• Can I have a special user to bypass my blocklist in squid?

    4
    0 Votes
    4 Posts
    637 Views
    KOMK

    @persia1364 Yes I believe that you can install Squidguard, configure the LDAP integration and then filter based on usernames but this is not simple and I have not tried it myself.

  • Squid Proxy server + SSL

    5
    0 Votes
    5 Posts
    949 Views
    JonathanLeeJ

    @cobca I do not know if you are running Squidguard, if so also make sure you have a loopback dummy ACL that lets the firewall and the proxy work. If you do not have this it will fail to reach wpad and will not work correctly as Squidguard will block the redirects.

    Screenshot 2022-12-10 at 9.35.14 AM.png
    (Image: My dummy acl)

    I have mine set up to allow the loopback and the firewalls ip address to talk to one another and also let the wpad work.

    Screenshot 2022-12-10 at 9.37.56 AM.png
    (Image: Group acl with loopback and firewall Ip)

    Screenshot 2022-12-10 at 9.38.33 AM.png
    (Image: location of group acl that attaches to the dummy acl rules)

  • Backend webserver refusing connection with HAproxy

    1
    0 Votes
    1 Posts
    269 Views
    No one has replied
  • Errors configuring HAProxy

    1
    0 Votes
    1 Posts
    329 Views
    No one has replied
  • 0 Votes
    1 Posts
    339 Views
    No one has replied
  • Installing an Apache2 Server cluster with a loading balancer

    2
    0 Votes
    2 Posts
    480 Views
    V

    @mnoya2
    Try this:
    https://github.com/ahuacate/pfsense-haproxy/blob/master/README.md
    https://docs.deeztek.com/books/pfsense/page/pfsense-haproxy-softether-vpn
    https://cbonte.github.io/haproxy-dconv/2.2/configuration.html

  • Where are the HAProxy files added on Files?

    1
    0 Votes
    1 Posts
    336 Views
    No one has replied
  • Squid + clamav MITM custom setting

    5
    0 Votes
    5 Posts
    955 Views
    JonathanLeeJ

    @jonathanlee Palo Alto does the same thing with certificates and intercepts on their firewalls. Just set it up ethically and it will work.

    virus.PNG
    (HTTPS cloud based virus stopped with use of MITM)

  • RESOLVED: Splash Screen Issues When Virus Caught

    4
    0 Votes
    4 Posts
    632 Views
    JonathanLeeJ

    @jonathanlee

    I wish you could pick what certificate to ignore with this.

  • Squid Cache Table Question

    1
    1 Votes
    1 Posts
    264 Views
    No one has replied
  • 0 Votes
    3 Posts
    605 Views
    JonathanLeeJ

    @jonathanlee
    The antivirus is working however it no longer uses the red screen also.

    What could cause this?

    Screenshot 2022-12-03 at 9.18.10 AM.png

    New version of found virus screen

    Screenshot 2022-12-03 at 9.17.57 AM.png

    Virus table empty will no longer log files, cleared also to resolve same result no updates are placed into the log file for what virus is found

    Screenshot 2022-12-03 at 9.17.53 AM.png

    Image shows that viruses are caught in https still Eciar test found however it is not logging anything and the red splash screen is gone

  • Squid Log Clam AV Files Stopped Working and Redirect now blank

    11
    0 Votes
    11 Posts
    1k Views
    JonathanLeeJ

    @gertjan

    Error

    squidclamav_check_preview_handler: Wed Nov 30 15:56:36 2022, 92197/1098002432, ERROR clientip is null, you must set 'icap_send_client_ip on' into squid.conf

    Screenshot 2022-11-30 at 4.02.08 PM.png

    It goes on and on...

    I have also just added

    adaptation_send_client_ip {$icap_send_client_ip}

    to line 234 of

    Screenshot 2022-11-30 at 3.32.23 PM.png

    ref https://forum.netgate.com/topic/129331/adaptation_send_client_ip-vs-icap_send_client_ip?_=1669853066007

    It seems to already be enabled also, any ideas?

    Screenshot 2022-11-30 at 4.06.21 PM.png

    Keep in mind it all worked until a week or so ago, not it will not even see the test virus anymore

  • Adaptation_send_client_ip vs icap_send_client_ip

    2
    1 Votes
    2 Posts
    896 Views
    JonathanLeeJ

    @tyoungls

    adaptation_send_client_ip {$icap_send_client_ip}

    are you sure it is not line 234?

    Screenshot 2022-11-30 at 3.32.23 PM.png

  • Squid Clamd and ICAP port questions

    1
    0 Votes
    1 Posts
    344 Views
    No one has replied
  • Suricata and Squid Proxy

    4
    0 Votes
    4 Posts
    2k Views
    J

    @bmeeks Thanks for the reply! Understood!

  • HAProxy - how to delay "coming up" by 30seconds

    1
    0 Votes
    1 Posts
    293 Views
    No one has replied
  • 0 Votes
    1 Posts
    271 Views
    No one has replied
  • how configure shared frontend with two backends

    2
    0 Votes
    2 Posts
    420 Views
    T

    @cesd I answer because noone did till now.
    To create shared frontend, just create your 1st, then on 2nd, it will show you the warning msg and the second website will not work error 50x.
    a tthis point go to the first frontend, edit it and
    select, shared frontend, on dropdown menù, choose the 2nd frontend.
    thats'it

  • PFSense Squid Guard proxy filter locking domain user accounts constantly

    Moved
    1
    0 Votes
    1 Posts
    346 Views
    No one has replied
  • Questions about HAProxy

    1
    0 Votes
    1 Posts
    314 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.