Squid 3 + Guard 3 blocking all http?



  • Howdy ive got squid running with guard 3 block porn etc… but it seems to be blocking all http site too? (Yet https outside of porn works fine)

    Any ideas why this is happening?
    I'm sure ive missed a tick box of something like that.

    Thanks

    Example (Wifes website)

    Request denied by pfSense proxy: 403 Forbidden

    Reason:
    Client address: 10.0.0.108
    Client group: default
    Target group: none
    URL: http://craftybluefox.com/



  • Have you selected Default access : Deny in Common ACLs of Squidguard package?



  • Default access [all]  must be ALLOW



  • @networkinggeek:

    Have you selected Default access : Deny in Common ACLs of Squidguard package?

    Don't think so mate

    @finalcut:

    Default access [all]  must be ALLOW

    Is set on allow



  • then make sure you add the subnet in allowed subnet inside squid



  • @finalcut:

    then make sure you add the subnet in allowed subnet inside squid

    Hi, I'm quite new to all this could you explain alittle more for me please.



  • squidguard(web filtering) work with squid3 (as poxy)
    after you install squidguard and choose which to block and which allow
    you should then save
    then go to the first tab of squidguard and click apply and then save

    from squid3 you must add the allowed subnet for example
    192.168.1.0/24
    in addition to choose lan interface and 3128 as port

    also there is tow type of proxy
    non-transparent (you should add the ip and the port in each browser(firefox it be or any other flavor ) for user
    transparent you shouldn't add the ip and port in the browser but you choose it from squid configuration



  • @finalcut:

    squidguard(web filtering) work with squid3 (as poxy)
    after you install squidguard and choose which to block and which allow
    you should then save
    then go to the first tab of squidguard and click apply and then save

    from squid3 you must add the allowed subnet for example
    192.168.1.0/24
    in addition to choose lan interface and 3128 as port

    also there is tow type of proxy
    non-transparent (you should add the ip and the port in each browser(firefox it be or any other flavor ) for user
    transparent you shouldn't add the ip and port in the browser but you choose it from squid configuration

    Cheers will test it soon.


Log in to reply