Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Squid on Multi-WAN

    Scheduled Pinned Locked Moved pfSense Packages
    8 Posts 3 Posters 5.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      Gob
      last edited by

      Hi
      I am trying to build a Multi-WAN pfS box.
      My first query is relating to Squid…
      Does it use the default NAT rules for determining which gateway to use for web requests or does it always use the WAN interface?

      Ideally I would like them to go through WAN2

      Thanks

      If I fix one more thing than I break in a day, it's a good day!

      1 Reply Last reply Reply Quote 0
      • ?
        Guest
        last edited by

        Please consult previous postings in the forum on this subject.  You will find that squid does not work with multi-wan.

        1 Reply Last reply Reply Quote 0
        • G
          Gob
          last edited by

          I have scoured the forum and not really come up with anything definite.

          Do you mean that it will not work with load balancing or it really will not work at all?

          I do not want load balancing with my two WAN links, I just want web traffic through one WAN link and smtp/IPSEC through the other.
          If Squid will work on the Default WAN link I can live with that.

          If I fix one more thing than I break in a day, it's a good day!

          1 Reply Last reply Reply Quote 0
          • ?
            Guest
            last edited by

            It will not work with multi-WAN or with the load balancer.  It's pretty much LAN -> WAN.

            1 Reply Last reply Reply Quote 0
            • J
              Joedirt
              last edited by

              Can squid be used in multiwan like this?

              Wan1                              squid
                      pfsense1 lan – wan pfsense2 lan -- Netork
              Wan2

              Thanks, Ken

              1 Reply Last reply Reply Quote 0
              • ?
                Guest
                last edited by

                Yes, although you would be much better served to install squid on something other than pfSense.  The Squid package in pfSense is out of date and not entirely complete.  You'd be better served to have a full squid install on a stand-alone box inside your LAN.

                1 Reply Last reply Reply Quote 0
                • G
                  Gob
                  last edited by

                  I have tested my multi-WAN setup with squid, and here are my findings…

                  Squid WILL work on a Multi-WAN configured box BUT it will always route web (port 80) requests via the default WAN interface, irrespective of any firewall rules.
                  Squid WILL NOT work in a load balancing configuration.

                  My requirement to have web traffic through one WAN link and SMTP traffic through a different WAN link works perfectly with Squid.

                  Hope this helps.

                  Gordon

                  If I fix one more thing than I break in a day, it's a good day!

                  1 Reply Last reply Reply Quote 0
                  • ?
                    Guest
                    last edited by

                    Which is exactly what I said 3 posts ago.

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.