• Squid Guard PHP error after upgrade to 23.01

    14
    1 Votes
    14 Posts
    3k Views
    S
    @ben-ihelputech Many thanks, that was quite helpful.
  • 23.01 - SquidGuard

    12
    2 Votes
    12 Posts
    2k Views
    A
    @jonathanlee Thanks a lot
  • Squid ClamAV 241st virus caught

    1
    0 Votes
    1 Posts
    373 Views
    No one has replied
  • Clamav pfSense missing clamav.sock on /var/run/clamav

    3
    0 Votes
    3 Posts
    1k Views
    L
    @dobby_ Thanks a lot, I am going to try.
  • Increase in stalkerware over Android Smartphones

    1
    0 Votes
    1 Posts
    469 Views
    No one has replied
  • Squid+SquidGuard and citrix workspace web app

    2
    0 Votes
    2 Posts
    705 Views
    M
    @michele-trotta Hi everyone , sorry for the delay, but the problem has been solved. When the citrix workspace web app is launched it is asked to open a new page with microsodt EDGE. When "Open APP" is confirmed, a file with the ICA extension is downloaded. In this file there is a parameter that identifies an internal proxy that citrix will use. Now once this value has been discovered, it must be included in our Squid and the game is done!!!! Good job everyone Michele
  • 0 Votes
    1 Posts
    583 Views
    No one has replied
  • Firewall rule LAN to LAN

    3
    0 Votes
    3 Posts
    640 Views
    J
    @viragomann I have one interface for LAN, other for VLANs.
  • HAProxy Nextcloud WebDAV URL Discovery

    7
    0 Votes
    7 Posts
    3k Views
    V
    @swemattias said in HAProxy Nextcloud WebDAV URL Discovery: the second part is not able to be saved due to that I have a http redirect already http to https. Possibly you did that wrong? Did you limit the respective ACL to non-HTTPS Traffic?
  • HAProxy use_backend multiple ACLs

    9
    0 Votes
    9 Posts
    2k Views
    L
    @gerdesj said in HAProxy use_backend multiple ACLs: S Haha. That did it. So essentially you don't need any ACLs to help with websockets when using HAProxy. Fantastic. Thanks for the help.
  • Squidguard download for .tar file goes where?

    5
    0 Votes
    5 Posts
    1k Views
    Dobby_D
    @jonathanlee SquidGuard "General settings TAB" For automatic loading this option here must be activated as if I was not getting it wrong. [image: 1682052827901-squidguard.jpg] SquidGuard "Blacklist TAB" And this should be for manual loading that lists but multiple of them (one after one). Links keep stored for the next "run". [image: 1682053079533-squidguard-2.jpg]
  • proxy client can not download large file

    2
    0 Votes
    2 Posts
    651 Views
    S
    @soheil-amiri by increasing retry option on my client application, problem solved.
  • CVE-2023-0056 & CVE-2023-25725 (critical) - haproxy upgrade to 2.2.29 ?

    15
    0 Votes
    15 Posts
    3k Views
    M
    @jsiegfried I don’t see any notification from HA Proxy about that CVE. They haven’t addressed it or spoken about it at least on their blog. The CVE score is pretty low compared to the other one tho. https://www.cvedetails.com/cve/CVE-2023-0056/
  • connection is not private when using Chrome

    squid squid-proxy
    3
    0 Votes
    3 Posts
    2k Views
    GertjanG
    @karimhaydar31 said in connection is not private when using Chrome: X509_V_ERR_SELF_SIGNED_CERT_IN_CHAIN The certificate is valid, but not co-signed by one of the major players, like Verisign etc. see here for a list. The thing is, your browser only accepts (and stays silent) certificates if they were co or toot signed by one of the authorities that are on 'the list' (in your device). You could actually empty this list, and your browser would not even trust https://www.micirostf.com any more. So, the easiest thing to do, is : export the certificate that is being used by the Webconfigurator, and import it into you browser / OS. Now, your browser / OS it trust it, and no more errors. That's all it takes ! You could also get your hands on a certificate that is trusted out of the box. A trusted certificate is free. Example : if these are your general settings : [image: 1681197872695-5f251b0a-5c89-4ab6-aec6-556829c21c72-image.png] and you actually own, or rent the some-domain.tld domain name, you could obtain certificate for *.some-domain.tld for free. The pfSense package "acme" is all about that functionality. Again : the certificate will be free, the domain name will cost some money.
  • Instant Website Redaction Technology Not working

    4
    0 Votes
    4 Posts
    870 Views
    JonathanLeeJ
    @michmoor I think clam AV has it as a false positive.
  • Not understanding the HA Proxy flow for one backend server

    2
    0 Votes
    2 Posts
    892 Views
    M
    @michmoor This was solved on my end. Was an issue with the backend server domain-name vs. hostname configured.
  • Rewrite host address of backend server

    2
    0 Votes
    2 Posts
    881 Views
    M
    @jonathan-young you need a redirection rule - http-request redirect along with a conditional i think would help. http-request redirect location def-test.example.com code 302 if { hdr(host) -i abc-test.example.com
  • HA Proxy - adding defaults

    1
    0 Votes
    1 Posts
    432 Views
    No one has replied
  • 0 Votes
    4 Posts
    1k Views
    stephenw10S
    Try setting a file extension in the field there even if you're not using that.
  • This topic is deleted!

    6
    0 Votes
    6 Posts
    23 Views
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.