Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Squid unable to access web pages

    Scheduled Pinned Locked Moved pfSense Packages
    14 Posts 2 Posters 10.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      dvserg
      last edited by

      You have common problem with DNS service.
      Try from shell:
      ping www.google.com
      ping pfsense.com

      SquidGuardDoc EN  RU Tutorial
      Localization ru_PFSense

      1 Reply Last reply Reply Quote 0
      • T
        ToxIcon
        last edited by

        Thanks I got The dns stuff fix every thing is up and running with 1 problem squid/squidgard is not blocking anything
        I set some Destination rules to deny but its not deny anything.

        squidGuard.conf

        acl {

        default {
        pass !in-addr !blk_BL_adv !blk_BL_aggressive !blk_BL_chat !blk_BL_dating !blk_BL_downloads !blk_BL_drugs !blk_BL_gamble !blk_BL_hacking !blk_BL_porn !blk_BL_redirector !blk_BL_remotecontrol !blk_BL_ringtones !blk_BL_sex_lingerie !blk_BL_spyware !blk_BL_tracker !blk_BL_violence !blk_BL_warez !blk_BL_weapons all
        redirect https://192.168.1.1:80/sgerror.php?url=403%20ERROR%3A%20ACCESS%20DENY%3A&a=%a&n=%n&i=%i&s=%s&t=%t&u=%u
        log block.log
        }
        }

        also have this error
        Log type: squidguard: squidguard_log report disabled

        1 Reply Last reply Reply Quote 0
        • D
          dvserg
          last edited by

          Make rule 'Аll deny' and test this.
          –-
          Report 'squidGuard log' now disabled.

          SquidGuardDoc EN  RU Tutorial
          Localization ru_PFSense

          1 Reply Last reply Reply Quote 0
          • T
            ToxIcon
            last edited by

            Thanks for the help everything is working.

            my last question: is it possible to use 2 different blacklists when i upload 1 then the other the first one is no longer listed.

            also when  i change Default access [all] from allow  to deny i can't access some sites
            for example URL: http://www.squidguard.org/blacklists.html  filter:default/none how would i
            fix this thanks

            1 Reply Last reply Reply Quote 0
            • D
              dvserg
              last edited by

              my last question: is it possible to use 2 different blacklists when i upload 1 then the other the first one is no longer listed.

              No, old blacklist erase by new blacklist

              
              also when  i change Default access [all] from allow  to deny i can't access some sites
              for example URL: http://www.squidguard.org/blacklists.html  filter:default/none how would i
              fix this thanks
              
              

              Ok squidGuard works
              Now you mast set 'default/allow' and set 'deny' for you need categories of blacklist. If some sites not block - you can create custom Destinations (look Destinations page) with this sites and then deny this custom dest item (tutorial in my sign)

              SquidGuardDoc EN  RU Tutorial
              Localization ru_PFSense

              1 Reply Last reply Reply Quote 0
              • T
                ToxIcon
                last edited by

                I set the Default access [all] back to (Default access [all]/allow) and set (deny) for some categories on the
                blacklist [blk_BL_ringtones]  [bBL_adv] and  [blk_BL_spyware] + some others are all set to deny but for example  if i try to go the [blk_BL_ringtones] ringtone sites it does not block it  or any sites that i have set to deny.

                1 Reply Last reply Reply Quote 0
                • D
                  dvserg
                  last edited by

                  This sites maybe not included in [blk_BL_ringtones] list.
                  Impossible listing All ringtones(and other) sites frim inet to DB.
                  But you can add custom Destination item with this site and block this.

                  SquidGuardDoc EN  RU Tutorial
                  Localization ru_PFSense

                  1 Reply Last reply Reply Quote 0
                  • T
                    ToxIcon
                    last edited by

                    I am having the same problem as this post http://forum.pfsense.org/index.php/topic,11869.0.html

                    I take an example of porn website to test SquidGuard : www.porn.com
                    because it is very explicits and should be listed in mostly blacklists.

                    I've downloaded and installed the shalla blacklist, I think this website
                    is listed in.

                    I've enabled squidGuard, denied the blacklists I want to, saved and
                    applied settings, but I still have access to the website. www.porn.com

                    1 Reply Last reply Reply Quote 0
                    • D
                      dvserg
                      last edited by

                      @ToxIcon:

                      I am having the same problem as this post http://forum.pfsense.org/index.php/topic,11869.0.html

                      I take an example of porn website to test SquidGuard : www.porn.com
                      because it is very explicits and should be listed in mostly blacklists.

                      Post you config and GUI log please.

                      SquidGuardDoc EN  RU Tutorial
                      Localization ru_PFSense

                      1 Reply Last reply Reply Quote 0
                      • T
                        ToxIcon
                        last edited by

                        Here are the config and GUI log

                        [GUI log.txt](/public/imported_attachments/1/GUI log.txt)
                        [squid conf.txt](/public/imported_attachments/1/squid conf.txt)
                        [squidGuard conf.txt](/public/imported_attachments/1/squidGuard conf.txt)

                        1 Reply Last reply Reply Quote 0
                        • D
                          dvserg
                          last edited by

                          redirect https://192.168.1.1:80/sgerror.php?url=403%20ERROR%3A%20ACCESS%20DENY%3A&a=%a&n=%n&i=%i&s=%s&t=%t&u=%u
                          

                          Ups..
                          You use https webGUI .
                          SG package have problem with this situation.
                          Define 'ext' redirect type in Default page and enter you self external error page URL.

                          SquidGuardDoc EN  RU Tutorial
                          Localization ru_PFSense

                          1 Reply Last reply Reply Quote 0
                          • T
                            ToxIcon
                            last edited by

                            Can you give me and example of how to Define 'ext' redirect type in Default page and enter you self external error page URL

                            1 Reply Last reply Reply Quote 0
                            • D
                              dvserg
                              last edited by

                              @ToxIcon:

                              Can you give me and example of how to Define 'ext' redirect type in Default page and enter you self external error page URL

                              Select for example:
                              Redirect mode 'ext url move'
                              Redirect info ' - For HTTPS webGUI you need use self error page URL not in pfsense, but on other computer or server - '

                              SquidGuardDoc EN  RU Tutorial
                              Localization ru_PFSense

                              1 Reply Last reply Reply Quote 0
                              • First post
                                Last post
                              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.