Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Unofficial E2guardian package for pfSense

    Scheduled Pinned Locked Moved Cache/Proxy
    1.2k Posts 70 Posters 1.5m Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      pfsensation
      last edited by

      Looks like E2Guardian v5.1 is in the works!!

      • Still getting used to this new forum layout... D:
      1 Reply Last reply Reply Quote 0
      • E
        eneiasmg @marcelloc
        last edited by

        This post is deleted!
        1 Reply Last reply Reply Quote 0
        • marcellocM
          marcelloc
          last edited by

          Version 0.5.4 uses 5.1 binaries and fixes the missing transparent forward rules after pfSense restart.

          Treinamentos de Elite: http://sys-squad.com

          Help a community developer! ;D

          1 Reply Last reply Reply Quote 1
          • R
            ravegen
            last edited by

            how can I put or where can I put ACL SSLPorts and ACL SafePorts for Allowed Ports ?

            1 Reply Last reply Reply Quote 0
            • K
              kenrutt
              last edited by

              Does anyone know why e2guardian 5 transparent setting does not work right?
              When I try to enable transparent mode some web sites will not load. The browser waits awhile and then comes up with error. When I disable transparent mode and put in my own NAT redirect rules for port 80 and 443 everything works perfectly.

              P 1 Reply Last reply Reply Quote 0
              • P
                pfsensation @kenrutt
                last edited by

                @kenrutt What error are you getting? Transparent proxy works perfectly for me without any issues.

                K 1 Reply Last reply Reply Quote 0
                • K
                  kenrutt @pfsensation
                  last edited by

                  @pfsensation

                  This site can’t be reached
                  www.ebay.com took too long to respond.
                  Try:

                  Checking the connection
                  Checking the proxy and the firewall
                  Running Windows Network Diagnostics
                  ERR_CONNECTION_TIMED_OUT

                  P 1 Reply Last reply Reply Quote 0
                  • P
                    pfsensation @kenrutt
                    last edited by

                    @kenrutt Are you using MITM? What authentication method do you use?

                    And are you using Squid?

                    K 1 Reply Last reply Reply Quote 0
                    • K
                      kenrutt @pfsensation
                      last edited by

                      @pfsensation
                      Yes I am using MITM. For Auth I have it set to ip address. And I am using the direct connect method.

                      P 1 Reply Last reply Reply Quote 0
                      • P
                        pfsensation @kenrutt
                        last edited by

                        @kenrutt That's weird. Does it happen to all browsers? Have you checked that your system isn't explicitly configured for the proxy too?

                        I guess theoretically in some cases it could make a loop.

                        K 1 Reply Last reply Reply Quote 0
                        • R
                          ravegen
                          last edited by ravegen

                          how to uninstall e2guardian that will remove all its previous configurations and setups ?

                          I uninstalled and reinstall the package but still the same configuration that I made was still there. I wanted to uninstall the package and clean install the package coz I want to check something.

                          I hope the author will reply soon.

                          1 Reply Last reply Reply Quote 0
                          • marcellocM
                            marcelloc
                            last edited by marcelloc

                            There is no option on the package to clean/reset all config yet.

                            If you are an advanced user, you can clean it direct on config.xml but If you do something wrong on pfSense main config file, you can mess up your firewall.

                            Treinamentos de Elite: http://sys-squad.com

                            Help a community developer! ;D

                            1 Reply Last reply Reply Quote 0
                            • K
                              kenrutt @pfsensation
                              last edited by

                              @pfsensation
                              Yes I have checked the proxy settings on my system and there is no proxy settings assigned. I don't know but there must be some configuration problem somewhere, I don't know what. The weird thing is if I setup NAT and redirect port 80 & 443 things work in transparent mode without a hitch. (That is with the transparent mode unchecked in e2gaurdian.)

                              1 Reply Last reply Reply Quote 0
                              • P
                                pfsensation
                                last edited by

                                It's possible you have a conflict somewhere, are the any other services on the firewall using those ports?

                                What other NAT rules do you have in place? Sounds like when you manually add the rules, it goes on top of everything you have and takes effect as it has a higher priority.

                                K 1 Reply Last reply Reply Quote 0
                                • K
                                  kenrutt @pfsensation
                                  last edited by

                                  @pfsensation
                                  You got me on the right track. I need to test things further but for now e2guardian is running in transparent mode. I am using PFBlocker and it seems the outgoing rules were interfering. Also it seems I need to select both LAN and Loopback on the first listen interface box.

                                  Thanks for steering me in the right direction.

                                  P 1 Reply Last reply Reply Quote 0
                                  • P
                                    pfsensation @kenrutt
                                    last edited by

                                    @kenrutt No problem! Glad I could help, I'm using pfblocker too :)

                                    I came across issues before with this setup as E2 Guardian and pfblocker both redirect port 80/443. Managed to solve the issues adding a bypass for the pfblocker DNSBL IP. This means that transparent proxy won't touch traffic going to that IP, and it should work as normal.

                                    And yes, makes sure the loopback interface has the proxy enabled as the transparent rule needs it.

                                    1 Reply Last reply Reply Quote 0
                                    • E
                                      eneiasmg
                                      last edited by

                                      Hi!
                                      I´m trying configure "Download rate limit", but, unsucessull. I configured the limiter, applyed the mask and nothing. I checked de option Allow Users on Interface, but there is an alert below "This options must be selected to use bandwidth limit options under Groups tab", but I not find nothing about limits in Groups tab. Can someone help me?!

                                      marcellocM 1 Reply Last reply Reply Quote 0
                                      • marcellocM
                                        marcelloc @eneiasmg
                                        last edited by

                                        @eneiasmg , the per group limit is not implemented yet. I'll remove this info from this field on next update.

                                        Are you trying the limiters with direct proxy or transparent?

                                        Treinamentos de Elite: http://sys-squad.com

                                        Help a community developer! ;D

                                        E 1 Reply Last reply Reply Quote 0
                                        • E
                                          eneiasmg @marcelloc
                                          last edited by

                                          Hi, @marcelloc
                                          I'm using direct proxy.

                                          1 Reply Last reply Reply Quote 0
                                          • R
                                            ravegen
                                            last edited by

                                            my e2guardian -version shows '--enable-sslmitm' and not '--enable-sslmitm=yes'.

                                            does it mean I cannot do ssl mitm ?

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.