Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Limiter blocks internet access (Squid transparent proxy)

    Scheduled Pinned Locked Moved Traffic Shaping
    73 Posts 34 Posters 36.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      cmutwiwa
      last edited by

      @Shuon:

      Good News! I've got it working!
      Bad News? I had to roll-back to pfSense 2.5.1. On this version, I'm able to use squid + traffic shaping to limit bandwidth.

      sounds promising, I don't think its a problem for me to use and old version since I'm not using pfsense for alot of things, only the traffic shaper and squid. I'm curious tho', are you using squid in transparent mode? also I only tried with squid3 will try with squid stable version and report results.

      update:
      I've tried squid stable version but its still not working for me, I still can't use squid with the Limiter, I disabled squid transparent mode and I could access internet without proxy settings on browser but squid wasnt caching anything. I really would like this to work for me even if with an older version of pfsense that's why I would like to know if in your case squid is in transparent mode or what you are using squid for.

      1 Reply Last reply Reply Quote 0
      • S
        Shuon
        last edited by

        Yup, squid is in transparent mode. I'm using a fresh/clean install of 2.5.1. It could also be an issue with your configuration. If you were in messing with some of the settings, that could also be messing with ya right now.

        Here is the general setup/what I have running right now. Very basic, since it is a clean install, but it works. I might try to do a clean/fresh install to 2.2.1 (rather than the upgrade) and see if that makes any difference. I'd rather be running the latest/greatest of pfSense rather than an older version, simply due to bug / security fixes.

        https://www.walj.us/rand/pfs/pfsense-squid-limiter.cfm

        1 Reply Last reply Reply Quote 0
        • C
          cmutwiwa
          last edited by

          Thanks Shuon, this is very helpful. I'm suspecting I have something wrong with the firewall rule, I have a very simple limiter and squid setup, will do everything afresh and see.

          Update:
          I can confirm that squid + limiter works on 2.5.1, I couldn't get it working on 2.2 & 2.2.1…guess I'm going to stick with 2.5.1 for a while atleast until someones confirms this setup works with any newer version of pf.

          Thanks alot Shuon

          1 Reply Last reply Reply Quote 0
          • R
            Riroxi
            last edited by

            I having same issue here.

            2.2.1 i cant limit with squid

            A old 2.1.5 runs perfectly.

            Anyone more had this issue?

            1 Reply Last reply Reply Quote 0
            • D
              doktornotor Banned
              last edited by

              Known issue, nothing new here.

              1 Reply Last reply Reply Quote 0
              • G
                Gig11gs
                last edited by

                @doktornotor:

                Known issue, nothing new here.

                Hello is there any temp work around? I really need this.
                Thanks

                1 Reply Last reply Reply Quote 0
                • D
                  doktornotor Banned
                  last edited by

                  No.

                  1 Reply Last reply Reply Quote 0
                  • vallumV
                    vallum
                    last edited by

                    doktornotor  ,    Please Share the reason , why it is working on 2.1  and not in 2.2 .  I'm using squid 2.7.9 with pfsense 2.2.1 and facing the same issue.

                    Manu

                    1 Reply Last reply Reply Quote 0
                    • D
                      doktornotor Banned
                      last edited by

                      Because it's broken. SIGDUH! If the devs knew what's broken where, they'd fix it.

                      1 Reply Last reply Reply Quote 0
                      • vallumV
                        vallum
                        last edited by

                        Thank You doktornotor,

                        I want to restrict Bandwidth and At the same time URL filtering for LAN users .

                        Manu

                        1 Reply Last reply Reply Quote 0
                        • D
                          doktornotor Banned
                          last edited by

                          Well then stick with 2.1.5 until fixed.

                          1 Reply Last reply Reply Quote 0
                          • S
                            Supermule Banned
                            last edited by

                            Just a thought…. in 2.2.x they introduced Unbound as the default resolver.

                            Could it be related to that?

                            If changing DNS forwarder to the former one also available in the GUI, will it work??

                            1 Reply Last reply Reply Quote 0
                            • D
                              doktornotor Banned
                              last edited by

                              Hmmm? Not really sure how's this related to unbound, or even any resolver at all? When I put limiters on a NAT firewall rule, the traffic stop flowing. As simple as that.

                              1 Reply Last reply Reply Quote 0
                              • G
                                gringo13
                                last edited by

                                I have same problem.
                                Firstly i am sorry for my english.
                                I install squid+transparent mode. Filter active and  everything works good.
                                When i do limiter activate, then i cant internet access.

                                In proxy server, disable transparent mode; then internet can access and works fine limiter. But filter doesnt works.
                                What is problem and what can i do?
                                Help pls.  Regard.

                                1 Reply Last reply Reply Quote 0
                                • D
                                  doktornotor Banned
                                  last edited by

                                  @gringo13:

                                  What is problem

                                  It is broken! Did you read the thread?

                                  @gringo13:

                                  and what can i do?

                                  Ditch the proxy, or wait, or get debugging and coding.

                                  1 Reply Last reply Reply Quote 0
                                  • G
                                    gringo13
                                    last edited by

                                    @doktornotor:

                                    @gringo13:

                                    What is problem

                                    It is broken! Did you read the thread?

                                    @gringo13:

                                    and what can i do?

                                    Ditch the proxy, or wait, or get debugging and coding.

                                    Problem is at the same time transparent mode and traffic shapper doesnt works.
                                    If i disable limiter then no block internet. But i enable limiter block internet.
                                    Or i disable transparent mode and enable limiter then works fine but doesnt work filter.

                                    What do I need to work both at the same time?

                                    1 Reply Last reply Reply Quote 0
                                    • D
                                      doktornotor Banned
                                      last edited by

                                      @gringo13:

                                      What do I need to work both at the same time?

                                      Go re-read the previous reply a couple of times.

                                      1 Reply Last reply Reply Quote 0
                                      • R
                                        Riroxi
                                        last edited by

                                        This issue persists on 2.2.2? Oh Crap :(

                                        1 Reply Last reply Reply Quote 0
                                        • S
                                          Skegton
                                          last edited by

                                          I also noticed this yesterday. After limiters added to pass all rule and logging enabled, the rule blocks all traffic for that interface and fills up the System logs.

                                          1 Reply Last reply Reply Quote 0
                                          • D
                                            doktornotor Banned
                                            last edited by

                                            Your "fills up the System logs" non-issue has nothing to do with the topic here. When you log ALL passed traffic, then yeah, your logs are going to fill up, limiters or not.

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.