Squid - select loopback interface or not?



  • There are hundreds of tutorials in this forum and on the web about configuring squid the correct way.
    But the main question for me is:

    Is it necessary to select the „loopback“ interface for proxy along with the lan interfaces or not?
    Everyone says something different. It looks like no one really knows the right answer.
    Please ….can some pro answer this question?

    Thx very much



  • I ask u this.

    U have a network in the range 192.168.1.0/24, u setup pfsense with 2 interfaces, WAN+LAN.

    Them u decide to install squid, u want to protect the network behind the LAN, in this situation u need the loopback?

    In my little experience, I just need loopback went I need to get squid internal performance info which mgr give us, other than that no need loopback.

    Hope this give u some info.



  • @periko:

    I ask u this.

    U have a network in the range 192.168.1.0/24, u setup pfsense with 2 interfaces, WAN+LAN.

    Them u decide to install squid, u want to protect the network behind the LAN, in this situation u need the loopback?

    In my little experience, I just need loopback went I need to get squid internal performance info which mgr give us, other than that no need loopback.

    Hope this give u some info.

    I have three lan Interfaces.

    I hope I understood you correctly, and so I disabled the loopback interface now.

    I found this on the pfsense page
    https://doc.pfsense.org/index.php/Setup_Squid_as_a_Transparent_Proxy

    Or does anyone disagree turning off the loopback interface?



  • IIRC you need the loopback interface selected for Lightsquid to work.



  • @KOM:

    IIRC you need the loopback interface selected for Lightsquid to work.

    ok only for lightsquid. And if i wanna use squidguard….Do i have to turn loopback device also on ?



  • Not sure.  I'd just leave loopback selected unless it's giving you some specific problem.



  • @KOM:

    Not sure.  I'd just leave loopback selected unless it's giving you some specific problem.

    Ok. Thx. Is loopback necessary for clam (antivirus) ?



  • Definitely no idea.  I don't run that crap on my router.  AV belongs on the client, not the router.



  • Thx KOM….you helped me and a lot of other users in this forum. :-)



  • I found a difference when I activate loopback interface in proxy mode.

    if the loopback interface is activated, advertising links on google search results won´t open.  thats great!
    if i deactivate the loopback interface, advertising links on google search results open again..

    can someone explain why it is like that?

    thx



  • Perhaps the loopback interface is used by squidguard?



  • no



  • It's now a week later and you're still worrying about this?  Stuff works when it's selected, stuff breaks when it isn't.  Just leave it selected.


Log in to reply