Squidguard on 2.0 final
-
I'll see if this redirection mode is activated on my server and post here later.
About the "crap" computer, I desagree, the issue here is with Browsers… Firefox and Internet Explorer do this... Google Chrome does not... another fact I've found.
-
Hi Again!
It worked! Change the Redirect mode on the SquidGuard ACLs to "ext url found (enter URL)".
The problem with the Browser cache was solved.
Thanks for the help!
-
Hi Again!
It worked! Change the Redirect mode on the SquidGuard ACLs to "ext url found (enter URL)".
The problem with the Browser cache was solved.
Thanks for the help!
How to change the Redirect mode on the SquidGuard ACLs to "ext url found (enter URL)". In which files and section? I can't find this line.
-
It's a gui option, not a file hack.
-
i have again the same issue
nothing is changed on squidguard but now i can't use webpages on offtime.
same apply (or restart squidguard) behaviour -
Hi!
Like Marcelloc said… this option is in the GUI.
Common ACL and Group ACL in both this option is avaliable.
-
Hi mila76
I've 7 servers in production environments right now with this configuration even with Squid authenticating on Active Directory(Windows Server 208).
Let's do a step to step:
1 - Install a clean PFSense 2.0 RELEASE
2 - Install both Squid and SquidGuard
3 - Before everything: Download and update the SquidGuard BlackList, I suggest URL BlackList or Shalla List… your choice.
4 - I'll assume that you know how to implement and manage the options on cache and acces tabs of Squid Configurations and the concept of Proxy.
5 - Bring Squid Online with the configuration you want.
6 - Bring SquidGuard online
7 - Set the common ACL as you desire and in the bottom of the page set the Redirect Mode as "Ext URL Found", put some URL... could be a Webpage or a HTML file hosted on a webserver in your Intranet.
8 - Go to General tab on Squidguard configuration then click on save and after click on apply.I've a much more complex configuration on my Servers so it will be hard to explain.
Above are the basics and I hope that will help you. -
Follow your instruction of ext url found but still page is not blocking Pls Help
-
i used squidguard in 1.2x to 2.0rc whiteout any issue. My config use whitelist, and times.
After upgrade to 2.0 (if squidguard upgrade too or only reinstall i don't know for sure) i have strange issue.
Times don't work anymore, and i can't understand why.
I check my config but nothing strange is come out.Bug in squidguard binary? bug in config generations? I can't figure out.
If i click apply on off time (es from 12 to 13) all affected computer ignore whitelist (correct), but after 13 whitelist remain ignored (wrong).
If i click apply on on time (es after 13) all affected computer use whitelist (correct), but again, in offtime whitelist remains (wrong).prior 2.0 final i have no issue at all
please help me to figure out this problem :(
same problem, my boss wants me fired because I can not automatically block facebook! nobody has any idea to solve?
??? -
You can workaround this restarting or reloading squidguard every day or at specific times.
To handle cron schedules using gui, install cron package.
-
Thanks I want test it…
I have install Cron Package..
what is the command to reload squidquard to add in the Cron table?thanks in advance!
-
Hi, it work for now, thanks for your help.. with Cron and this command schedule every day:
/usr/local/sbin/squid -k shutdown
/usr/local/sbin/squidrestarting squid by night, the acl time based work fine without press "apply" in time or offtime to pass or block
then with a alias with IP + apps.facebook.com and a schedule rule also https facebook access is possible only in pause time..
only problem left is to cache browser that is not resolved also changing the squidguard_configurator.inc file but not a serious problem
-
Hi, it work for now, thanks for your help.. with Cron and this command schedule every day:
/usr/local/sbin/squid -k shutdown
/usr/local/sbin/squidrestarting squid by night, the acl time based work fine without press "apply" in time or offtime to pass or block
then with a alias with IP + apps.facebook.com and a schedule rule also https facebook access is possible only in pause time..
only problem left is to cache browser that is not resolved also changing the squidguard_configurator.inc file but not a serious problem
great workaround.
it's save my time a lot. i should no click apply button for every "time" and "off-time" any more… ;D -
but i'm still curious about how to restart squidguard properly without restarting squid.
what is script that button apply use at squidguard page? -
but i'm still curious about how to restart squidguard properly without restarting squid.
what is script that button apply use at squidguard page?In my experience a cronjob with "squid -k reconfigure" is enough, it will not kill squid and is enough to workaround the time problem.
i did a ps -aux | grep squid on shell and got
proxy 5813 0.0 0.1 9012 2612 ?? SN 1:06PM 0:02.27 (squidGuard) -c /usr/local/etc/squidGuard/squidGuard.conf (squidGuard)
proxy 5903 0.0 0.1 9012 2612 ?? IN 1:06PM 0:00.21 (squidGuard) -c /usr/local/etc/squidGuard/squidGuard.conf (squidGuard)
proxy 6195 0.0 0.1 9012 2612 ?? IN 1:06PM 0:00.08 (squidGuard) -c /usr/local/etc/squidGuard/squidGuard.conf (squidGuard)
root 55758 0.0 0.1 15248 4652 ?? INs 12:56PM 0:00.00 /usr/local/sbin/squid -Das you can also see in "proxy server" configuration, squidguard is configured as a redirect program inside squid, not a deamon itself. I only know about pfsense, that i know nothing about pfsense so i may be wrong, but that's what i conclude.
-
of course you need to make a cronjob with "/usr/local/sbin/squid -k reconfigure", got an pm to this, so, well you always need the full path in a cron job