Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    squid / squidguard reliability

    Scheduled Pinned Locked Moved pfSense Packages
    6 Posts 4 Posters 1.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      Mik 1
      last edited by

      Hello,
      I was using squid and squidguard for web filtering since few weeks and after some configuration attemps it suddenly stopped working. The service seems to be working but I have no filtering anymore while it was working perfectly before. I tried to reboot pfsense but I still have the same problem.
      I googled on this and found another user with same behaviour.
      I don't have a lot of experience with squid so maybe I defined wrong settings but I checked a few times and everything seems to be configured properly.

      So here are my questions (before to reinstall squid packages to setup a new config from scratch) :

      1. Is squid reliable ?

      2. If I uninstall the squid packages, do I have to delete some config files from shell before doing a new install ?

      3. I am also using haproxy as a reverse proxy, does it make sense to use the squid packages with haproxy, or should I use another web filtering tool alongside haproxy ? (I don't need the cache behavior of the proxy)

      thanks,
      regards,
      Michael

      DaddyGoD 1 Reply Last reply Reply Quote 0
      • DaddyGoD
        DaddyGo @Mik 1
        last edited by

        @mik-1 said in squid / squidguard reliability:

        So here are my questions (before to reinstall squid packages to setup a new config from scratch) :

        Is squid reliable ?

        If I uninstall the squid packages, do I have to delete some config files from shell before doing a new install ?

        I am also using haproxy as a reverse proxy, does it make sense to use the squid packages with haproxy, or should I use another web filtering tool alongside haproxy ? (I don't need the cache behavior of the proxy)

        Hi,

        1. good stuff for thousands of years, but only in the right hands (not for a novice administrator and not in a home environment)

        2. you have two options to keep or not keep the squid settings, ticking or not ticking "Keep Settings" (if I were you, I would clear the cache before reinstalling, but reinstalling is definitely not the answer)

        3. you trying to compare two proxies, which is not relevant here, each one is good at a slightly different thing, but each one is cacheable if needed, ergo I don't understand why you are complicating it 😉

        Cats bury it so they can't see it!
        (You know what I mean if you have a cat)

        B 1 Reply Last reply Reply Quote 0
        • B
          bebyzone6 @DaddyGo
          last edited by

          This post is deleted!
          1 Reply Last reply Reply Quote 0
          • M
            Mik 1
            last edited by Mik 1

            I checked again all settings and I have no filtering :(
            Last logs are older than 10 days, it was the date when I tried some settings about the cache.

            Can you confirm I don't need cache to do web filtering ?

            How can I diagnose my problem ?

            Any advice would be appreciated :)
            I also noticed c-icap and clamd services are not working and I can't start them

            M 1 Reply Last reply Reply Quote 0
            • M
              michmoor LAYER 8 Rebel Alliance @Mik 1
              last edited by michmoor

              @mik-1

              1. netgate forums is usually not the best place to get help. sad but very true. i suggest the pfsense subreddit for quick feedback

              2. squid is unreliable at times this is true. it does randomly stop working. To be clear this is only with the pfsense package. I have another squid implementation that's been flawless for months.

              3. I would strongly advise to use pfblockerng if you are trying to do any type of domain filtering. To be clear, pfblocker only does domain and not URL filtering.

              edit: post your problem in the pfsense subreddit. Much quicker feedback and resolution of common problems.

              Firewall: NetGate,Palo Alto-VM,Juniper SRX
              Routing: Juniper, Arista, Cisco
              Switching: Juniper, Arista, Cisco
              Wireless: Unifi, Aruba IAP
              JNCIP,CCNP Enterprise

              M 1 Reply Last reply Reply Quote 0
              • M
                Mik 1 @michmoor
                last edited by

                @michmoor
                Thank you a lot for this clear answer, I will follow your advice for next questions.

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.