• HaProxy with Offloading - unable to login to web site

    5
    0 Votes
    5 Posts
    2k Views
    P
    The 'Use "forwardfor" option' in the frontend might help? Otherwise use a 'action' to perform a "http-request header set" with name: X-Forwarded-Proto and fmt: https
  • HAProxy and acl files

    2
    0 Votes
    2 Posts
    1k Views
    P
    Depends a little bit what kind of file you would like to use.. It is possible to use "Source IP matches IP or Alias" as a acl.. for which you then can create a alias in pfSense with IP's and subnets to match against.. But if you want to specify a domain>certificate or domain>backend 'list' or some other option that needs loading from file (besides a few things like lua and errorfiles..). Then the webgui is the thing that doesn't really 'support' it.. Haproxy binary itself is should have most if no all features described in the manual..
  • SQUID FYI Space in Aliases

    2
    0 Votes
    2 Posts
    322 Views
    P
    Also noticed opening HTTPS 443 still allows HTTP on 80
  • Squid/ SquidGuard doesnt do what's supposed

    3
    0 Votes
    3 Posts
    595 Views
    T
    Hey! Thanks for the help man! For some reason when I switched the firewall to another network it started working, but thanks for the help!
  • SquidGaurd Error Page + Transparent Proxy

    4
    0 Votes
    4 Posts
    5k Views
    M
    Over a year later, I, too, am getting the same error but haven't found a solution yet. Antivirus is disabled so I don't know what else to try.
  • Squid - proxy test don't detect proxy

    13
    0 Votes
    13 Posts
    3k Views
    K
    I remember when I built my first pfsense.  I just started adding every feature that looked cool and later realized that most of it I didn't need at home.  Squid and clam av were among those that I found not very useful for my home scenarios.  My clients were either windows which had far superior AV or linux systems which need no AV.  So, I don't use those now. There are scenarios where it is useful though.  For me, I used it to control what my kids could see on the net. Later when they reached their teen years I turned it off…
  • ClamD Keeps Turning Off

    1
    0 Votes
    1 Posts
    340 Views
    No one has replied
  • Squid Reverse proxy, refresh crl after review on acme renewed certificat

    1
    0 Votes
    1 Posts
    375 Views
    No one has replied
  • Log / Statistics for Squid Antivirus Status

    3
    0 Votes
    3 Posts
    990 Views
    BismarckB
    http://www.eicar.org/85-0-Download.html
  • SquidGuard - Filtering multiple usernames in group ACL not working.

    2
    0 Votes
    2 Posts
    573 Views
    R
    looks like this is gonna be a manual process by editing the squidguard.conf manually but still won't work because we cannot edit the squidGuard.conf because it is generated automatically with SquidGuard configurator.
  • SquidGuard Rewrites

    2
    0 Votes
    2 Posts
    2k Views
    cwagzC
    I think the best way to force YouTube and google into safe mode is to use DNS overrides.  This is what I have on my network.  The rewrites rarely work anymore as everything is HTTPS. See my post here: https://forum.pfsense.org/index.php?topic=133689.msg738677#msg738677
  • SSL Bump with transparent proxy

    1
    0 Votes
    1 Posts
    937 Views
    No one has replied
  • Pfsense 2.3.2 Cannot install Squid and SquidGuard

    9
    0 Votes
    9 Posts
    12k Views
    N
    hi all, thanks for the solutions!
  • SSL ERRORS ON GMAIL….

    3
    0 Votes
    3 Posts
    1k Views
    T
    Tks for reply. I did, but dont fix. http proxy dont fail. only https.. if i disable ssl splice all interceptation i have no problems..
  • Squid SSL Filtering - Webconfigurator Lockout?

    2
    0 Votes
    2 Posts
    600 Views
    C
    Would it be possible for someone to move this into the Packages > Cache/Proxy section of the forums - I should have looked around more before I posted it here. Sorry.
  • Does SquidGuard have a dependancy on Squid?

    2
    0 Votes
    2 Posts
    517 Views
    KOMK
    Yes, squidguard requires squid.  If you only want blocking, perhaps pfBlockerNG is a better fit.
  • SquidGuard redirect URL to DNS name vs IP?

    2
    0 Votes
    2 Posts
    1k Views
    R
    Nevermind, answered my own question. I set redirect mode to ext url move (enter URL) And in the Redirect info field, I entered: https://<fqdn of="" my="" firewall="">/sgerror.php?url=403%20&a=%a&n=%n&i=%i&s=%s&t=%t&u=%u Works perfectly! Hopefully that's useful to someone else too.</fqdn>
  • Problem downloading files through squid

    1
    0 Votes
    1 Posts
    689 Views
    No one has replied
  • Problem with squid and multiple gateways

    1
    0 Votes
    1 Posts
    634 Views
    No one has replied
  • Squid 3 Enabling OWA Reverse Proxy Breaks it

    2
    0 Votes
    2 Posts
    487 Views
    P
    Ended up not using port 80 and substituted that for a redirect rule. Not sure why adding that in breaks it
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.