• HAProxy Empty Responses

    7
    0 Votes
    7 Posts
    3k Views
    M
    @PiBa Awesome! Thank you again @PiBa and apologies again for the ignorance on my part. Your insight was extremely helpful and the proxy is now behaving as I had hoped. Just a note in case anyone wonders, I tried disabling the transparent IP and that did not help with the interVLAN traffic. The problem only affected the ports defined in HAProxy (80,443) and did not resolve until I added the binded interface in the frontend. I did not expect to have to do that as I thought HAProxy would only listen on the defined ports but it happened to me.
  • HAproxy "Type" frontend setting

    3
    0 Votes
    3 Posts
    950 Views
    P
    @vinceepic Yes TCP mode would work.. But do you have a reason for not using "ssl/https(TCP mode)" which would give the same frontend/backend configuration regarding the passing of the ssl traffic without any changes, but would allow to set some SNI based acl's in the webgui?
  • HAProxy URL redirect

    4
    0 Votes
    4 Posts
    8k Views
    P
    @xternaal Add a acl X that checks 'host matches: service' Then add a action that will perform a 'http-request redirect' for fmt: 'location https://service.contoso.com' when the acl X matches.
  • [Solved] HaProxy not working/port Issue

    Moved
    23
    0 Votes
    23 Posts
    5k Views
    manjotscM
    @PiBa Thank you very much, for all the support you provided.
  • SquidGuard URL re-writing not working

    1
    0 Votes
    1 Posts
    217 Views
    No one has replied
  • TAG_NONE - Squid

    Moved
    1
    0 Votes
    1 Posts
    225 Views
    No one has replied
  • Squid Proxy Cache Security Update Advisory SQUID-2020:1

    1
    0 Votes
    1 Posts
    231 Views
    No one has replied
  • FTP Client Proxy Package - problem with firewall on port 21

    5
    0 Votes
    5 Posts
    1k Views
    DerelictD
    does a fix for this issue exist? Stop using FTP?
  • Zimbra SSL behind ACME and HAProxy

    3
    0 Votes
    3 Posts
    2k Views
    C
    Hi, I'm very interrested by your configuration, since this is exactly what I want to perform. Is it possible to put your config (GUI) or a link to a tuto about. I expect that you put a DNS record to point to HaProxy for internals requests? Are you caching all Zimbra services behind HaProxy? Best. Hope this post will be read since it is a little outdated.; )
  • Recommended steps to update the Squid package?

    1
    0 Votes
    1 Posts
    181 Views
    No one has replied
  • skype files stopped loading after installing opaque proxy

    Moved
    2
    0 Votes
    2 Posts
    322 Views
    NollipfSenseN
    @truacaldwell Without providing more detail info, it's difficult for us to see how pfSense is involved.
  • Squid Proxy through VPN Tunnel

    2
    0 Votes
    2 Posts
    567 Views
    C
    I ran across this in my recent searches as an option but the cron script that they have only works for one ovpnc1 interface. This wouldn't work because I use a Gateway Group that is both ovpnc1 and ovpnc3. Is it possible to create a floating rule that says anything going out of WAN on port 80 (assuming only http transparent proxy) from "This Firewall (self)" gets passed to a gateway group?
  • Help - Unable to reach host on the LAN using FQDN

    Moved
    4
    0 Votes
    4 Posts
    469 Views
    DerelictD
    I connect to the backend servers directly. I refuse to rely on NAT reflection or crap like that on my network.
  • Squid?

    Moved
    7
    0 Votes
    7 Posts
    904 Views
    W
    @Gertjan said in Squid?: @Waqar-UK said in Squid?: for its anti virus capability. It's capable for sure. You are aware of the fact that nearly all fraffic is TLS based these days, which means : the router firewall can't "see" the actual traffic, the payload. And, as far as I know, virus are not transmitted in the Ethernet frame headers. Also, TLS traffic is often marked as non cacheable. I advise you really to look around and see what Squid can really do for you. Thanks. It looks like I will have to look elsewhere. Any hints?
  • Blocking and Filtering using Squid and Squidguard

    Moved
    13
    0 Votes
    13 Posts
    2k Views
    stephenw10S
    Ok, but you said general filtering works just not with schedules right? How do you have that configured? Please post screenshots so we can see exactly what is set. Steve
  • HAProxy and Blue Iris web server

    5
    0 Votes
    5 Posts
    1k Views
    J
    @PiBa GET or HEAD in "Http check method" works!
  • 0 Votes
    4 Posts
    2k Views
    S
    @PiBa Thank you! This advice saved me from drastic measures!
  • Squid Proxy causing Reoccuring Scam/Spam search results

    2
    0 Votes
    2 Posts
    289 Views
    NollipfSenseN
    @petrt3522 The only thing I can suggest is to use pfSense and openDNS to resolve all your DNS request.
  • Accessing from LAN

    5
    0 Votes
    5 Posts
    701 Views
    Y
    thanks a ton It worked.. the only downside is that i run nextcloud without any ssl certs inside the docker container (insecure mode) and when i access it i get these errors There are some warnings regarding your setup. The "Strict-Transport-Security" HTTP header is not set to at least "15552000" seconds. For enhanced security, it is recommended to enable HSTS as described in the security tips ↗. Your web server is not properly set up to resolve "/.well-known/caldav". Further information can be found in the documentation. Your web server is not properly set up to resolve "/.well-known/carddav". Further information can be found in the documentation.
  • XG-1541 Cache Drive

    1
    0 Votes
    1 Posts
    260 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.