• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Squidguard Web Filter Issues

Scheduled Pinned Locked Moved pfSense Packages
44 Posts 3 Posters 40.4k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • N
    Nachtfalke
    last edited by Jul 22, 2011, 7:03 AM

    okay.

    I think there is a mistake in the "Expressions" block.
    Expressions are - that's the way I understand it - if an URL contains a word of this. For example if the expression is:

    .porn.

    This means every URL with the word "porn" in front, at the end or somewhere in the middle is blocked:
    www.XYZporn.com
    www.pornXYZ.com
    www.ABCpornXYZ.com

    You have to put your IPs and URLs in the block "Domain list".
    The text above explains it. Just enter there:

    
    google.com 12.23.34.45 12.12.34.34 34.34.34.34 example.com amazon.com
    
    

    PS: If you are using IPs, you must be sure, that you didn't check the box "Do not allow IP addresses in URLs".
    It is better to use domain names in the "domain list" so the IP behind this domain can change and you do not need to change this from time to time in SquidGuard. If it is not possible to use domain names, then remember the checkbox with "Do not allow IP addresses in URLs"

    To your question if this make sense:
    Yes it does. I am doing this the same way.

    1 Reply Last reply Reply Quote 0
    • C
      coachs88
      last edited by Jul 28, 2011, 12:49 PM

      Sorry for the delayed reply.. haven't been into work for a few days, have been terribly sick with mono.

      Anyway, I tried your suggestion of instead of having expressions, having all the domains I want to whitelist instead. Now instead of them all getting blocked on all workstations, it isn't blocking anything at all!

      Should I post screen shots again? I really don't understand what I'm missing at this point.

      "You are merely a better target in the light."

      1 Reply Last reply Reply Quote 0
      • N
        Nachtfalke
        last edited by Jul 28, 2011, 6:09 PM

        Sure, you can post again all tabs of SquidGuard.

        But you want to realize the same as I am doing and I posted all necessary options in my screenshots. Perhaps you are missing one little checkbox ;-)

        Further, after changing anything in SquidGuard, are you applying "Save" and after this "Apply" on the first tab of SquidGuard ? This is neccessary for a working proxy filter!

        1 Reply Last reply Reply Quote 0
        • C
          coachs88
          last edited by Aug 2, 2011, 12:47 PM

          Okay. Here are the updated screenshots. I hope you can help.

          Filter is working perfectly on limited workstations but it isn't allowing all access to admin workstations.

          prxy1.png
          prxy1.png_thumb

          "You are merely a better target in the light."

          1 Reply Last reply Reply Quote 0
          • C
            coachs88
            last edited by Aug 2, 2011, 12:48 PM

            Another

            prxy2.png
            prxy2.png_thumb

            "You are merely a better target in the light."

            1 Reply Last reply Reply Quote 0
            • C
              coachs88
              last edited by Aug 2, 2011, 12:49 PM

              Next

              prxy3.png
              prxy3.png_thumb

              "You are merely a better target in the light."

              1 Reply Last reply Reply Quote 0
              • C
                coachs88
                last edited by Aug 2, 2011, 12:49 PM

                Next

                prxy4.png
                prxy4.png_thumb

                "You are merely a better target in the light."

                1 Reply Last reply Reply Quote 0
                • C
                  coachs88
                  last edited by Aug 2, 2011, 12:49 PM

                  Last one

                  prxy5.png
                  prxy5.png_thumb

                  "You are merely a better target in the light."

                  1 Reply Last reply Reply Quote 0
                  • N
                    Nachtfalke
                    last edited by Aug 2, 2011, 1:53 PM Aug 2, 2011, 1:49 PM

                    Hi,

                    proxy3.png:

                    uncheck "Do not allow IP addresses bypass"
                    defaulf access: allow and NOT deny.
                    This page is for the admin workstations, like you call it ;)
                    All that you deny on this page is a restriction for you admin workstation.

                    proxy4.png:
                    Is ok, but here you can check:
                    "Do not allow IP addresses bypass" BUT ONLY if you dot not have any IP addresses in proxy5.png

                    Head up - you got it :-)

                    1 Reply Last reply Reply Quote 0
                    • C
                      coachs88
                      last edited by Aug 4, 2011, 12:40 PM

                      Dang..

                      I have done all of these things and it still isn't working how I want. It is still blocking all access to limited workstations. Every other computer (admin) it is blocking access except the whitelist.

                      I don't understand what could possibly be going wrong at this point.  :-[

                      "You are merely a better target in the light."

                      1 Reply Last reply Reply Quote 0
                      • N
                        Nachtfalke
                        last edited by Aug 4, 2011, 4:30 PM

                        Can you show me again your changed "Common ACL" tab.
                        And, do you click ALWAYS "Save" and "apply" on "General settings" tab ?

                        1 Reply Last reply Reply Quote 0
                        • C
                          coachs88
                          last edited by Aug 4, 2011, 4:35 PM

                          Here you go.

                          commonacl.png
                          commonacl.png_thumb

                          "You are merely a better target in the light."

                          1 Reply Last reply Reply Quote 0
                          • N
                            Nachtfalke
                            last edited by Aug 4, 2011, 8:41 PM

                            Hmmmm, I can not see any difference to my filter config. Not sure why it is not working.

                            Please try to save and apply settings in squid guard again and then check "Filter GUI" in squid guard. Perhaps there is some info because it isn't working. please also try to check system logs after reconfiguring squidguard.

                            perhaps you can focus the maintainer of SquidGuard "dvserge" to this thread. I am at the end of my know how.

                            1 Reply Last reply Reply Quote 0
                            41 out of 44
                            • First post
                              41/44
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                              This community forum collects and processes your personal information.
                              consent.not_received