Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Squid unable to access web pages

    Scheduled Pinned Locked Moved pfSense Packages
    14 Posts 2 Posters 10.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      ToxIcon
      last edited by

      Pfsense squid install along with squidguard  every thing seem to be work the only problem is that i cannot access any web pages, so i went to proxy content filter squidguard: log: log type chose squid config  then click get log, i check squid config  and their is an entry # NO REDIRECTOR CONFIGURED, I think that is the problem why i can't access the web. how do i configure a redirector for squid ? can someone explain thanks.

      Update:

      I entered an ip address and port in the browser network proxy settings and i get this error

      Unable to determine IP address from host name for www.google.com
      The dnsserver returned:

      Name Server for domain 'www.google.com' is unavailable.
      This means that:

      The cache was not able to resolve the hostname presented in the URL.
      Check if the address is correct.

      if i dont put a  ip address and port in the browser network proxy settings I just get the regular default browser error page that comes up when you get no connection.

      I try to get the guides from here but pages just time do any one have the manuals somewhere else.
      http://diskatel.narod.ru/pfSense/doc/squidGuard/squidGuardQuick.htm
      http://diskatel.narod.ru/sgquick.htm

      1 Reply Last reply Reply Quote 0
      • D
        dvserg
        last edited by

        You have common problem with DNS service.
        Try from shell:
        ping www.google.com
        ping pfsense.com

        SquidGuardDoc EN  RU Tutorial
        Localization ru_PFSense

        1 Reply Last reply Reply Quote 0
        • T
          ToxIcon
          last edited by

          Thanks I got The dns stuff fix every thing is up and running with 1 problem squid/squidgard is not blocking anything
          I set some Destination rules to deny but its not deny anything.

          squidGuard.conf

          acl {

          default {
          pass !in-addr !blk_BL_adv !blk_BL_aggressive !blk_BL_chat !blk_BL_dating !blk_BL_downloads !blk_BL_drugs !blk_BL_gamble !blk_BL_hacking !blk_BL_porn !blk_BL_redirector !blk_BL_remotecontrol !blk_BL_ringtones !blk_BL_sex_lingerie !blk_BL_spyware !blk_BL_tracker !blk_BL_violence !blk_BL_warez !blk_BL_weapons all
          redirect https://192.168.1.1:80/sgerror.php?url=403%20ERROR%3A%20ACCESS%20DENY%3A&a=%a&n=%n&i=%i&s=%s&t=%t&u=%u
          log block.log
          }
          }

          also have this error
          Log type: squidguard: squidguard_log report disabled

          1 Reply Last reply Reply Quote 0
          • D
            dvserg
            last edited by

            Make rule 'Аll deny' and test this.
            –-
            Report 'squidGuard log' now disabled.

            SquidGuardDoc EN  RU Tutorial
            Localization ru_PFSense

            1 Reply Last reply Reply Quote 0
            • T
              ToxIcon
              last edited by

              Thanks for the help everything is working.

              my last question: is it possible to use 2 different blacklists when i upload 1 then the other the first one is no longer listed.

              also when  i change Default access [all] from allow  to deny i can't access some sites
              for example URL: http://www.squidguard.org/blacklists.html  filter:default/none how would i
              fix this thanks

              1 Reply Last reply Reply Quote 0
              • D
                dvserg
                last edited by

                my last question: is it possible to use 2 different blacklists when i upload 1 then the other the first one is no longer listed.

                No, old blacklist erase by new blacklist

                
                also when  i change Default access [all] from allow  to deny i can't access some sites
                for example URL: http://www.squidguard.org/blacklists.html  filter:default/none how would i
                fix this thanks
                
                

                Ok squidGuard works
                Now you mast set 'default/allow' and set 'deny' for you need categories of blacklist. If some sites not block - you can create custom Destinations (look Destinations page) with this sites and then deny this custom dest item (tutorial in my sign)

                SquidGuardDoc EN  RU Tutorial
                Localization ru_PFSense

                1 Reply Last reply Reply Quote 0
                • T
                  ToxIcon
                  last edited by

                  I set the Default access [all] back to (Default access [all]/allow) and set (deny) for some categories on the
                  blacklist [blk_BL_ringtones]  [bBL_adv] and  [blk_BL_spyware] + some others are all set to deny but for example  if i try to go the [blk_BL_ringtones] ringtone sites it does not block it  or any sites that i have set to deny.

                  1 Reply Last reply Reply Quote 0
                  • D
                    dvserg
                    last edited by

                    This sites maybe not included in [blk_BL_ringtones] list.
                    Impossible listing All ringtones(and other) sites frim inet to DB.
                    But you can add custom Destination item with this site and block this.

                    SquidGuardDoc EN  RU Tutorial
                    Localization ru_PFSense

                    1 Reply Last reply Reply Quote 0
                    • T
                      ToxIcon
                      last edited by

                      I am having the same problem as this post http://forum.pfsense.org/index.php/topic,11869.0.html

                      I take an example of porn website to test SquidGuard : www.porn.com
                      because it is very explicits and should be listed in mostly blacklists.

                      I've downloaded and installed the shalla blacklist, I think this website
                      is listed in.

                      I've enabled squidGuard, denied the blacklists I want to, saved and
                      applied settings, but I still have access to the website. www.porn.com

                      1 Reply Last reply Reply Quote 0
                      • D
                        dvserg
                        last edited by

                        @ToxIcon:

                        I am having the same problem as this post http://forum.pfsense.org/index.php/topic,11869.0.html

                        I take an example of porn website to test SquidGuard : www.porn.com
                        because it is very explicits and should be listed in mostly blacklists.

                        Post you config and GUI log please.

                        SquidGuardDoc EN  RU Tutorial
                        Localization ru_PFSense

                        1 Reply Last reply Reply Quote 0
                        • T
                          ToxIcon
                          last edited by

                          Here are the config and GUI log

                          [GUI log.txt](/public/imported_attachments/1/GUI log.txt)
                          [squid conf.txt](/public/imported_attachments/1/squid conf.txt)
                          [squidGuard conf.txt](/public/imported_attachments/1/squidGuard conf.txt)

                          1 Reply Last reply Reply Quote 0
                          • D
                            dvserg
                            last edited by

                            redirect https://192.168.1.1:80/sgerror.php?url=403%20ERROR%3A%20ACCESS%20DENY%3A&a=%a&n=%n&i=%i&s=%s&t=%t&u=%u
                            

                            Ups..
                            You use https webGUI .
                            SG package have problem with this situation.
                            Define 'ext' redirect type in Default page and enter you self external error page URL.

                            SquidGuardDoc EN  RU Tutorial
                            Localization ru_PFSense

                            1 Reply Last reply Reply Quote 0
                            • T
                              ToxIcon
                              last edited by

                              Can you give me and example of how to Define 'ext' redirect type in Default page and enter you self external error page URL

                              1 Reply Last reply Reply Quote 0
                              • D
                                dvserg
                                last edited by

                                @ToxIcon:

                                Can you give me and example of how to Define 'ext' redirect type in Default page and enter you self external error page URL

                                Select for example:
                                Redirect mode 'ext url move'
                                Redirect info ' - For HTTPS webGUI you need use self error page URL not in pfsense, but on other computer or server - '

                                SquidGuardDoc EN  RU Tutorial
                                Localization ru_PFSense

                                1 Reply Last reply Reply Quote 0
                                • First post
                                  Last post
                                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.