Sending squid access.log to remote syslog WITH mac address
I configured pfSense and Squid to send them the contents of the access.log of the Squid and the filter.log of the firewall to a remote syslog server.
The 2 log files access.log and filter.log are mixed and allow you to follow the ports accessed with MAC addresses.
It is not a very elegant solution (there is use of both the graphical interface and the editing of a conf file by hand) but it has the merit of being functional.
If anyone is interested, I am available to pass on my information.