• SquidGuard not loading blacklist

    2
    0 Votes
    2 Posts
    842 Views
    S

    It must be a browser issue since it worked with Internet Explorer instead of Firefox.

  • SQUID + LDAPS - Certificate problem

    1
    0 Votes
    1 Posts
    631 Views
    No one has replied
  • Squid/SquidGuard not Blocking

    2
    0 Votes
    2 Posts
    842 Views
    A

    Bumb.

    I tried doing a full reinstall but still did not work. I am thinking of downgrading to an older PF sense version.

  • Proxied whitelist but use local gateway?

    2
    0 Votes
    2 Posts
    480 Views
    B

    Just realized my question was vague with the word "sites".  Multiple wan sites is what I meant.. so looking to have many sites via internet point to a single point for whitelist lookup. But once access is allowed to a website Id like the wan site to use its own ISP gateway.

    is this possible?

  • Try to block netflix, zattoo, wilmaa

    2
    0 Votes
    2 Posts
    895 Views
    P

    You could set up squid guard to filter those urls.

  • Squid, itv hub & roku 3

    1
    0 Votes
    1 Posts
    738 Views
    No one has replied
  • Add picture to /usr/local/www/sgerror.php from SquidGuard

    1
    0 Votes
    1 Posts
    857 Views
    No one has replied
  • Squid Guard poor performance!!!

    2
    0 Votes
    2 Posts
    1k Views
    M

    Someone please help!!!

  • Lightsquid Squid Proxy Reports

    2
    0 Votes
    2 Posts
    528 Views
    R

    I could not find the answer in the help documents nor using the forum search. So I kept searching the file system directory by directory till I found the files under "/usr/local/etc/lightsquid".

  • SquidGuard Bug when add many TargetCategories

    1
    0 Votes
    1 Posts
    435 Views
    No one has replied
  • Cannot delete or update squid package

    2
    0 Votes
    2 Posts
    953 Views
    N

    Okay, a reboot fixed this issue but I think a reboot should be the last opinion.

    Regards

  • New to Squid so have questions

    2
    0 Votes
    2 Posts
    652 Views
    C

    Yes, it is possible.

    BUT you cannot use transparent proxy and authenticated (password protected) proxy at the same time.

  • Password Length! HELP!!!

    2
    0 Votes
    2 Posts
    686 Views
    jimpJ

    Squid's basic auth is crap. It's based on crypt and cannot use any password over 8 characters long.

    In prior versions the password was silently truncated and accepted, now it's rejected, which is more correct.

  • [off-topic] [solved] Google Chrome not using proxy settings

    2
    0 Votes
    2 Posts
    760 Views
    C

    Nevermind, I solved the problem.

    Since my company uses Google Apps for work, there was a "cloud" policy under Google Admin Center which sent the proxy to all linked accounts on Chrome.
    The policy was explicit set to connect directly to the internet.

    That´s why the "change proxy" button was even grayed out.

  • Squid +squidGuard not authenticating any user with AD

    3
    0 Votes
    3 Posts
    1k Views
    C

    post your LDAP settings and filter criteria please

  • Squid performance on pfSense 2.3

    2
    0 Votes
    2 Posts
    2k Views
    P

    @monkeyx:

    Hi,

    The settings below were copied from a forum post, that I used to help improve performance of squid on pfSense 2.2. Could anyone advise if these settings are still needed on 2.3?

    add this to the /boot/loader.conf kern.ipc.nmbclusters=32768 kern.maxfiles=65536 kern.maxfilesperproc=32768 net.inet.ip.portrange.last=65535 or just delete it and replace with autoboot_delay="1" #kern.ipc.nmbclusters="0" hint.apic.0.disabled=1 kern.hz=100 #for squid kern.ipc.nmbclusters="32768" kern.maxfiles="65536" kern.maxfilesperproc="32768" net.inet.ip.portrange.last="65535" you might ask why squid is so slow? its because default configuration of pfsense is router not as a server thats why kern.ipc.nmbclusters="0" <- is set to zero. if you just simply remove this squid will be just fine. but to tune the squid i add this kern.ipc.nmbclusters: 32768 kern.maxfiles=65536 kern.maxfilesperproc=32768 net.inet.ip.portrange.last: 65535

    I believe kern.ipc.nmbclusters is the only /boot/loader.conf.local variable you need to set. All of the other settings are managed by pfSense/FreeBSD and are bigger than the values recommended for pfSense 2.2 and earlier:

    [2.3.2-DEVELOPMENT][root@pfSense.lan]/root/scripts: sysctl net.inet.ip.portrange.last net.inet.ip.portrange.last: 65535 [2.3.2-DEVELOPMENT][root@pfSense.lan]/root/scripts: sysctl kern.maxfilesperproc kern.maxfilesperproc: 232389 [2.3.2-DEVELOPMENT][root@pfSense.lan]/root/scripts: sysctl kern.maxfiles kern.maxfiles: 258216 [2.3.2-DEVELOPMENT][root@pfSense.lan]/root/scripts: sysctl kern.ipc.nmbclusters kern.ipc.nmbclusters: 1000000 [2.3.2-DEVELOPMENT][root@pfSense.lan]/root/scripts:
  • 0 Votes
    3 Posts
    885 Views
    jimpJ

    No, you cannot have authentication active in squid while also having transparent mode active.

    There may be some other way to reach the same goal, however, it wouldn't involve strictly using pfSense (e.g. second proxy box you could manually configure with auth, or maybe 802.1x auth to drop into another VLAN, etc)

  • 2.3.1 squid transparent proxy with external clamd

    1
    0 Votes
    1 Posts
    572 Views
    No one has replied
  • SquidGuard Problem.

    1
    0 Votes
    1 Posts
    503 Views
    No one has replied
  • NEED HELP ABOUT SQUIDGUARD AND SQUID

    3
    0 Votes
    3 Posts
    850 Views
    J

    yes i did.. anyways thanks for the help i already fixed the problem

    CHEERS!

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.