New Squid 6.7 and Clamav 1.3.0
-
Available in the pf2ad repository:
- Squid 6.7
- Clamav 1.3.0
Details: https://gitlab.labexposed.com/-/snippets/15
-
-
Hi
Below link is not available now & squid 6.9 version is tested?? -
@thangamuthu said in New Squid 6.7 and Clamav 1.3.0:
Hi
Below link is not available now & squid 6.9 version is tested??Hi, sorry, i change my git repository.
You can check new files on:
https://git.labexposed.com/lgcosta/gists/src/branch/main/squid-6x
and no, I haven't tested the new versions of Squid yet
thx
-
-
Does SSL intercept work with 6.X the 5.8 move to 6.X seems to show errors for ssl certificates
-
@lg1980 how did you fix
https://redmine.pfsense.org/issues/15410
https://redmine.pfsense.org/issues/15381
-
@JonathanLee said in New Squid 6.7 and Clamav 1.3.0:
@lg1980 how did you fix
https://redmine.pfsense.org/issues/15410
https://redmine.pfsense.org/issues/15381
I will check and upgrade squid to 6.10
-
@lg1980 thanks it is squid 6.6 now that is running in 24
-
Did anyone manage to get these ports working on pf+ 24.03?
I just came across the deprecation warnings.. Good thing I'm still on 23.09...
Also, can we somehow verify what we're installing?
I don't really feel confident adding an unknown repo to my firewall, which contains all pfsense packages, just to install the Squid one.
@lg1980, and all others reading the thread, I hope you can understand why I'm questioning all this work.
Squid is a very specific package used mainly for monitoring outbound traffic. From the perspective of a malicious threat actor, it's obvious how hiding a backdoor in such a package can prove to be highly beneficial, especially now since Netgate is deprecating their port of package, making all Squid users scramble for solutions so their appliance doesn't fall behind on updates.
What I'm trying to say, having full build instructions, and being able to reproduce those locally, would greatly boost my confidence in using packages from a fellow "internet forum user".
In our current state of affairs of having no "official Squid package port", the only true way of securely upgrading Squid, as far as I can see, would be by being able to inspect the source changes, while also being able to build the package locally from source, and installing it manually.
Hence I assume that the entire pfsense Squid community would be extremely grateful if @lg1980 could share instructions on how to do so!