• Local management of LE haproxy certificates

    22
    0 Votes
    22 Posts
    1k Views
    frankzF

    @viragomann Grazie , But my great difficulty is the English translation > ita which is often not very precise. I'm sorry if I made you angry it wasn't my intention. Thank you for your very important help for me.

  • HAProxy on pfSense 2.7.2 pfSense WEBGUI w/ Cloudflare

    4
    0 Votes
    4 Posts
    768 Views
    A

    @VMlabman

    Under Backend tab for the pfsense-01. you need to select a CA and select the client certificate that you have generated for your pfsense-01.

    Under Frontend tab under SSL offloading, select the ACME generated certificate under Certificate.

    Check if those settings fixes the issue you are having.

    Also I recommend watching the following youtube:

    How to Setup ACME, Let's Encrypt, and HAPRoxy in pfsense

  • Squid 5.8 ---> 5.9

    31
    2 Votes
    31 Posts
    4k Views
    JonathanLeeJ

    @DBMandrake I also had a ticket open for this, it was closed as a duplicate I do know what you're talking about, iTunes does it also.

  • 1 Votes
    4 Posts
    855 Views
    JonathanLeeJ

    6.6 is active in 24 beta if anyone else wants to test it.

  • Squid 6.8 available

    2
    2 Votes
    2 Posts
    546 Views
    JonathanLeeJ

    @lg1980 can you access the status page in squid 6.6? My system works but the status page says access denied

  • haproxy connectwise control (screen connect) relay internally not working

    3
    0 Votes
    3 Posts
    612 Views
    V

    @compsmith said in haproxy connectwise control (screen connect) relay internally not working:

    DNS resolver has a Host Override with the screen connects subdomain pointing to the lan ip of the pfsense firewall.

    Remove this.

  • Hits Cache What is better?

    1
    0 Votes
    1 Posts
    232 Views
    No one has replied
  • squid 0.4.46 is not recognizing Installed CA or Certificates

    2
    0 Votes
    2 Posts
    270 Views
    D

    @M-Aly I don't know the answer to your problem but I would suggest if you need a reverse proxy that you just use HAProxy.

    Not only is HAProxy designed specifically to be a reverse proxy and load balancer, (while it is really only a secondary feature of Squid) netgate have said they are removing Squid from PFSense in the next major version release (presumably 2.8.0) so any time you spend setting this up and getting it working is going to be wasted when Squid is removed... so you might as well set up HAProxy from the beginning.

  • Pfsense 2.3 - squid - cachemgr.cgi - browser only downloads the file

    10
    1 Votes
    10 Posts
    4k Views
    JonathanLeeJ

    @bnangle thank you worked great!!

  • Accessing cachemgr.cgi over https???

    1
    0 Votes
    1 Posts
    124 Views
    No one has replied
  • HAProxy TCP Mode SSL Offloading NOT WORK

    20
    0 Votes
    20 Posts
    3k Views
    V

    @johnpoz
    so practically if or if I have to install the certificate on my nas synology
    I handle some networking, but the truth is super weird to believe that there is no possibility that a firewall can not be configured in some existing way so that in tcp load the certificate
    because in many forums people want pfsense/haproxy to take care of this, not the nas (for the same reason they don't want to install the certificate on their nas).
    I hope to find someday the solution or the firewall or the steps to allow it to somehow load the certificate and not the equipment (nas synology).

    you would know how to configure to do it pfsense/haproxy or you really do not know (that's why you give me the simplest option that is repeated in all places)

  • HAProxy + Intel QAT

    7
    0 Votes
    7 Posts
    1k Views
    planedropP

    @justme2 Gotcha, well this is a good start at least. I'm considering the same platform for a proper 10 gigabit system (WAN side with NAT) as my Netgate 6100 isn't keeping up with my new WAN provider. QAT is fairly important for me though as well.

  • Can't seem to get HAProxy working

    7
    0 Votes
    7 Posts
    617 Views
    Z

    @zari90

    9f4edffa-17ca-46b5-a78c-d09c12e60e91-image.png

    got it working thanks guys appreciate the replies and the help switch from http to basic and it went green, switched it back to http and it went red then switched to ssl because it has a cert attached with my domain and it worked again

  • HAProxy CPU usage

    2
    0 Votes
    2 Posts
    296 Views
    V

    @michaelschefczyk
    No issues here. However, I don't use haproxy-devel.

  • Squid Status TAB

    2
    0 Votes
    2 Posts
    188 Views
    JonathanLeeJ

    Can you please share a screenshot?

  • This topic is deleted!

    1
    0 Votes
    1 Posts
    11 Views
    No one has replied
  • [SOLVED]squid wont cache squid tcp_miss200 & access denied

    10
    0 Votes
    10 Posts
    12k Views
    JonathanLeeJ

    @KOM thanks for the reply, I love this program, again not many people play around with storeID so I think I have replied to some older posts on it. The caching part of squid is amazing. It’s the $5 or static parts of the text files for the program that lack information on what they do. There is really no explanation on why the database files use that.

  • Add FastCGI App directly to HAProxy

    1
    1 Votes
    1 Posts
    159 Views
    No one has replied
  • 0 Votes
    7 Posts
    1k Views
    J

    it would be REALLY SLICK if someone were to develop a web gui for it, kinda like ntopng where you install clamav and then navigate to a web address:port-number and have a dedicated page for all things clamav..

    I doubt there's even a way to request that, along with the considerable resources it would take to develop it.

  • StoreID and Squid "helper program"

    16
    1 Votes
    16 Posts
    3k Views
    M

    @JonathanLee said in StoreID and Squid "helper program":

    Does anyone work with Store ID?

    Unfortunately no, I didn't.. splice all with cache disabled for me.
    Squid/Squidguard was just to filter SNI header..

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.