Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Squid?

    Scheduled Pinned Locked Moved Cache/Proxy
    7 Posts 3 Posters 821 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • W
      Waqar.UK
      last edited by

      Hello,

      I have successfully installed Snort and Pfblocker NG.
      I want to install Squid which as far as I understand has Clam AV 'built in' so then I can get some anti virus at router level.
      My internet connection is UK Virgin media 100 Mbit cable and Pfsense a Chinese qotom i5-5250U, 8GB RAM and Kingston 120GB SSD.
      Do I need Squid? If I do then how do I install and configure it?

      1 Reply Last reply Reply Quote 0
      • A
        akuma1x
        last edited by

        Did you read thru the documentation?

        https://docs.netgate.com/pfsense/en/latest/cache-proxy/index.html

        Jeff

        1 Reply Last reply Reply Quote 0
        • W
          Waqar.UK
          last edited by

          Thanks. I did. Is there any difference or effectiveness between Squid or Pfblocker?

          1 Reply Last reply Reply Quote 0
          • A
            akuma1x
            last edited by akuma1x

            They do 2 different things:

            Squid - cache/proxy with some filtering capabilities
            pfBlockerNG - country and IP blocking

            Squid info (August 2018):
            https://turbofuture.com/internet/Intercepting-HTTPS-Traffic-Using-the-Squid-Proxy-in-pfSense

            Here's a pfblocker hangout video (March 2018):
            https://www.netgate.com/resources/videos/pfblockerng-on-pfsense.html

            Jeff

            1 Reply Last reply Reply Quote 1
            • W
              Waqar.UK
              last edited by

              Thanks,

              I want to have an install of Squid, for its anti virus capability.

              GertjanG 1 Reply Last reply Reply Quote 0
              • GertjanG
                Gertjan @Waqar.UK
                last edited by

                @Waqar-UK said in Squid?:

                for its anti virus capability.

                It's capable for sure.
                You are aware of the fact that nearly all fraffic is TLS based these days, which means : the router firewall can't "see" the actual traffic, the payload.
                And, as far as I know, virus are not transmitted in the Ethernet frame headers.
                Also, TLS traffic is often marked as non cacheable.

                I advise you really to look around and see what Squid can really do for you.

                No "help me" PM's please. Use the forum, the community will thank you.
                Edit : and where are the logs ??

                W 1 Reply Last reply Reply Quote 0
                • W
                  Waqar.UK @Gertjan
                  last edited by

                  @Gertjan said in Squid?:

                  @Waqar-UK said in Squid?:

                  for its anti virus capability.

                  It's capable for sure.
                  You are aware of the fact that nearly all fraffic is TLS based these days, which means : the router firewall can't "see" the actual traffic, the payload.
                  And, as far as I know, virus are not transmitted in the Ethernet frame headers.
                  Also, TLS traffic is often marked as non cacheable.

                  I advise you really to look around and see what Squid can really do for you.

                  Thanks. It looks like I will have to look elsewhere. Any hints?

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.