<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Domain blocking through squid]]></title><description><![CDATA[<p dir="auto">Hello..<br />
I am in a trouble with domain blocking.<br />
I configured the domain blocking through the squid package and its working fine but there is one issue with that.<br />
In the squid proxy server I have to  enable the SSL interception and for  ssl I have to select the certificate (which is created by me in cert. manager).<br />
Now here the problem comes, that first I have to download that certificate and have to upload in the browser, without that the cert. error is coming on browser but after upload the domain blocking is working fine.</p>
<p dir="auto">issue:- If i have to block  the domain for 20-30 systems then it will create headache for me to upload certificate in each systems ..is there any way so that i can resolve this issue??</p>
]]></description><link>https://forum.netgate.com/topic/148221/domain-blocking-through-squid</link><generator>RSS for Node</generator><lastBuildDate>Sat, 13 Jun 2026 06:39:40 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/148221.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 19 Nov 2019 12:18:35 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Domain blocking through squid on Thu, 21 Nov 2019 13:39:38 GMT]]></title><description><![CDATA[<p dir="auto">Could be 409 errors, check the Squid real-tome logs:<br />
https://docs.netgate.com/pfsense/en/latest/cache-proxy/squid-troubleshooting.html#sites-not-loading-with-splice-error-409-in-access-log</p>
<p dir="auto">Steve</p>
]]></description><link>https://forum.netgate.com/post/876910</link><guid isPermaLink="true">https://forum.netgate.com/post/876910</guid><dc:creator><![CDATA[stephenw10]]></dc:creator><pubDate>Thu, 21 Nov 2019 13:39:38 GMT</pubDate></item><item><title><![CDATA[Reply to Domain blocking through squid on Thu, 21 Nov 2019 04:44:41 GMT]]></title><description><![CDATA[<p dir="auto">I already enable  the transparent proxy .<br />
My problems  occurs whenever i m setting spice all in ssl interception field .<br />
few sites get opened like fb ad youtube but twitter showing the CA error.<br />
Moreover i followed tutorial .</p>
]]></description><link>https://forum.netgate.com/post/876842</link><guid isPermaLink="true">https://forum.netgate.com/post/876842</guid><dc:creator><![CDATA[zaber01]]></dc:creator><pubDate>Thu, 21 Nov 2019 04:44:41 GMT</pubDate></item><item><title><![CDATA[Reply to Domain blocking through squid on Wed, 20 Nov 2019 16:14:38 GMT]]></title><description><![CDATA[<p dir="auto">That video is about as step-by-step as it gets.</p>
<p dir="auto">Id the client still using the proxy specifically? This is intended to be transparent.</p>
<p dir="auto">Steve</p>
]]></description><link>https://forum.netgate.com/post/876745</link><guid isPermaLink="true">https://forum.netgate.com/post/876745</guid><dc:creator><![CDATA[stephenw10]]></dc:creator><pubDate>Wed, 20 Nov 2019 16:14:38 GMT</pubDate></item><item><title><![CDATA[Reply to Domain blocking through squid on Wed, 20 Nov 2019 07:03:55 GMT]]></title><description><![CDATA[<p dir="auto">thanks ...I gone through with that video but still i have problem .<br />
I selected spice all in ssl interception filed (In which I dont have to upload the CA in browser) but still it is not working . As I deleted the cert from the browser and after that again the cert. issue is showing on browser whenever I am opening any site.</p>
<p dir="auto">Can you please guide me step by step. thanks</p>
]]></description><link>https://forum.netgate.com/post/876632</link><guid isPermaLink="true">https://forum.netgate.com/post/876632</guid><dc:creator><![CDATA[zaber01]]></dc:creator><pubDate>Wed, 20 Nov 2019 07:03:55 GMT</pubDate></item><item><title><![CDATA[Reply to Domain blocking through squid on Tue, 19 Nov 2019 23:42:30 GMT]]></title><description><![CDATA[<p dir="auto">Yup, you can use Peed&amp;Splice for just domain blocking. You see only the FQDN not the full URL but you don't need certs on everything. See: https://www.youtube.com/watch?v=xm_wEezrWf4&amp;t=985s</p>
<p dir="auto">Steve</p>
]]></description><link>https://forum.netgate.com/post/876605</link><guid isPermaLink="true">https://forum.netgate.com/post/876605</guid><dc:creator><![CDATA[stephenw10]]></dc:creator><pubDate>Tue, 19 Nov 2019 23:42:30 GMT</pubDate></item></channel></rss>