• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

[2.4.x] Squid/ClamAV: Fix for C-ICAP 0.5.x not starting

Scheduled Pinned Locked Moved Cache/Proxy
17 Posts 10 Posters 10.0k Views 10 Watching
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • U Offline
    ubernupe
    last edited by ubernupe Sep 24, 2018, 11:36 PM Sep 24, 2018, 11:15 PM

    Hello to all and especially administrators,
    Thanks for this fix first of all and I hope all is well with everyone. My personal experience: I tried to follow the fix here on this page for I-cap in pfsense 2.4.4 Final. However, the only way that I got this to work ( without the file being over-written ) was to issue this command :
    chflags schg /usr/local/etc/c-icap/c-icap.conf - This is equivalent to the chattr command on Linux. see this explanation here for making file immutable on FreeBsd - https://www.cyberciti.biz/tips/howto-write-protect-file-with-immutable-bit.html The other method mentioned here chmod -w and even chmod 000 ( which I researched on my own ) DID NOT WORK for me. I can confirm chflags schg /usr/local/etc/c-icap/c-icap.conf command works to keep file intact after you modify it with changes detailed above. Then i-cap works perfectly for me at least.

    Thanks Again and Peace,

    ubernupe

    1 Reply Last reply Reply Quote 0
    • S Online
      stephenw10 Netgate Administrator
      last edited by Sep 25, 2018, 12:30 AM

      Because that file is generated every time from the file /usr/local/etc/c-icap/c-icap.conf.pfsense which is where you should be making that change if you're doing it that way.

      Or you can enable the advanced settings i the antivirus tab and them make the changes there in the GUI where they will be kept.

      Hopefully we can patch the package to fix it this soon though.

      Steve

      U 1 Reply Last reply Sep 25, 2018, 2:55 AM Reply Quote 1
      • U Offline
        ubernupe @stephenw10
        last edited by ubernupe Sep 25, 2018, 3:10 AM Sep 25, 2018, 2:55 AM

        @stephenw10
        Dear stephenw10,
        Thank you so very much for your assistance with helping me to get this straightened out. I followed your instructions and modified /usr/local/etc/c-icap/c-icap.conf.pfsense as detailed above in this post and then I issued command: chflags schg /usr/local/etc/c-icap/c-icap.conf.pfsense and everything works great. Thanks one more time and

        Peace and God Bless,

        ubernupe

        1 Reply Last reply Reply Quote 0
        • S Offline
          sisko212
          last edited by Sep 25, 2018, 3:02 PM

          i can confirm @jvelez solution is working, even for 2.4.4 final release.
          I set it from gui as @iqjet suggested

          1 Reply Last reply Reply Quote 0
          • J Offline
            jimp Rebel Alliance Developer Netgate
            last edited by Sep 25, 2018, 8:08 PM

            This is fixed now in the current version of the squid package. Update the package, or remove it and install it again, and it will work without manual changes.

            Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            S 1 Reply Last reply Sep 26, 2018, 6:32 AM Reply Quote 1
            • S Offline
              sisko212 @jimp
              last edited by sisko212 Sep 26, 2018, 6:33 AM Sep 26, 2018, 6:32 AM

              hello mr. @jimp
              I updated squid package right now, disabling antivirus manual configuration but it doesn't start yet.
              Re-enabling manual configuration and after a "reload", i still see two separate entries for ListeAddress and Port, and i had to do same modify as @jvelez suggested on first post.
              Is maybe something left dirt on my pfsense configuration ?

              1 Reply Last reply Reply Quote 0
              • O Offline
                occamsrazor
                last edited by Sep 26, 2018, 7:51 AM

                Thanks. The update seems to work for me but only after an uninstall/reinstall, not a straight upgrade.
                One thing I noticed... when I did an uninstall/reinstall with the Proxy Server > General Settings box "Keep Settings/Data" UNCHECKED, followed by reboot just in case..... all my settings still remained.

                pfSense CE on Qotom Q355G4 8GB RAM/60GB SSD
                Ubiquiti Unifi wired and wireless network, APC UPSs
                Mac OSX and IOS devices, QNAP NAS

                S 1 Reply Last reply Sep 26, 2018, 8:00 AM Reply Quote 0
                • S Offline
                  sisko212 @occamsrazor
                  last edited by Sep 26, 2018, 8:00 AM

                  @occamsrazor thanks.
                  In my case I would not rather to leave "keep setting" unchecked, because destroys my previous configuration, that is a bit complex, and would require a bit of work to be recreated.

                  O 1 Reply Last reply Sep 26, 2018, 8:02 AM Reply Quote 0
                  • O Offline
                    occamsrazor @sisko212
                    last edited by Sep 26, 2018, 8:02 AM

                    @sisko212 said in [2.4.x] Squid/ClamAV: Fix for C-ICAP 0.5.x not starting:

                    @occamsrazor thanks.
                    In my case I would not rather to leave "keep setting" unchecked, because destroys my previous configuration, that is a bit complex, and would require a bit of work to be recreated.

                    Sure, I hear you. My point was that at least in my case having that box unchecked did not seem to have any effect at all - all my settings remained. Which would seem to imply to me that the function of this box is not working as it is intended.

                    pfSense CE on Qotom Q355G4 8GB RAM/60GB SSD
                    Ubiquiti Unifi wired and wireless network, APC UPSs
                    Mac OSX and IOS devices, QNAP NAS

                    1 Reply Last reply Reply Quote 0
                    • S Offline
                      sisko212
                      last edited by Sep 26, 2018, 5:01 PM

                      @occamsrazor Thanks.
                      I tried as your suggestion, and has worked.
                      But after disabling "keep setting" i had to completely de-installing squid, and then reinstalling from package list. The reinstall option only, didn't work.
                      Perhaps with reinstall option, some wrong configuration remains somewhere.
                      And yes... good to know, "keep setting" works differentely how i tought :-D... squid pfsense configuration stays there and is not deleted... maybe it delete only the squid configuration, not pfsense configuration, and then, when installing, it recreates the entire squid config.

                      1 Reply Last reply Reply Quote 0
                      • E Offline
                        Eden Rebel Alliance
                        last edited by Sep 27, 2018, 2:42 PM

                        Hello all

                        I am also having this issues with the ICAP service not starting. I have edited then config as requested above no joy. I then decided to reinstall the package but this did not make a difference. I have now uninstall the squid package completely and reinstalled it. Still the service will not start.

                        J 1 Reply Last reply Sep 27, 2018, 2:43 PM Reply Quote 0
                        • J Offline
                          jimp Rebel Alliance Developer Netgate @Eden
                          last edited by Sep 27, 2018, 2:43 PM

                          @eden said in [2.4.x] Squid/ClamAV: Fix for C-ICAP 0.5.x not starting:

                          Hello all

                          I am also having this issues with the ICAP service not starting. I have edited then config as requested above no joy. I then decided to reinstall the package but this did not make a difference. I have now uninstall the squid package completely and reinstalled it. Still the service will not start.

                          If that is the case then your problem is not the same problem as this thread. Start a new thread with details about your configuration, any error messages from logs, etc.

                          Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

                          Need help fast? Netgate Global Support!

                          Do not Chat/PM for help!

                          1 Reply Last reply Reply Quote 0
                          17 out of 17
                          • First post
                            17/17
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                            This community forum collects and processes your personal information.
                            consent.not_received