• Routing OpenVPN clients(Virtual Interface) through Squid Proxy

    1
    0 Votes
    1 Posts
    233 Views
    No one has replied
  • Configuring multiple applications on same port

    1
    0 Votes
    1 Posts
    297 Views
    No one has replied
  • What came first - the firewall or the HAProxy?

    3
    0 Votes
    3 Posts
    959 Views
    K
    Hi @surinameclubcard thanks for taking the time to answer! I will definitely try that second example then. FWIW, I am currently using the first example i.e. NAT then HAProxy, and can confirm that does work.
  • HAProxy configuration problem (GUI causing it?)

    2
    0 Votes
    2 Posts
    1k Views
    S
    Replying to myself: I just did a clean install of pfSense 2.4.4p1 and tried above with the haproxy-devel package: Create a frontend, name it "test", save, Open "test", add an ACL, notice there is no "Traffic is ssl (no value needed):" option, Just to continue, name the ACL "https", expression="Host starts with:", value="https", save, Open "test" once again, edit the ACL, notice now there is the "Traffic is ssl (no value needed):" option, Change the expression to "Traffic is ssl (no value needed):", remove the value, save, same error. Or the ACL was completely removed. Either something is broken or I am completely not understanding this user interface?
  • C-ICAP Error on One Site

    2
    0 Votes
    2 Posts
    608 Views
    M
    Anyone challenged with clamav and icap errors? I've increased the parameters recommended here. It seems to resolve the issue I'm currently seeing, but I now have each parameter at 3x their original default. I just hit another icap error and am getting ready to go to 4x, but I can't help but think clamav isn't worth running.
  • HAProxy: Rewriting help needed (hiding folder)

    1
    0 Votes
    1 Posts
    317 Views
    No one has replied
  • Squid MITM: How to retrieve decrypted data?

    squid mitm man-in-the-midd tls ssl
    5
    0 Votes
    5 Posts
    2k Views
    Z
    Thanks for the info. Astounding is what this is. :-)
  • SquidGuard log to remote syslog server

    1
    0 Votes
    1 Posts
    361 Views
    No one has replied
  • PROXY x PROXY TRANSPARENTE

    7
    0 Votes
    7 Posts
    1k Views
    vallumV
    @massao said in PROXY x PROXY TRANSPARENTE: I have yes DHCP but in mikrotik, and Active Directory in windows 2012 R2. The structure looks like this: 2 Internet link arriving in Mikrotik, and mikrotik connected pfsense and AD ok . Use your AD to host wpad file via IIS. Use DHCP to serve wpad files. all machine should be configured with "automatic detect settings" this can be done via AD too. Refer below link : https://findproxyforurl.com/deploying-wpad/
  • http 80 always allowed

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Squid: how to "catch" 8080 port web traffic

    7
    0 Votes
    7 Posts
    2k Views
    vallumV
    @genseb I have not used transparent proxy. may be it should create automatic NAT when you add port there in Safe_ACL. Pfsense is a Good firewall, but lot of issues in proxy.
  • Squid and OPTx ifs

    2
    0 Votes
    2 Posts
    409 Views
    S
    Ok, I clicked enough around and found I needed to enable this interface. Now the enabled OPTx interfaces appear in the squid proxy interface list.
  • Squid ClamAV antivirus not working properly

    2
    1
    0 Votes
    2 Posts
    288 Views
    No one has replied
  • When Squid 4.2?

    3
    0 Votes
    3 Posts
    533 Views
    W
    I didn't know that that exists. Thanks
  • Squid

    2
    0 Votes
    2 Posts
    443 Views
    KOMK
    I odn't think so. pfSense squid has no definition for snmp_port that I could find. Nothing in the GUI either, so it may not support SNMP at all.
  • cannot implement squid + pfsense + active directory

    Moved
    7
    0 Votes
    7 Posts
    3k Views
    vallumV
    @helpuser copy your keytab file as: /etc/krb5.keytab chown :proxy /etc/krb5.keytab chmod 0750 /etc/krb5.keytab squid.conf : auth_param negotiate program /libexec/squid/negotiate_wrapper_auth --ntlm /libexec/squid/ntlm_auth mydomain.ru --helper-protocol=squid-2.5-ntlmssp --kerberos /libexec/squid/negotiate_kerberos_auth -s GSS_C_NO_NAME Refer below link : https://wiki.squid-cache.org/ConfigExamples/Authenticate/WindowsActiveDirectory
  • 0 Votes
    7 Posts
    6k Views
    M
    @mr-newbie By the way, I have installed squid, squid proxy and light squid. I also configured LDAP for my Active Directory users so the transparent proxy was not enabled. Thanks for your suggestion. :)
  • ICAP protocol error.

    4
    0 Votes
    4 Posts
    1k Views
    I
    From my understanding memory cache amount is the minimum squid will use for cache plus you also have to allow for antivirus scan's, in transit object's, etc. For instance on my home network I use 1024mb and 256kb and when I check System Activity squid is using 2646mb. and Clam is using another 948mb.plus you have to provide memory for any other package's you install and the firewall itself.
  • HAProxy config fails to operate properly after 2.4.4 upgrade

    9
    0 Votes
    9 Posts
    9k Views
    L
    @piba I might try creating a lua script in the future, i guess i start reading about the inner working of Remote Desktop Gateway or try a attempt to decompile some MS binaries :-) to get a idea what they are doing. Thanks for the help so far.
  • HAProxy 0.59_14: unable to add errorfile to backend

    4
    0 Votes
    4 Posts
    942 Views
    P
    Yes I can confirm it works after applying that patch.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.