Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    SquidGuard Group Acl not working

    Scheduled Pinned Locked Moved Cache/Proxy
    12 Posts 5 Posters 7.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      golmaal
      last edited by

      Can you share the group acl? I would suspect that the group acl query is not resolving as intended. Also, the target categories on the right side are related to time restrictions. I made that mistake once and took long time to figure it out.

      1 Reply Last reply Reply Quote 0
      • T
        tanniit
        last edited by

        Sure.

        Group ACL
          Name:  GBL
          Client:  192.168.0.0/24
          Time: none
          Target rules:  !BL all [ !BL all]
          Redirect mod:  int error page

        Target categories
          name: BL
          Domain List:  mangapanda.com
          URL list: www.mangapanda.com/
          Regular expression:  mangapanda

        1 Reply Last reply Reply Quote 0
        • T
          tanniit
          last edited by

          Anyone have a success story to tell about Group Acl?

          1 Reply Last reply Reply Quote 0
          • KOMK
            KOM
            last edited by

            I don't use Squid3, but I thought you couldn't use any of the Int pages if you were using Transparent mode?

            Maybe some screenshots of your setup would help.

            1 Reply Last reply Reply Quote 0
            • T
              tanniit
              last edited by

              Attached herewith the screen shot.  Just can't get the Group Acl working.

              ![Screen Shot 07-15-14 at 11.41 AM.PNG](/public/imported_attachments/1/Screen Shot 07-15-14 at 11.41 AM.PNG)
              ![Screen Shot 07-15-14 at 11.41 AM.PNG_thumb](/public/imported_attachments/1/Screen Shot 07-15-14 at 11.41 AM.PNG_thumb)
              ![Screen Shot 07-15-14 at 11.41 AM 001.PNG](/public/imported_attachments/1/Screen Shot 07-15-14 at 11.41 AM 001.PNG)
              ![Screen Shot 07-15-14 at 11.41 AM 001.PNG_thumb](/public/imported_attachments/1/Screen Shot 07-15-14 at 11.41 AM 001.PNG_thumb)
              ![Screen Shot 07-15-14 at 11.41 AM 002.PNG](/public/imported_attachments/1/Screen Shot 07-15-14 at 11.41 AM 002.PNG)
              ![Screen Shot 07-15-14 at 11.41 AM 002.PNG_thumb](/public/imported_attachments/1/Screen Shot 07-15-14 at 11.41 AM 002.PNG_thumb)

              1 Reply Last reply Reply Quote 0
              • KOMK
                KOM
                last edited by

                I played with it and I couldn't get it to work either.

                1 Reply Last reply Reply Quote 0
                • G
                  golmaal
                  last edited by

                  I use older version of Squid and it works. Something in firewall rules that bypass proxy for the particular subnet? Sounds stupid recommendation but it has to be some configuration mistake; it just has to work.

                  1 Reply Last reply Reply Quote 0
                  • KOMK
                    KOM
                    last edited by

                    it just has to work

                    You've never played with squid3, have you?  ;D

                    1 Reply Last reply Reply Quote 0
                    • T
                      tanniit
                      last edited by

                      At first I suspect the db corrupted, then I tested in the "acl default", it works just fine.
                      I manually changing the squidGuard.conf file to
                      acl {
                        GBL {
                          pass !BL all
                          redirect ….
                          log GBL.log    <-  changed from block.log to GBL.log
                        ....

                      I reload the squid and it reads this file correctly, the GBL.log created...but the log file doesn't logged anything.
                      It seems squidguard doesn't read the Group Acl for filtering.  It could be a bug in v3.

                      1 Reply Last reply Reply Quote 0
                      • N
                        niko2
                        last edited by

                        For those who have not reached to get it working : here is the trick (working on pfsense 2.3) :
                        in general settings tab of squidguard, there is an "apply" button.
                        it is mandatory to click after any changes, event on other tabs.
                        ACL groups work for me !
                        hopes this help :)

                        1 Reply Last reply Reply Quote 0
                        • L
                          leeratanak
                          last edited by

                          @niko2:

                          For those who have not reached to get it working : here is the trick (working on pfsense 2.3) :
                          in general settings tab of squidguard, there is an "apply" button.
                          it is mandatory to click after any changes, event on other tabs.
                          ACL groups work for me !
                          hopes this help :)

                          Work like a charm !!!

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.