Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Firewall issue

    Scheduled Pinned Locked Moved pfSense Packages
    5 Posts 3 Posters 2.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R
      reggie
      last edited by

      Hello,

      I recently installed pfsense on a computer, and I am running the captive portal with squid/squidGuard.
      My setup is transparent mode and I have the default firewall config. Traffic comes through OPT1 and
      out the WAN side. Administration is done from the LAN side.

      Here is my two main problems.

      First, if I make any changes to the firewall(custom rule), it kills my squid. The only thing that seems
      to fix it is re-installing. I found out what the specific problem was though, when you change the firewall
      config from the gui, for some reason the firewall module doesn't seem to know about squid's addition to
      the firewall rules. Here is the rule that disappears. I found this in /tmp/rules.debug

      rdr on fxp0 proto tcp from any to !(fxp0) port 80 -> 127.0.0.1 port 80

      I could not "re-enable" Squid to get this rule added back, I had to re-install from from the packages menu.

      Second, only proxied traffic is able to get by the gateway now. All other traffic(other than IPSEC), gets
      dropped.

      My version is 1.2.

      -Reggie

      1 Reply Last reply Reply Quote 0
      • H
        HaOsLsE
        last edited by

        That sounds a little odd.  I run squid, but not squid guard, with no problems adding rules.  Maybe your install is defective.  backup config and do a fresh install and restore it?  You said you are running 1.2, is it 1.2 rc? (1-4), 1.2 beta, 1.2 final…I run 1.2 final FYI with no issues.

        I am Hole.

        1 Reply Last reply Reply Quote 0
        • R
          reggie
          last edited by

          I use 1.2-RELEASE.

          I have been through the install process 4 or 5 times with the same result. Are you running yours in transparent mode?

          -Reggie

          1 Reply Last reply Reply Quote 0
          • H
            HaOsLsE
            last edited by

            Sorry for the late reply, yes, I'm running it in transparent mode.

            I am Hole.

            1 Reply Last reply Reply Quote 0
            • C
              cmb
              last edited by

              Moving this to the packages board as it's squid related.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.