Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Input needed - Squid and Allow internet access only for authenticated users

    Scheduled Pinned Locked Moved pfSense Packages
    3 Posts 3 Posters 2.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • L
      lordarcane
      last edited by

      I would like to setup squid authentication in the PfSense box. Today I have transparent mode set to grab all traffic. I also have lightsquid for logging. But, i have the need to match the logging to users and, therefore ldap authentication would be ideal. We have the problem thought that people only need to install Chrome or firefox and such they can bypass the proxy server simply by not writing the proxy adress in the proxy field.

      However, would it work by setting up a rule to deny traffic from LAN to any port 80 and setting the proxy to work with another port. And such, the only way to access the Internet would be through the proxy since all other traffic is denied.

      Or, am I thinking wrong here? Any other tips on how to force people through the auth proxy?

      1 Reply Last reply Reply Quote 0
      • G
        Gloom
        last edited by

        Either blocking access on port 80 or using a port redirect (More user friendly) will work as will configuring squid to listen on port 80 on the lan interface. The latter requires that you alter the web administration interface port for pfsense.

        Never underestimate the power of human stupidity

        1 Reply Last reply Reply Quote 0
        • perikoP
          periko
          last edited by

          Hey lordarcane.

          Did u already fix this?
            I want to do the same thing.

          Greetings!!

          Necesitan Soporte de Pfsense en México?/Need Pfsense Support in Mexico?
          www.bajaopensolutions.com
          https://www.facebook.com/BajaOpenSolutions
          Quieres aprender PfSense, visita mi canal de youtube:
          https://www.youtube.com/c/PedroMorenoBOS

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.