• Squid/SquidGuard not Blocking

    2
    0 Votes
    2 Posts
    900 Views
    A
    Bumb. I tried doing a full reinstall but still did not work. I am thinking of downgrading to an older PF sense version.
  • Proxied whitelist but use local gateway?

    2
    0 Votes
    2 Posts
    495 Views
    B
    Just realized my question was vague with the word "sites".  Multiple wan sites is what I meant.. so looking to have many sites via internet point to a single point for whitelist lookup. But once access is allowed to a website Id like the wan site to use its own ISP gateway. is this possible?
  • Try to block netflix, zattoo, wilmaa

    2
    0 Votes
    2 Posts
    943 Views
    P
    You could set up squid guard to filter those urls.
  • Squid, itv hub & roku 3

    1
    0 Votes
    1 Posts
    784 Views
    No one has replied
  • Add picture to /usr/local/www/sgerror.php from SquidGuard

    1
    0 Votes
    1 Posts
    904 Views
    No one has replied
  • Squid Guard poor performance!!!

    2
    0 Votes
    2 Posts
    1k Views
    M
    Someone please help!!!
  • Lightsquid Squid Proxy Reports

    2
    0 Votes
    2 Posts
    548 Views
    R
    I could not find the answer in the help documents nor using the forum search. So I kept searching the file system directory by directory till I found the files under "/usr/local/etc/lightsquid".
  • SquidGuard Bug when add many TargetCategories

    1
    0 Votes
    1 Posts
    439 Views
    No one has replied
  • Cannot delete or update squid package

    2
    0 Votes
    2 Posts
    1k Views
    N
    Okay, a reboot fixed this issue but I think a reboot should be the last opinion. Regards
  • New to Squid so have questions

    2
    0 Votes
    2 Posts
    712 Views
    C
    Yes, it is possible. BUT you cannot use transparent proxy and authenticated (password protected) proxy at the same time.
  • Password Length! HELP!!!

    2
    0 Votes
    2 Posts
    733 Views
    jimpJ
    Squid's basic auth is crap. It's based on crypt and cannot use any password over 8 characters long. In prior versions the password was silently truncated and accepted, now it's rejected, which is more correct.
  • [off-topic] [solved] Google Chrome not using proxy settings

    2
    0 Votes
    2 Posts
    818 Views
    C
    Nevermind, I solved the problem. Since my company uses Google Apps for work, there was a "cloud" policy under Google Admin Center which sent the proxy to all linked accounts on Chrome. The policy was explicit set to connect directly to the internet. That´s why the "change proxy" button was even grayed out.
  • Squid +squidGuard not authenticating any user with AD

    3
    0 Votes
    3 Posts
    1k Views
    C
    post your LDAP settings and filter criteria please
  • Squid performance on pfSense 2.3

    2
    0 Votes
    2 Posts
    2k Views
    P
    @monkeyx: Hi, The settings below were copied from a forum post, that I used to help improve performance of squid on pfSense 2.2. Could anyone advise if these settings are still needed on 2.3? add this to the /boot/loader.conf kern.ipc.nmbclusters=32768 kern.maxfiles=65536 kern.maxfilesperproc=32768 net.inet.ip.portrange.last=65535 or just delete it and replace with autoboot_delay="1" #kern.ipc.nmbclusters="0" hint.apic.0.disabled=1 kern.hz=100 #for squid kern.ipc.nmbclusters="32768" kern.maxfiles="65536" kern.maxfilesperproc="32768" net.inet.ip.portrange.last="65535" you might ask why squid is so slow? its because default configuration of pfsense is router not as a server thats why kern.ipc.nmbclusters="0" <- is set to zero. if you just simply remove this squid will be just fine. but to tune the squid i add this kern.ipc.nmbclusters: 32768 kern.maxfiles=65536 kern.maxfilesperproc=32768 net.inet.ip.portrange.last: 65535 I believe kern.ipc.nmbclusters is the only /boot/loader.conf.local variable you need to set. All of the other settings are managed by pfSense/FreeBSD and are bigger than the values recommended for pfSense 2.2 and earlier: [2.3.2-DEVELOPMENT][root@pfSense.lan]/root/scripts: sysctl net.inet.ip.portrange.last net.inet.ip.portrange.last: 65535 [2.3.2-DEVELOPMENT][root@pfSense.lan]/root/scripts: sysctl kern.maxfilesperproc kern.maxfilesperproc: 232389 [2.3.2-DEVELOPMENT][root@pfSense.lan]/root/scripts: sysctl kern.maxfiles kern.maxfiles: 258216 [2.3.2-DEVELOPMENT][root@pfSense.lan]/root/scripts: sysctl kern.ipc.nmbclusters kern.ipc.nmbclusters: 1000000 [2.3.2-DEVELOPMENT][root@pfSense.lan]/root/scripts:
  • 0 Votes
    3 Posts
    960 Views
    jimpJ
    No, you cannot have authentication active in squid while also having transparent mode active. There may be some other way to reach the same goal, however, it wouldn't involve strictly using pfSense (e.g. second proxy box you could manually configure with auth, or maybe 802.1x auth to drop into another VLAN, etc)
  • 2.3.1 squid transparent proxy with external clamd

    1
    0 Votes
    1 Posts
    583 Views
    No one has replied
  • SquidGuard Problem.

    1
    0 Votes
    1 Posts
    506 Views
    No one has replied
  • NEED HELP ABOUT SQUIDGUARD AND SQUID

    3
    0 Votes
    3 Posts
    919 Views
    J
    yes i did.. anyways thanks for the help i already fixed the problem CHEERS!
  • Haproxy with OpenVPN

    12
    0 Votes
    12 Posts
    11k Views
    S
    It is hard to keep in mind all nuances in all threads :D I never had to use that guide, but as I can see - this exactly what you need, working OVPN as one of backends and X-Forwarded for web requests.
  • Squid bypass. What am I doing wrong ?

    2
    0 Votes
    2 Posts
    829 Views
    A
    You are using a domain name instead on an IP.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.