Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Firewall Pfsense - Redirect Traffic 80 to 3128 squid machine

    Scheduled Pinned Locked Moved Firewalling
    9 Posts 5 Posters 55.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A Offline
      andreirp
      last edited by

      How to redirect in the pfsense firewall, the traffic from 80 to 3128 port of my squid machine.

      I dont know how to create this rule in the pfsense firewall, because only have pass,reject and block.

      Someone could help me please ?

      Thanks

      Andrei

      1 Reply Last reply Reply Quote 0
      • D Offline
        dvserg
        last edited by

        Squid have transparent mode. Also mind the NAT rules.

        SquidGuardDoc EN  RU Tutorial
        Localization ru_PFSense

        1 Reply Last reply Reply Quote 0
        • A Offline
          andreirp
          last edited by

          Hi,

          Ok i change the configurantion in the squid.conf

          http_port 3128 transparent

          but, i have to create a firewall rule to redirect the traffic from 80 to 3128 where is running the squid.

          I dont know how to redirect in the pfsense firewall.

          Could help me ?

          Thanks

          Andrei

          1 Reply Last reply Reply Quote 0
          • D Offline
            dvserg
            last edited by

            @andreirp:

            Hi,

            Ok i change the configurantion in the squid.conf

            http_port 3128 transparent

            but, i have to create a firewall rule to redirect the traffic from 80 to 3128 where is running the squid.
            I dont know how to redirect in the pfsense firewall.
            Could help me ?
            Thanks
            Andrei

            Not edit squid.conf manually, this file generated with GUI.
            Use Gui\Proxy server\General settings\Transparent proxy option. All rules will created automticly.

            ps 'NAT' rules page present in GUI too.

            SquidGuardDoc EN  RU Tutorial
            Localization ru_PFSense

            1 Reply Last reply Reply Quote 0
            • A Offline
              andreirp
              last edited by

              thankss. done, its a nat rule !!

              Thankss

              [] ` s

              Andrei

              1 Reply Last reply Reply Quote 0
              • E Offline
                eethore
                last edited by

                how can it works?
                please give me the details…
                i'm trying this for months, can't get the squid working...
                hiks...

                1 Reply Last reply Reply Quote 0
                • E Offline
                  eethore
                  last edited by

                  i just can't do the NAT rules. can u explain more detail?

                  1 Reply Last reply Reply Quote 0
                  • M Offline
                    mplabs
                    last edited by

                    Hi,

                    just create a NAT Rule like this:
                    If: LAN
                    Ext. Adress: any
                    Protocol: TCP
                    Ext. port range: 80 (HTTP)
                    NAT IP: [your squid in different subnet]
                    Local port: 3128 (or your custom squid port)

                    done.

                    It's important that your squid is on another subnet, otherwise you'll create a loop!

                    Greetz,
                    Felix

                    1 Reply Last reply Reply Quote 0
                    • J Offline
                      johncrackernet
                      last edited by

                      You can refer here:
                      http://doc.pfsense.org/index.php/Setup_Squid_as_a_Transparent_Proxy

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.