• Squid - which interface?

    4
    0 Votes
    4 Posts
    945 Views
    stephenw10S

    Yes, if you've assigned the bridge and given that the interface address for the subnet then use that.
    However you would normally have that assigned as the LAN in that case so maybe you haven't.

    Steve

  • PFsense+Squid3-ssl bump cetificate signed only SHA1

    3
    0 Votes
    3 Posts
    2k Views
    S

    Same issue in thread https://forum.pfsense.org/index.php?topic=96984.0 .

    Please have a look at it.

  • HA Proxy Redirect Loop

    1
    0 Votes
    1 Posts
    442 Views
    No one has replied
  • SOLUTION: Squid3 - Exclude IP/IP-RANGE from access.log

    9
    0 Votes
    9 Posts
    3k Views
    cyber7C

    WOW…  :o

  • Squidguard blacklist redirect - how?, please help

    3
    0 Votes
    3 Posts
    959 Views
    X

    I don`t need to filter Access by Clients (Groups ACL or Common ACL), but by Target Categories (hosts, URLs). The blacklist redirection should be integrated in Target Categories or Blacklist tab some how, but it is not. So how to tell to blacklisted sites go to ext URL?

  • New version of Squid 3

    1
    0 Votes
    1 Posts
    791 Views
    No one has replied
  • Configure Options to secure SQuiD SSL connections (SQuiD 3.x)

    10
    0 Votes
    10 Posts
    19k Views
    D

    the wrong line inserted, problem solved, used this string to get Qualys grade A with https://forum.pfsense.org/index.php?topic=82914.15:

    some.domain.tld options=NO_SSLv2,NO_SSLv3,CIPHER_SERVER_PREFERENCE cipher=ECDHE-RSA-AES256-GCM-SHA384:ECDHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384:DHE-RSA-AES128-GCM-SHA256:ECDHE-RSA-AES256-SHA384:ECDHE-RSA-AES128-SHA256:ECDHE-RSA-AES256-SHA:ECDHE-RSA-AES128-SHA:DHE-RSA-AES256-SHA256:DHE-RSA-AES128-SHA256:DHE-RSA-AES256-SHA:DHE-RSA-AES128-SHA:!ECDHE-RSA-DES-CBC3-SHA:!EDH-RSA-DES-CBC3-SHA:!AES256-GCM-SHA384:!AES128-GCM-SHA256:!AES256-SHA256:!AES128-SHA256:!AES256-SHA:!AES128-SHA:!DES-CBC3-SHA:HIGH:!aNULL:!eNULL:!EXPORT:!DES:!3DES:!MD5:!PSK:!RC4 dhparams=/usr/pbi/squid-amd64/local/etc/squid/dhparams.pem sslflags=NO_SESSION_REUSE

    it's for squid 3 reverse proxy

  • Dansguardian Blacklist

    2
    0 Votes
    2 Posts
    1k Views
    T

    You could try.. going to a website that should be blocked (IE: Pornhub) and see if it is blocked….

  • Modify default squid error html

    1
    0 Votes
    1 Posts
    698 Views
    No one has replied
  • Tcp_outgoing_address in squid proxy

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Adicionar pacote Squid PFSense 2.2.4

    2
    0 Votes
    2 Posts
    709 Views
    G

    Hi, there seems to be an issue with this PFSense version and Squid3 making Squid3 unavailable in the package list.
    There also is an issue with Squid3 when you upgrade from < 2.2.4 making that it doesn't start.
    The resolution for that issue is discribed in another post.

    You could install 2.2.3, install squid3 and then upgrade to 2.2.4 and follow a short fix that I described in this post https://208.123.73.68/index.php?topic=97211.0.

  • Squid3 unavailable after 2.2.4 upgrade

    2
    0 Votes
    2 Posts
    1k Views
    G

    Hi, I had the same issue.
    Logging in using SSH and executing:

    /usr/pbi/squid-i386/bin/squid

    Did the trick for me and fixed some issue; even after a reboot squid seems to work fine again.

    After that i was able to execute the start and stop from the GUI too.
    Or from the command line:

    /usr/local/etc/rc.d/squid.sh start

    Note: I have squid running on a port above 1024
    Check the tunables under system -> advanced and set the minimum port value from 1024; (default) to 0 to disable this and run squid on i.e. port 80

  • Cache.log WARNING

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    B

    Thank you bro.

  • SSL Interception for Squid 3.4 running in Transparent Mode .

    2
    0 Votes
    2 Posts
    579 Views
    KOMK

    Use explicit mode with WPAD instead.

    https://doc.pfsense.org/index.php/WPAD_Autoconfigure_for_Squid

  • SquidGuard Blacklist DB creation Loop

    16
    0 Votes
    16 Posts
    3k Views
    vallumV

    @KOM:

    Please don't hijack an unrelated thread.  Post your problem in its own thread and I;ll be happy to help.

    Thanks , I'm going to start new thread  :)

  • PfSense 2.2.3 - ClamAV-ICap for Squid3 inpact on througput (HELP)

    11
    0 Votes
    11 Posts
    2k Views
    KOMK

    Regardless, your throughput is going to stink if you have a virus scanner in the mix.  You're better off running an acceptable AV package on your clients instead of loading the firewall with extraneous stuff that's guaranteed to slow the flow.

  • Can't get Squid Reverse Proxy Working

    3
    0 Votes
    3 Posts
    804 Views
    J

    Hi,
    It was on port 80 but I've changed it to 8080 yet it still doesn't work, it no longer gives the error but just sits there and times out trying to access remotely.

    regards
    Jamie

  • Squid cache performance: bad

    6
    0 Votes
    6 Posts
    3k Views
    KOMK

    I'm starting to believe that disk caching is not very useful anymore due to low hit rates, and squid is only good now for URL filtering with squidguard.

  • Squid3 - SquidTrust Helper SSO

    3
    0 Votes
    3 Posts
    1k Views
    S

    Gdsnytech,

    I'm currently on vacation, so I don't have access to my system at this moment, but I'll try and help as much as I can ( from memory). :-)

    The first step is probably to make sure that the "squidtrustIII.exe" is working and reporting the system information correctly.
    Use the squidtrustIII files from the sourceforge page. They are the most current.

    http://sourceforge.net/projects/squidtrust/files/SquidtrustIII/

    Run the exe file on the workstation, and you should see a small penguin pop up in the lower right system tray.

    From a second workstation telnet to the workstation running the agent on port 2199.

    You should then be able to press the number keys 1-7 (if I recall correctly), and the agent should return various system/user information, then disconnect.

    Please verify that the agent is working as expected, and if not, please provide any information that may help in troubleshooting…ie: windows OS, any anti virus running? Can you connect to port 2199 or does the connection not work? .....etc.....

  • LightSquid report configuration (User RealName)

    Locked
    12
    0 Votes
    12 Posts
    9k Views
    N

    @noriel:

    i found a way..solved already.. Thanks a lot

    I didn't post the solution YET because Im currently testing it on my setup..and it sometimes work sometimes not..that't why… I always love to share my solutions,my way of giving back and saying thanks to the community...  I can prove that...

    anyway, I'm trying the method and instructions from this link http://lightsquid.sourceforge.net/How%20It%20Work.html

    I'll post the guide here or how I did it once I tested that it really works. Thanks

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.