Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    "Bypass proxy for these destination IPs" is not working , can anyone assist?

    Scheduled Pinned Locked Moved Cache/Proxy
    5 Posts 3 Posters 2.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      nissimp
      last edited by

      Hi Guys,

      This is the second time I post such a message about "Bypass proxy for these destination IPs" feature located in Squid Proxy general settings page.

      The thing is that no matter what I put in that field, its not influencing Squid behavior …

      I am very frustrated, since I cannot bypass or disable SSLBUMP for domains or even use the following format ".dropbox.com".

      As an outcome, I started realize that I might need to drop squid proxy module and use other product that will enable me to handle such use cases.

      Do any of you experienced the same problems?

      It will be great if I get some response from pfSense guys although didn't get any from then till now.

      My pfsense version is: 2.2.2
      My squid proxy module version is:0.2.8

      Best Regards,

      Nissim

      1 Reply Last reply Reply Quote 0
      • N
        namm
        last edited by

        Hi Nissim

        i have been having the same issues even changing the config file didn't fix this.
        i am still working on this i have been also looking for a potential viable alternative.

        namm

        1 Reply Last reply Reply Quote 0
        • A
          aGeekhere
          last edited by

          Try using a service ip rather than a name

          Never Fear, A Geek is Here!

          1 Reply Last reply Reply Quote 0
          • N
            namm
            last edited by

            this worked thanks for the help

            1 Reply Last reply Reply Quote 0
            • N
              nissimp
              last edited by

              Hi Namm,

              I am not interested in using IP addresses since it kills the idea of dynamic hosts for example:

              cdn-1.xx.yy

              Such hosts are usually mapped to multiple IP's dynamically spinned on one cloud or the other.

              I would like to use the dns name and would like it to be resolved accordingly, otherwise there is no use excluding domains.

              I wish pfSense guys will respond to this thread and say something about this and why they blocked such option from working through the UI.

              Today, almost every proxy have the ability to exclude/bypass destination domains by putting: ".mydomain.com"

              Best Regards,

              Nissim

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.