• Squid + Transparent + Bridge = Broken or Fixed?

    1
    0 Votes
    1 Posts
    201 Views
    No one has replied
  • Squid not caching web data

    3
    0 Votes
    3 Posts
    728 Views
    W
    Thanks KOM. Verified cache is working by going to https://www.google-analytics.com/analytics.js. Seeing TCP_MEM_HIT/200 when I go the javascript file hosted by Google.
  • HAproxy: ACL with weaker SSL-ciphers for one IP possible?

    1
    0 Votes
    1 Posts
    322 Views
    No one has replied
  • Issue with slow authentication on squid?

    3
    0 Votes
    3 Posts
    494 Views
    K
    thanks for the reply, i was checking the logs and your right something odd with the active directory but i ended up using the local authentication created all the users
  • Squid/Clamav: Wrong redirect URL

    7
    0 Votes
    7 Posts
    10k Views
    K
    @rggolbraich said in Squid/Clamav: Wrong redirect URL: I know its an old post but here is my solution to the same problem. Solution: when I installed pfSense with all packages I use, I gave it a domain name. After some while, i changed the domain name to my DC, somehow SquidClamAV keeps the old data so I get pointed to unavailable address. To fix this issue I edited 2 files: (Diagnostics - Edit File) /usr/local/etc/c-icap/squidclamav.conf /usr/local/etc/c-icap/squidclamav.conf.pfsense Why them both? because every time I edited the .conf file my settings get back to what it was. after changing them both pfSense kept the configuration and problem were fixed. Thanks for this. Two years later and still a bug.
  • Proxy Issue wpad?

    11
    0 Votes
    11 Posts
    2k Views
    KOMK
    Glad its working for you now.
  • 2.3 - Squid reinstallation fails

    Locked
    14
    0 Votes
    14 Posts
    6k Views
    ?
    @powerrc This worked for me. Thank you very much.
  • Quick Question about LDAP proxy

    1
    0 Votes
    1 Posts
    218 Views
    No one has replied
  • pfsense squid not connecting through an upstream proxy

    1
    0 Votes
    1 Posts
    394 Views
    No one has replied
  • help setting the Public Key Pinning in HAProxy

    13
    0 Votes
    13 Posts
    2k Views
    johnpozJ
    We both learned a bit ;) Thanks for the questions, it got me playing with HA proxy and ACME.. I had not had a reason to use them until you brought up the question(s) After that I had no excuse not to use them and fired up a shared port for my openvpn that listens on 443 and then hands off to ha proxy so I can use https with my ombi plex request system via https ;) Win Win all around I would say!
  • Proxy problem on the guest router

    Moved
    2
    0 Votes
    2 Posts
    422 Views
    M
    If you still have a query related to proxies issues on guest router so in that case I'm recommending you to use VPN as With a VPN for Router, protect every device that connects to the internet. Get FastestVPN and open endless possibilities on all your devices.
  • HA proxy Backend Frontend up down Notification via email

    Moved
    12
    0 Votes
    12 Posts
    2k Views
    ejajE
    Thanks @vallum i get back to with an update that it's working for us or not..Thanks again.
  • Is there any way to bypass specific ip Address range on pfsense.

    Moved
    2
    0 Votes
    2 Posts
    321 Views
    johnpozJ
    That is a proxy question - moved to the correct section. Are you wanting to have specific clients not use the proxy, or not use the proxy for specific dest IPs? Validation of what version your using both for squid and pfsense would be helpful - and are you using transparent mode or explicit for your clients to use the proxy. What are you doing with https, etc.
  • Ns URL domain?

    Moved
    1
    0 Votes
    1 Posts
    339 Views
    No one has replied
  • Squid unable to load single website.

    4
    0 Votes
    4 Posts
    1k Views
    KOMK
    Glad you got it sorted out.
  • Squid3 + transparent mode - somtehing is wrong here.

    8
    0 Votes
    8 Posts
    4k Views
    M
    I got the same error with /var being in RAM not on disk
  • Haproxy missing options

    2
    0 Votes
    2 Posts
    359 Views
    P
    @mindaugezas Go with the option 'none'. And put a sticktable definition and matching rule in the advanced pass tru textbox. Almost any custom option that isn't in the webgui can be added in some textbox somewhere..
  • WARNING " All 5/5 check_cp processes are busy."

    4
    0 Votes
    4 Posts
    658 Views
    GertjanG
    @guilherme_182 said in WARNING " All 5/5 check_cp processes are busy.": WARNING: Consider increasing the number of check_cp processes in your config file. WARNING: 5 pending requests queued WARNING: All 5/5 check_cp processes are busy. Not a "pfSense" process. So probably something from SQUID + Splice ALL + SSL + Squidguard The captive portal doesn't have a (software) proces. At most a couple of instances of the web interface that hosts the login page - several nginx processes. These processes are called "nginx'. As you can image, they do not much work, and they don't 'block' anything. "check_cp" is unknown to me (but I'm not using squid etc as it seems useless these days (to me)).
  • Squidguard with differrent rules for multiple Vlans

    Moved
    8
    0 Votes
    8 Posts
    2k Views
    stephenw10S
    Make sure the clients and Squid are both using the same DNS servers that is biggest cause of issues with Squid. So usually that would be both using Unbound in pfSense. Check the Squid logs and system logs for errors. Also: https://www.netgate.com/docs/pfsense/cache-proxy/squid-troubleshooting.html Steve
  • 0 Votes
    2 Posts
    398 Views
    GertjanG
    You could : Ask for a wild card cert for *.example.com & example.com" and place the obtained certificate on the two servers 172.65.1.11 and 172.65.1.10. Or you can ask for two certs : a cert for the server test.example.com, to be put on server 172.65.1.10 and a cert for test2.example.com, to be put on 172.65.1.11. Btw : certs are totally not aware of IP's and stuff like that. If your server test2.example.com uses IP 192.168.1.10 as of now , the cert will still works just fine.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.