarg_frame.php

    3a. Find: $dir="/usr/local/sarg-reports"

    3b. Change to:  $dir="/usr/pbi/sarg-amd64/local/sarg-reports"

    4. From the web interface, go to Status, sarg Reports, Schedule tab, a report, and click on Force Update Now. After this, I am able to see all of the report information. (It would be a nice option to state whether the access on the report were accepted of denied.)

    *  *  *

    It appears that the 64-bit version of sarg has some of it's directories mixed up with the 32-bit version. Here are two places where the 64-bit installation appears to be referencing 32-bit directories.

    1. /usr/pbi/sarg-amd64/local/etc/sarg/sarg.conf has "output_dir" set to "/usr/local/sarg-reports/" while the reports are actually generated to /usr/pbi/sarg-amd64/local/sarg-reports/. Changing the output_dir does not appear to have an effect. If it is changed, it appears to be reset if you change configuration information from the web interface.

    2. The /usr/local/www/sarg_frame.php has the html reports directory hard coded incorrectly as $dir="/usr/local/sarg-reports"

    *  *  *

    I don't think this has anything to do with the report problems, but I have squid set with the Custom Option "cache deny all" from the web interface Services, Proxy Server, General tab. The test system has only the squid and sarg optional packages installed.

    *  *  *

    Can anyone tell me whether these issues should be directed to pfSense or the Sarg sourceforge page?

    Dale W.

  • Some data lost on reboot

    2
    0 Votes
    2 Posts
    723 Views
    K

    Hello, i have the same problem.

    I made configuration in pfsense, the option BlackList, I download the package and install, but if you restart o reboot the pfsense, this lost the package and Squid as squidguard can't work correctly.

    I have to download manually always the package.

    How we can save the package shallalist.tar.gz in disk local for pfsense?

    01.jpg
    01.jpg_thumb
    02.jpg
    02.jpg_thumb

  • Dual Lan + Squid + SquidGuard causing trouble

    10
    0 Votes
    10 Posts
    2k Views
    KOMK

    My Cpu usage was going quite high 28%

    That's not what I would call high, or at least it doesn't appear to be enough to slow down the WebGUI.

    can I server wpad file from a windows 7 machine or we need a webserver to do so.

    You need some sort of HTTP (not HTTPS) server to serve the wpad.dat/proxy.pac files.  Which OS it lives on is irrelevant.I use pfSense itself for this.  I don't have it running in HTTPS mode (you can't access it at all via WAN) and I just dropped my files in /usr/local/www.

  • Squid3-dev and SquidGuard Doesn't start and reboot

    10
    0 Votes
    10 Posts
    1k Views
    A

    I did a full install from a usb stick (apu1d4 does not have a cd drive ) using "Live CD with installer (on usb memstick)".

  • Squid3

    2
    0 Votes
    2 Posts
    564 Views
    S

    Hi

    as you could see in the build options of the actual available version of squid3 for pfsense it should support snmp.

    Squid Cache: Version 3.4.10 configure options:  '--with-default-user=squid' '--bindir=/usr/local/sbin' '--sbindir=/usr/local/sbin' '--datadir=/usr/local/etc/squid' '--libexecdir=/usr/local/libexec/squid' '--localstatedir=/var' '--sysconfdir=/usr/local/etc/squid' '--with-logdir=/var/log/squid' '--with-pidfile=/var/run/squid/squid.pid' '--with-swapdir=/var/squid/cache' '--enable-auth' '--enable-build-info' '--enable-loadable-modules' '--enable-removal-policies=lru heap' '--disable-epoll' '--disable-linux-netfilter' '--disable-linux-tproxy' '--disable-translation' '--disable-arch-native' '--enable-eui' '--enable-cache-digests' '--enable-delay-pools' '--enable-ecap' '--disable-esi' '--enable-follow-x-forwarded-for' '--enable-htcp' '--enable-icap-client' '--enable-icmp' '--enable-ident-lookups' '--enable-ipv6' '--enable-kqueue' '--with-large-files' '--enable-http-violations' '--without-nettle' '--enable-snmp' '--enable-ssl' '--enable-ssl-crtd' '--disable-stacktraces' '--disable-ipf-transparent' '--disable-ipfw-transparent' '--enable-pf-transparent' '--with-nat-devpf' '--disable-forw-via-db' '--enable-wccp' '--enable-wccpv2' '--enable-auth-basic=DB MSNT MSNT-multi-domain NCSA PAM POP3 RADIUS fake getpwnam LDAP NIS' '--enable-auth-digest=file' '--enable-external-acl-helpers=file_userip time_quota unix_group LDAP_group' '--enable-auth-negotiate=kerberos wrapper' '--enable-auth-ntlm=fake smb_lm' '--enable-storeio=ufs aufs diskd' '--enable-disk-io=AIO Blocking IpcIo Mmapped DiskThreads DiskDaemon' '--enable-log-daemon-helpers=file' '--enable-url-rewrite-helpers=fake' '--enable-storeid-rewrite-helpers=file' '--with-openssl=/usr' '--prefix=/usr/local' '--mandir=/usr/local/man' '--infodir=/usr/local/info/' '--build=amd64-portbld-freebsd10.1' 'build_alias=amd64-portbld-freebsd10.1' 'CC=cc' 'CFLAGS=-O2 -pipe  -I/usr/local/include -I/usr/local/include -I/usr/include -fstack-protector -DLDAP_DEPRECATED -fno-strict-aliasing' 'LDFLAGS= -L/usr/local/lib -L/usr/local/lib -pthread -Wl,-rpath,/usr/lib:/usr/local/lib -L/usr/lib -fstack-protector' 'LIBS=' 'CPPFLAGS=' 'CXX=c++' 'CXXFLAGS=-O2 -pipe -I/usr/local/include -I/usr/local/include -I/usr/include -fstack-protector -DLDAP_DEPRECATED -fno-strict-aliasing  -Wno-unused-private-field' 'CPP=cpp' 'PKG_CONFIG=pkgconf' --enable-ltdl-convenience
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.