Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Chrome is bypassing squidguard

    Cache/Proxy
    4
    5
    1.6k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      stichguy
      last edited by

      Hi everyone, we installed a PFsense firewall for our company and I have been battling with the squidguard. We have the groups ACL for IP addresses that need restricted access to certain websites and it works perfectly when using edge browser or firefox (both on auto proxy). However when using google chrome there is full access to any website. It is strange because edge and chrome both use the same proxy settings.

      1 Reply Last reply Reply Quote 0
      • S
        sichent Banned
        last edited by

        Verify by wireshark Chrome is not going direct (hint it uses QUIC protocol if possible, bypassing any configured proxy).

        1 Reply Last reply Reply Quote 0
        • KOMK
          KOM
          last edited by

          You should be blocking tcp 80/443 on LAN anyway to ensure people can't go around the proxy unless you allow it.

          1 Reply Last reply Reply Quote 0
          • S
            stichguy
            last edited by

            @KOM:

            You should be blocking tcp 80/443 on LAN anyway to ensure people can't go around the proxy unless you allow it.

            These are being blocked, the problem is not the computers accessing the network its that squidgaurd is not working for google chrome, it can access all websites.

            I have tried disabling the QUIC protocol and chrome is still able to access blocked website

            One thing I have realised is that if I set the manual proxy in windows then it blocks in chrome, however on automatic proxy chrome can access all sites

            1 Reply Last reply Reply Quote 0
            • D
              doktornotor Banned
              last edited by

              Chrome is using system proxy settings. If misconfigured, it won't of course use any proxy at all.

              Also, if bypassing proxy is such a huge issue, you should either use transparent proxy, or block direct access via firewall.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.