• pfsense squid not connecting through an upstream proxy

    1
    0 Votes
    1 Posts
    412 Views
    No one has replied
  • help setting the Public Key Pinning in HAProxy

    13
    0 Votes
    13 Posts
    2k Views
    johnpozJ
    We both learned a bit ;) Thanks for the questions, it got me playing with HA proxy and ACME.. I had not had a reason to use them until you brought up the question(s) After that I had no excuse not to use them and fired up a shared port for my openvpn that listens on 443 and then hands off to ha proxy so I can use https with my ombi plex request system via https ;) Win Win all around I would say!
  • Proxy problem on the guest router

    Moved
    2
    0 Votes
    2 Posts
    439 Views
    M
    If you still have a query related to proxies issues on guest router so in that case I'm recommending you to use VPN as With a VPN for Router, protect every device that connects to the internet. Get FastestVPN and open endless possibilities on all your devices.
  • HA proxy Backend Frontend up down Notification via email

    Moved
    12
    0 Votes
    12 Posts
    2k Views
    ejajE
    Thanks @vallum i get back to with an update that it's working for us or not..Thanks again.
  • Is there any way to bypass specific ip Address range on pfsense.

    Moved
    2
    0 Votes
    2 Posts
    329 Views
    johnpozJ
    That is a proxy question - moved to the correct section. Are you wanting to have specific clients not use the proxy, or not use the proxy for specific dest IPs? Validation of what version your using both for squid and pfsense would be helpful - and are you using transparent mode or explicit for your clients to use the proxy. What are you doing with https, etc.
  • Ns URL domain?

    Moved
    1
    0 Votes
    1 Posts
    354 Views
    No one has replied
  • Squid unable to load single website.

    4
    0 Votes
    4 Posts
    1k Views
    KOMK
    Glad you got it sorted out.
  • Squid3 + transparent mode - somtehing is wrong here.

    8
    0 Votes
    8 Posts
    4k Views
    M
    I got the same error with /var being in RAM not on disk
  • Haproxy missing options

    2
    0 Votes
    2 Posts
    371 Views
    P
    @mindaugezas Go with the option 'none'. And put a sticktable definition and matching rule in the advanced pass tru textbox. Almost any custom option that isn't in the webgui can be added in some textbox somewhere..
  • WARNING " All 5/5 check_cp processes are busy."

    4
    0 Votes
    4 Posts
    715 Views
    GertjanG
    @guilherme_182 said in WARNING " All 5/5 check_cp processes are busy.": WARNING: Consider increasing the number of check_cp processes in your config file. WARNING: 5 pending requests queued WARNING: All 5/5 check_cp processes are busy. Not a "pfSense" process. So probably something from SQUID + Splice ALL + SSL + Squidguard The captive portal doesn't have a (software) proces. At most a couple of instances of the web interface that hosts the login page - several nginx processes. These processes are called "nginx'. As you can image, they do not much work, and they don't 'block' anything. "check_cp" is unknown to me (but I'm not using squid etc as it seems useless these days (to me)).
  • Squidguard with differrent rules for multiple Vlans

    Moved
    8
    0 Votes
    8 Posts
    2k Views
    stephenw10S
    Make sure the clients and Squid are both using the same DNS servers that is biggest cause of issues with Squid. So usually that would be both using Unbound in pfSense. Check the Squid logs and system logs for errors. Also: https://www.netgate.com/docs/pfsense/cache-proxy/squid-troubleshooting.html Steve
  • 0 Votes
    2 Posts
    430 Views
    GertjanG
    You could : Ask for a wild card cert for *.example.com & example.com" and place the obtained certificate on the two servers 172.65.1.11 and 172.65.1.10. Or you can ask for two certs : a cert for the server test.example.com, to be put on server 172.65.1.10 and a cert for test2.example.com, to be put on 172.65.1.11. Btw : certs are totally not aware of IP's and stuff like that. If your server test2.example.com uses IP 192.168.1.10 as of now , the cert will still works just fine.
  • Squid only for caching

    4
    0 Votes
    4 Posts
    800 Views
    Raffi_R
    Prioritizing traffic could help make better use of the bandwidth available. I never looked at the traffic shaper, but I imagine someone on here has. https://www.netgate.com/docs/pfsense/book/trafficshaper/what-the-traffic-shaper-can-do-for-a-network.html
  • Wpad only works if suffix domain exist in clients

    4
    0 Votes
    4 Posts
    1k Views
    KOMK
    Then you must set a local domain manually as well. The way WPAD works is that the client will do a DNS lookup for wpad.yourdomain.blah. The client then asks the server at the IP address for wpad.yourdomain.blah for its wpad.dat, wpad.da or proxy.pac file. The client then parses the requested WPAD config file to know where the proxy is and when to use it.
  • Squid proxy usefulness ?

    5
    0 Votes
    5 Posts
    967 Views
    Raffi_R
    Same experience as you guys. Used it for caching and ClamAV. It was a false sense of security at best since it could only scan ~ 1% of traffic. So even if it was a 100% effective AV, it was still mostly useless. No point in adding complexity so I no longer use squid.
  • HAproxy issue with 2 domains?

    5
    0 Votes
    5 Posts
    814 Views
    K
    Thanks for the reply, so after many hours it was the HAproxy redirect rule i had to add 2 more rules on the ACL added web2 and web3 host matches www.mydomain.com and www.mydomain2.com on the bottom on actions add http-request redirect with the rule rule: prefix https://mydomain.com and the same thing for the mydomain2.com for anyone else that has this issue do the following. Hope this helps
  • Squid + Captive Portal Auth

    9
    0 Votes
    9 Posts
    6k Views
    D
    Bonjour, j'ai beau navigué sur les forum en long en large et en travers, je ne trouve aucune information sur le fonctionnement de squid avec une authentification via portail captif couplé au ldap. C'est une solution proposée par pfsense mais je n'arrive pas à le faire fonctionner. Merci.
  • Want squid, but also want pfblocker, working firewall rules for 80,443

    1
    0 Votes
    1 Posts
    292 Views
    No one has replied
  • Squid SNMP

    1
    0 Votes
    1 Posts
    249 Views
    No one has replied
  • Throttle Other Extensions doesn't work

    1
    0 Votes
    1 Posts
    319 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.