Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Problems using TuneIn.com with transparent squid + squidclamav

    Scheduled Pinned Locked Moved Cache/Proxy
    10 Posts 3 Posters 2.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      Panja
      last edited by

      I'm having problems using the website TuneIn.com
      Whenever I try to open a radio station stream it does not work. TuneIn just passes the connection to the right online radio station.
      For instance DI Progressive goes to a stream from DI Progressive. Radio 538 goes to stream from their site.

      I'm getting these messages in the logs as shown below:


      I have tried the following:

      1. Disable transparent proxy –> problem "solved"
      2. Disable AV scanning --> problem "solved"
      3. Put the machine on the "Bypass Proxy for These Source IPs" list --> problem "solved"

      These are all just workarounds in my opinion.
      Disabling transparent proxy is no option for me. Disabling AV protection is not something I want either.
      Put the machine on the list is not something I want as well. All proxy will be disabled this way.

      I have tried to edit the c-icap.magic file and remove all STREAM stuff. But without luck. Doesn't solve anything for me.
      Does anyone have additional tips for me?

      1 Reply Last reply Reply Quote 0
      • KOMK
        KOM
        last edited by

        1. Put the machine on the "Bypass Proxy for These Source IPs" list –> problem "solved"

        This would be an acceptable solution for me.

        Put the machine on the list is not something I want as well.

        Why not?  You're not going to be caching a live stream, and I don't know if the AV crap (I really think AV on the firewall is a terrible idea in the first place) adds any value in this context.

        1 Reply Last reply Reply Quote 0
        • P
          Panja
          last edited by

          If I put the machine on the bypass list, it bypasses the whole proxy server.
          At the moment I'm still fiddling with this but later on I would like to use SquidGuard as well.
          Won't this bypass squidguard as well?

          1 Reply Last reply Reply Quote 0
          • KOMK
            KOM
            last edited by

            If I put the machine on the bypass list, it bypasses the whole proxy server.

            Sorry, I was thinking Bypass proxy for these destination IPs, not Source.

            Won't this bypass squidguard as well?

            I'm not clear on whether 'bypass' means completely avoid or simple do not cache.  Besides, unless you're using squidGuard to filter particular audio streams, it wouldn't really be needed here.

            1 Reply Last reply Reply Quote 0
            • P
              Panja
              last edited by

              No no  8) not the destination address.
              I have tried that, adding tunein.com, but as you can see in my first post tunein just routes the stream to the origin site.
              So that would be an endless list of bypasses.

              Do not cache I could live with, bypass not.
              I will be using squidguard to filter porn etc. More or less a "kids filter".

              1 Reply Last reply Reply Quote 0
              • KOMK
                KOM
                last edited by

                It would be ok if you only had a handful of stations that you listen to.  Otherwise I see your point.

                squidGuard simply filters URLs.  Are there porno audio-only streams out there???

                1 Reply Last reply Reply Quote 0
                • D
                  doktornotor Banned
                  last edited by

                  @KOM:

                  Are there porno audio-only streams out there???

                  1 Reply Last reply Reply Quote 0
                  • P
                    Panja
                    last edited by

                    Hahahahahahahaha come on guys.
                    I just shit my pants! LOL

                    1 Reply Last reply Reply Quote 0
                    • P
                      Panja
                      last edited by

                      I have removed the AV scanner from the pfSense box.
                      So that is for now the solution.

                      1 Reply Last reply Reply Quote 0
                      • D
                        doktornotor Banned
                        last edited by

                        You'll really need to dig into the C-ICAP docs. If you figure out some working configuration, it can be put to the package, but I certainly don't have time to play with radios streaming ATM.

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.