• Dual WAN load Balancing + Squid Web Proxy

    Moved
    6
    0 Votes
    6 Posts
    2k Views
    stephenw10S

    If you put Squid 'in-line' with two interfaces then all the redirects would happen there and not at the main firewall.
    You don't have to do that though, it's easier to just redirect traffic to the proxy from the firewall as I outlined. In that case whatever is running Squid is only a proxy server, it only needs one interface.

    Steve

  • SquidGuard XMLRPC Sync error

    1
    0 Votes
    1 Posts
    406 Views
    No one has replied
  • Filter few https websites for all in network & bypass few ips

    Moved
    2
    0 Votes
    2 Posts
    175 Views
    stephenw10S

    You can do that using Squid and Squidguard as you say. First up watch the hangout we did on this:
    https://youtu.be/xm_wEezrWf4

    Steve

  • Squid Antivirus Status Logs Statistics

    7
    0 Votes
    7 Posts
    3k Views
    J

    @doktornotor
    Well the least stated he obvious but was cause of problem. Squidguard.conf was pointing to nonexistent directory, ...log. when installation used ....logs. I think they were just so close I couldn't see the difference for the words.

  • Updating Squid TCP_Outgoing_Address

    Moved
    3
    0 Votes
    3 Posts
    2k Views
    R

    @netn00b not sure if you found a good solution to this.
    I do something similar with a script to update the IP's for my VPN in squid.conf

    I've stripped my VPN config lines out into a seperate file (vpn.conf) and then replaced them with an include

    include /usr/local/etc/squid/vpn.conf

    This way the GUI is always correct and can be updated as normal and you can still keep your IP's current.

  • HAProxy SSL Backend Down (L6TOUT)

    1
    0 Votes
    1 Posts
    848 Views
    No one has replied
  • [SquidGuard] Authorize Google for an app but block it for the browser ?

    1
    0 Votes
    1 Posts
    114 Views
    No one has replied
  • facebook app doesn't work

    2
    0 Votes
    2 Posts
    314 Views
    A

    in Squid/real time
    i found
    TAG_NONE/200 102.132.97.27:443
    when HTTPS/SSL Interception Enable SSL filtering.

  • Reverse proxy with pfSense and Squid not working

    7
    0 Votes
    7 Posts
    2k Views
    N

    Also the dns name for mydomain.ry works but hits the same page as above. when I add a prefix onto it I continue to get:

    This site can’t be reached mail.mydomain.ry’s server IP address could not be found.
    DNS_PROBE_FINISHED_NXDOMAIN

  • Reverse proxy (HAProxy) with permanent OpenVPN Tunnel

    6
    0 Votes
    6 Posts
    1k Views
    S

    @PiBa Thanks! I first placed it in the frontend, but then all my backend servers went to /webmail. I put it in actions in the backend server for my mailserver and it works like a charm!

  • WPAD/SquidGuard - How to force client using it?

    3
    0 Votes
    3 Posts
    547 Views
    B

    @KOM thank you!

  • Configure 3 lan in pfsense

    Moved
    42
    0 Votes
    42 Posts
    6k Views
    A

    @akuma1x @stephenw10 only change the range of the ips ! :o thanks !

  • ClamAV doesn't seem to work

    1
    0 Votes
    1 Posts
    262 Views
    No one has replied
  • Squid proxy block all websites except white listed domains

    Moved
    14
    0 Votes
    14 Posts
    14k Views
    KOMK

    I don't know. I don't use pfB.

  • squid error messages show in different languages

    3
    0 Votes
    3 Posts
    717 Views
    adamwA

    @KOM It was set to "uk" so I changed to "en", saved and restarted service which has fixed the issue. TA

  • Squid HTTPS guide

    7
    0 Votes
    7 Posts
    878 Views
    ressurexR

    @KOM thanks

  • Problem with squid and squidGuard

    8
    0 Votes
    8 Posts
    1k Views
    KOMK

    There must be something in one of the logs:

    Status - System Logs - System - General

    Services - Squid Proxy Server - Realtime

    Try increasing the squid debug log level by adding this to the Advanced Options - INtegrations section for squid:

    debug_options ALL,5

    Increase the value after ALL, to get more and more detailed logging.

    http://www.squid-cache.org/Doc/config/debug_options/

    http://etutorials.org/Server+Administration/Squid.+The+definitive+guide/Chapter+16.+Debugging+and+Troubleshooting/16.2+Debugging+via+cache.log/

  • HA Proxy with TLS 1.3

    2
    0 Votes
    2 Posts
    2k Views
    jimpJ

    TLS 1.3 will require OpenSSL 1.1.x, which is only currently available on pfSense 2.5.0 development snapshots. Though it does look like net/haproxy-devel is at 2.0-dev2 on the branch used for pfSense 2.5.0 development, but the pfSense haproxy-devel package doesn't use it (yet).

    I'm not aware of any plans to switch that over yet, but it's probably just a matter of time.

  • Squid proxy: blocking video streaming using pfSense web interface

    1
    0 Votes
    1 Posts
    777 Views
    No one has replied
  • Add trusted root ca issuer to squid

    8
    0 Votes
    8 Posts
    5k Views
    H

    @sichent This link shows what to do in CentOS or Ubuntu and clearly states (on discussion) that it is not for pfSense.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.