certificate management on pfsense machine and clients
-
Can somebody guide me how to do the certificate management on pfsense machine and windows clients for https filtering in squid. Best regards
Kiran -
@kiranpce said in certificate management on pfsense machine and clients:
certificate management on pfsense machine and windows clients for https filtering in squid
Hi,
This is always the first question
How big network do you want to filter and cache, as this is not worth the suffering on a few clients.It seems simple anyway, but it's not (think of GOV and bank pages https):
Well, creates an intermediate Squid cert in pfSense (with Cert Mng) and then add it to the Cert repository of the windows machine (Trusted Root Cert.)
(it does this on each machine individually)or you use a PAC file for many clients + WPAD
https://wiki.squid-cache.org/SquidFaq/ConfiguringBrowsers
https://docs.netgate.com/pfsense/en/latest/recipes/http-client-proxy-wpad.html -
@DaddyGo Thanks I will the second option. May be I will have to something more on Linux, but I will. best regards Kiran