Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Re: squidGard not working

    Scheduled Pinned Locked Moved pfSense Packages
    4 Posts 2 Posters 17.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • E
      eethore
      last edited by

      mine still not working.
      the squid is working.
      i'm using blacklist on Proxy server, and its working.

      My pc IP is : 192.168.7.242.

      these are my setting on my proxy server.
      Allowed subnets :
      192.168.7.0/24

      Unrestricted IPs

      Banned host addresses

      Blacklist
      facebook

      with these settings, i'm not able to access facebook.

      then i'm activing my squid guard, its started with no error.
      the redirect also worked:
      redirect_program /usr/local/bin/squidGuard -c /usr/local/etc/squidGuard/squidGuard.conf;redirector_bypass on;redirect_children 3

      system log :
      Jun 30 11:33:56 check_reload_status: reloading filter
      Jun 30 11:33:56 php: /pkg_edit.php: Reloading Squid for configuration sync
      Jun 30 11:31:44 check_reload_status: reloading filter
      Jun 30 11:31:42 php: /pkg_edit.php: Reloading Squid for configuration sync
      Jun 30 11:28:32 check_reload_status: reloading filter
      Jun 30 11:28:30 php: /pkg_edit.php: Reloading Squid for configuration sync
      Jun 30 11:28:29 php: /pkg_edit.php: Reloading Squid for configuration sync
      Jun 30 11:28:20 check_reload_status: reloading filter
      Jun 30 11:28:17 php: /pkg_edit.php: Reloading Squid for configuration sync
      Jun 30 11:28:13 php: /pkg_edit.php: Reloading Squid for configuration sync
      Jun 30 11:28:12 check_reload_status: reloading filter
      Jun 30 11:28:09 php: /pkg_edit.php: Reloading Squid for configuration sync
      Jun 30 11:28:05 php: /pkg_edit.php: Reloading Squid for configuration sync

      Squid GUI log :
      30.06.2009 11:28:16 : sg_redirector_base_url: Select redirector base url (http://192.168.7.3:80/sgerror.php?url=blank&msg=&a=%a&n=%n&i=%i&s=%s&t=%t&u=%u)
      30.06.2009 11:28:16 : sg_create_config: add destinations:
      Ticketing; commercial; finance; medical; hrd; social_net; forbidden;
      30.06.2009 11:28:16 : sg_create_config: add rewrites: success safesearch;
      30.06.2009 11:28:16 : sg_redirector_base_url: Select redirector base url (http://192.168.7.3:80/sgerror.php?url=403%20%27URL%20not%20found%21%27&a=%a&n=%n&i=%i&s=%s&t=%t&u=%u)
      30.06.2009 11:28:16 : sg_redirector_base_url: Select redirector base url (http://192.168.7.3:80/sgerror.php?url=403%20&a=%a&n=%n&i=%i&s=%s&t=%t&u=%u)
      30.06.2009 11:28:16 : sg_redirector_base_url: Select redirector base url (http://192.168.7.3:80/sgerror.php?url=403%20&a=%a&n=%n&i=%i&s=%s&t=%t&u=%u)
      30.06.2009 11:28:16 : sg_redirector_base_url: Select redirector base url (http://192.168.7.3:80/sgerror.php?url=403%20&a=%a&n=%n&i=%i&s=%s&t=%t&u=%u)
      30.06.2009 11:28:16 : sg_redirector_base_url: Select redirector base url (http://192.168.7.3:80/sgerror.php?url=403%20&a=%a&n=%n&i=%i&s=%s&t=%t&u=%u)
      30.06.2009 11:28:16 : sg_create_config: add ACL's:
      wil1; toplevel; wil2; wil3; wil4; wil5; wil6; finance; commercial; hrd; googling; purchasing; ticketing; recruit; dokter; deny_all; itor;
      30.06.2009 11:28:16 : sg_create_config: add Default
      30.06.2009 11:28:16 : sg_redirector_base_url: Select redirector base url (http://192.168.7.3:80/sgerror.php?url=403%20%27URL%20not%20found%21%27&a=%a&n=%n&i=%i&s=%s&t=%t&u=%u)
      30.06.2009 11:28:16 : sg_reconfigure: save squidGuard config to '/usr/local/etc/squidGuard/squidGuard.conf'.
      30.06.2009 11:28:16 : squid_reconfigure: Remove old redirector options from Squid config.
      30.06.2009 11:28:16 : squid_reconfigure: Add new redirector options to Squid config.

      what i mistaken?

      squid guard still not worked  ???
      i need using time access for users, so i can managed sites the're can access by schedule.

      please help…

      1 Reply Last reply Reply Quote 0
      • E
        eethore
        last edited by

        the squid guard also having a strange behaviour.

        if i push SAVE, then tick the Enable, and Apply, it will start.
        But if i push Apply again, it will stopped.
        And then if i push Apply again, it will started again.
        After that if i push SAVE, it will stopped…

        ughhh...

        :'( :'(

        1 Reply Last reply Reply Quote 0
        • Z
          zabidin2
          last edited by

          To me,it's normal. First time, i saw that it really weird. But, when i test and take a look closer in status tab and services squidguard running. When i test, it working fine.

          1 Reply Last reply Reply Quote 0
          • E
            eethore
            last edited by

            finally my pfsense - squid - squidguard - lighsquid is WORKING !!!!  ;D ;D ;D :D :D :D ;) ;) ;) :) :) :) ::) ::) ::)

            i'm very happy about this, because it's been 6 month for me to searching for this!

            let me share some tips and trick why this can work :
            1. Make sure in
                PROXY SERVER tab,
                >>>the "Proxy interface" = LAN
                >>> "Allow users on interface" is turned ON
                >>>Transparant mode = ON
                >>> Enabled logging = ON
                >>> Log store directory = /var/squid/log
                >>> Proxy port = 3128
                >>> After you turn on the squid guard, in Custom Options = redirect_program /usr/local/bin/squidGuard -c /usr/local/etc/squidGuard/squidGuard.conf;redirector_bypass on;redirect_children 3

            2. Make sure in PROXY FILTER (SQUID GUARD),
              >>> the Enable = ON
              >>> the SquidGuard service state: STARTED
              >>> Blacklist = OFF
              >>> Blacklist proxy = [EMPTY]

            3. In FIREWALL Rules for LAN
              >>> Allow access for LAN  = ON

            4. In STATUS - SERVICES
              >>> Squid, Squid Guard = RUNNING

            that's all…

            if still not work, try this :

            1. Reinstall the package
            2. SAVE and APPLY the squid guard a couple of times
            3. Monitor the system log, if there any errors
            4. Monitor the services, makes sure all service is running

            The last is when i'll already done all of that, and it's still not working, this is the thing that i do :
            1. ERASE all the DESTINATION, TIMES, ACL, REWRITES.
            2. Don't use the BLACKLIST. It makes (sometimes) the SAVE and APPLY acted strange!
            3. RESTART the squid and squidguard.

            finally, i'm able to accomplish THE MOST POWERFULL AND EASIES FIREWALL, GATEWAY in the WORLD...pfsense...

            OUUUGGGHHHH !!!

            thanks for all!!!

            this forum really makes my mind open!
            :-*

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.