• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Pfsense 2.1.5 block windows update

Cache/Proxy
6
8
2.6k
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • F
    firefox
    last edited by Jun 21, 2015, 11:50 AM Jun 17, 2015, 4:21 AM

    i have a computer with pfsense 2.1.5 on it
    and the packages

    HAVP antivirus
    snort
    squidGuard
    squid 
    pfBlocker
    Avahi

    i just Formatted a computer
    During updates after installation

    I received an error message
    I Googled it
    And was told it was because proxy or blocking

    I connected the computer to A simple home router
    And everything worked correctly
    all update worked

    so i try to add aliases to microsoft update And let him pass freely without Go through any of the packages
    But it is impossible
    Because their numbers change

    how do i do that ?

    1 Reply Last reply Reply Quote 0
    • D
      doktornotor Banned
      last edited by Jun 17, 2015, 6:53 AM

      Stop proxying it.

      1 Reply Last reply Reply Quote 0
      • F
        firefox
        last edited by Jun 17, 2015, 4:13 PM

        how do i do that ?

        1 Reply Last reply Reply Quote 0
        • K
          KOM
          last edited by Jun 17, 2015, 4:42 PM

          By getting rid of squid.  The actual hit rate is so low (4-7%) that it's not really worth it to cache web data anymore.  These days squid is more valuable as the basis for URL filtering with squidguard.  If you don't want to remove squid, you can set his hard disk cache size to 0 or 1 and the hard disk file system to null.

          1 Reply Last reply Reply Quote 0
          • D
            doktornotor Banned
            last edited by Jun 17, 2015, 5:25 PM

            http://wiki.squid-cache.org/SquidFaq/WindowsUpdate

            1 Reply Last reply Reply Quote 0
            • J
              JonathanLee
              last edited by JonathanLee Sep 30, 2021, 5:24 AM Sep 30, 2021, 5:19 AM

              Filtering with squid transparent proxy is very relevant. Squid utilizes a built-in anti virus that frequently scans the content of the websites as they are cached. This proxy also acts also as a content accelerator for your most often downloaded content if the watermarks match. This is a mock DMZ for home use when the anti virus is being utilized. This speeds up use of many items like pictures and icons that never change on some websites. Windows update is the only issue that I cant not figure out. The update stalls out and aborts, however Hulu, Disney +, and Amazon Prime run better than ever before. When I am looking for a movie all the icon images are now not being reloaded when you browse up or down. All of this works flawless. Anti virus, Windows updates, and Xbox One are the only issue. This is night and day on a home network. The fine tuning takes some time. It still works with the containers as the are spun up and destroyed after use. It's the man in the middle with a anti virus scanner. There has to be an option for Windows 10. What network wants to push the same items down over and over and over for no reason? Not mine, use that free space now for better streaming, or other dynamic content. Leave the simple same items day after day sitting in that catch. I have 38 percent hits on some websites. That means its working perfectly. Yes it's not the 1990s with 56k modems but lets face it, how much better my network is running when this is functional demands respect. Thank you pfSense.

              Make sure to upvote

              A 1 Reply Last reply Oct 1, 2021, 8:31 AM Reply Quote 0
              • A
                aGeekhere @JonathanLee
                last edited by Oct 1, 2021, 8:31 AM

                @jonathanlee
                Use WPAD and set your system to automatically detect proxy settings (web browsers and the system should use the WPAD not the transparent + MITM ).
                Have transparent + MITM splice all to catch the rest of the traffic that cannot go through the WPAD.

                There is also a unofficial WPAD package for pfsense that works really well.
                https://forum.netgate.com/topic/100342/guide-to-filtering-web-content-http-and-https-with-pfsense-2-3/190

                The main issue users have they install squid + squidguard and turn on transparent proxy and a MITM and sites break or servers like windows updates do not work.

                Also caching steam and Epic games is quite useful these days.

                So quick answer to fixed these issue
                Manual configure proxy or setup a WPAD (some devices like android need to be manually configured)
                turn on squid transparent proxy
                Turn on MITM splice all

                See how that goes.

                Never Fear, A Geek is Here!

                C 1 Reply Last reply Oct 4, 2021, 4:46 PM Reply Quote 0
                • C
                  chpalmer @aGeekhere
                  last edited by Oct 4, 2021, 4:46 PM

                  6 year old post about 2.1.5??

                  Triggering snowflakes one by one..
                  Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.