Squid unable to access web pages



  • Pfsense squid install along with squidguard  every thing seem to be work the only problem is that i cannot access any web pages, so i went to proxy content filter squidguard: log: log type chose squid config  then click get log, i check squid config  and their is an entry # NO REDIRECTOR CONFIGURED, I think that is the problem why i can't access the web. how do i configure a redirector for squid ? can someone explain thanks.

    Update:

    I entered an ip address and port in the browser network proxy settings and i get this error

    Unable to determine IP address from host name for www.google.com
    The dnsserver returned:

    Name Server for domain 'www.google.com' is unavailable.
    This means that:

    The cache was not able to resolve the hostname presented in the URL.
    Check if the address is correct.

    if i dont put a  ip address and port in the browser network proxy settings I just get the regular default browser error page that comes up when you get no connection.

    I try to get the guides from here but pages just time do any one have the manuals somewhere else.
    http://diskatel.narod.ru/pfSense/doc/squidGuard/squidGuardQuick.htm
    http://diskatel.narod.ru/sgquick.htm



  • You have common problem with DNS service.
    Try from shell:
    ping www.google.com
    ping pfsense.com



  • Thanks I got The dns stuff fix every thing is up and running with 1 problem squid/squidgard is not blocking anything
    I set some Destination rules to deny but its not deny anything.

    squidGuard.conf

    acl {

    default {
    pass !in-addr !blk_BL_adv !blk_BL_aggressive !blk_BL_chat !blk_BL_dating !blk_BL_downloads !blk_BL_drugs !blk_BL_gamble !blk_BL_hacking !blk_BL_porn !blk_BL_redirector !blk_BL_remotecontrol !blk_BL_ringtones !blk_BL_sex_lingerie !blk_BL_spyware !blk_BL_tracker !blk_BL_violence !blk_BL_warez !blk_BL_weapons all
    redirect https://192.168.1.1:80/sgerror.php?url=403 ERROR%3A ACCESS DENY%3A&a=%a&n=%n&i=%i&s=%s&t=%t&u=%u
    log block.log
    }
    }

    also have this error
    Log type: squidguard: squidguard_log report disabled



  • Make rule 'Аll deny' and test this.
    –-
    Report 'squidGuard log' now disabled.



  • Thanks for the help everything is working.

    my last question: is it possible to use 2 different blacklists when i upload 1 then the other the first one is no longer listed.

    also when  i change Default access [all] from allow  to deny i can't access some sites
    for example URL: http://www.squidguard.org/blacklists.html  filter:default/none how would i
    fix this thanks



  • my last question: is it possible to use 2 different blacklists when i upload 1 then the other the first one is no longer listed.

    No, old blacklist erase by new blacklist

    
    also when  i change Default access [all] from allow  to deny i can't access some sites
    for example URL: http://www.squidguard.org/blacklists.html  filter:default/none how would i
    fix this thanks
    
    

    Ok squidGuard works
    Now you mast set 'default/allow' and set 'deny' for you need categories of blacklist. If some sites not block - you can create custom Destinations (look Destinations page) with this sites and then deny this custom dest item (tutorial in my sign)



  • I set the Default access [all] back to (Default access [all]/allow) and set (deny) for some categories on the
    blacklist [blk_BL_ringtones]  [bBL_adv] and  [blk_BL_spyware] + some others are all set to deny but for example  if i try to go the [blk_BL_ringtones] ringtone sites it does not block it  or any sites that i have set to deny.



  • This sites maybe not included in [blk_BL_ringtones] list.
    Impossible listing All ringtones(and other) sites frim inet to DB.
    But you can add custom Destination item with this site and block this.



  • I am having the same problem as this post http://forum.pfsense.org/index.php/topic,11869.0.html

    I take an example of porn website to test SquidGuard : www.porn.com
    because it is very explicits and should be listed in mostly blacklists.

    I've downloaded and installed the shalla blacklist, I think this website
    is listed in.

    I've enabled squidGuard, denied the blacklists I want to, saved and
    applied settings, but I still have access to the website. www.porn.com



  • @ToxIcon:

    I am having the same problem as this post http://forum.pfsense.org/index.php/topic,11869.0.html

    I take an example of porn website to test SquidGuard : www.porn.com
    because it is very explicits and should be listed in mostly blacklists.

    Post you config and GUI log please.



  • Here are the config and GUI log

    [GUI log.txt](/public/imported_attachments/1/GUI log.txt)
    [squid conf.txt](/public/imported_attachments/1/squid conf.txt)
    [squidGuard conf.txt](/public/imported_attachments/1/squidGuard conf.txt)



  • redirect https://192.168.1.1:80/sgerror.php?url=403%20ERROR%3A%20ACCESS%20DENY%3A&a=%a&n=%n&i=%i&s=%s&t=%t&u=%u
    

    Ups..
    You use https webGUI .
    SG package have problem with this situation.
    Define 'ext' redirect type in Default page and enter you self external error page URL.



  • Can you give me and example of how to Define 'ext' redirect type in Default page and enter you self external error page URL



  • @ToxIcon:

    Can you give me and example of how to Define 'ext' redirect type in Default page and enter you self external error page URL

    Select for example:
    Redirect mode 'ext url move'
    Redirect info ' - For HTTPS webGUI you need use self error page URL not in pfsense, but on other computer or server - '


Log in to reply