Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-19 Thread Benjamin E Nichols
Past, comers Signed, Benjamin E. Nichols http://www.squidblacklist.org On Oct 19, 2017, at 2:21 PM, Adam Cage wrote: > OK Chris, thanks a lot.I'm using Squid + Squidguard now in transparent > mode. > > HTTPS filter with Squidguard now works OK, but HTTP doesn't. I

Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-19 Thread Adam Cage
OK Chris, thanks a lot.I'm using Squid + Squidguard now in transparent mode. HTTPS filter with Squidguard now works OK, but HTTP doesn't. I followed a basic tutorial using port 3128 for HTTP and 3129 for HTTPS, but I can't find solve the problem. Can you suggest me something to review ?

Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-19 Thread Chris L
> On Oct 19, 2017, at 8:36 AM, Adam Cage wrote: > > Dear Volker and others, > > If I just inspect on host name only, do I have to create a CA and > Certificate to install in the proxy server of pfSense anyway ??? > > Thnks a lot, > > ADAM You do have to create a CA and

Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-19 Thread Adam Cage
Dear Volker and others, If I just inspect on host name only, do I have to create a CA and Certificate to install in the proxy server of pfSense anyway ??? Thnks a lot, ADAM 2017-10-12 17:24 GMT-03:00 Volker Kuhlmann : > On Fri 13 Oct 2017 08:15:20 NZDT +1300, Adam Cage

Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-13 Thread Adam Cage
Daer Volker, thanks for your great explanation. So I will use the host name only at least for this moment, in order to start some tests. Because we doesn't want to install any certificate in the WiFi clients, we want a 100% transparent connection. Regards, ADAM 2017-10-12 17:24 GMT-03:00

Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-12 Thread Volker Kuhlmann
On Fri 13 Oct 2017 08:15:20 NZDT +1300, Adam Cage wrote: > This is useful to filter facebook, twitter, gmail and other HTTPS sites, > just taking into account the URL ??? What can't I block for example ??? Look at squidguard rules - they're in 3 sections: hosts only, URLs, and general regexp.

Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-12 Thread Adam Cage
Sorry but in case of using SSL Peek/Splice you say I cannot get a standard “site blocked” page, just a broken SSL negotiations for blocked sites. I think I can block URL's and not content into the SSL connections. This is useful to filter facebook, twitter, gmail and other HTTPS sites, just

Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-12 Thread Kamminthang Nengzalam
Enable https with splice all on squid in transparent mode On Thu, 12 Oct 2017 at 23:38 Adam Cage wrote: > Thanks to all, you help me a lot... > > Chris, when you said "accept that you aren’t going to be able to do more > than the most basic filtering on HTTPS traffic

Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-12 Thread Adam Cage
Thanks to all, you help me a lot... Chris, when you said "accept that you aren’t going to be able to do more than the most basic filtering on HTTPS traffic - that is to say, by IP address or FQDN"...What do you mean exactly ? The IP or FQDN https filtering will be made by Squid or Squidguard in

Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-12 Thread Chris L
> On Oct 11, 2017, at 1:05 PM, Adam Cage wrote: > > Dear Chris, I need the Squid proxy to filter traffic working with > Squidguard. The guest cell phones will be authenticated to my WiFi, and > after that they can go to HTTP/HTTPS web sites with zero configuration >

Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-11 Thread Steve Yates
Of Adam Cage Sent: Wednesday, October 11, 2017 3:06 PM To: pfSense Support and Discussion Mailing List <list@lists.pfsense.org> Subject: Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones ... Squid also let me have web traffic statistics with it

Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-11 Thread PiBa
Hi, Op 11-10-2017 om 23:15 schreef Chris Bagnall: On 11 Oct 2017, at 21:05, Adam Cage wrote: Dear Chris, I need the Squid proxy to filter traffic working with Squidguard. The guest cell phones will be authenticated to my WiFi, and after that they can go to HTTP/HTTPS web

Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-11 Thread Chris Bagnall
On 11 Oct 2017, at 21:05, Adam Cage wrote: > Dear Chris, I need the Squid proxy to filter traffic working with > Squidguard. The guest cell phones will be authenticated to my WiFi, and > after that they can go to HTTP/HTTPS web sites with zero configuration > because I can't

Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-11 Thread Adam Cage
Dear Chris, I need the Squid proxy to filter traffic working with Squidguard. The guest cell phones will be authenticated to my WiFi, and after that they can go to HTTP/HTTPS web sites with zero configuration because I can't tell my guests to setup a CA certificate, a proxy IP and port in their

Re: [pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-11 Thread Chris L
> On Oct 11, 2017, at 12:54 PM, Adam Cage wrote: > > Dear people, I have pfSense 2.3 with Squid and Squidguard installed. > > I need a transparent proxy in order to let every cell phone that uses the > WiFi service, go to the web without any extra configuration...just go

[pfSense] HTTP/HTTPS filtering with Pfsense+Squid+Squidguard for cell phones

2017-10-11 Thread Adam Cage
Dear people, I have pfSense 2.3 with Squid and Squidguard installed. I need a transparent proxy in order to let every cell phone that uses the WiFi service, go to the web without any extra configuration...just go to the web in a 100% transparent way. I've read that this is impossible because for

Re: [pfSense] squid/squidguard updates broken on 2.2.4

2015-10-02 Thread Edward Josette Ortega Salas
Greetings. Exactly, that why i'm using the old version.. My workaround.. Install a linux server and run squid, util that getting solve. 2015-09-30 21:15 GMT-04:30 Volker Kuhlmann : > On Wed 30 Sep 2015 01:43:42 NZDT +1300, Jonathan Filogna wrote: > > > cd /var/squid >

Re: [pfSense] squid/squidguard updates broken on 2.2.4

2015-09-30 Thread Volker Kuhlmann
On Wed 30 Sep 2015 01:43:42 NZDT +1300, Jonathan Filogna wrote: > cd /var/squid > rm -rf cache/ > mkdir cache/ > chown proxy:proxy cache/ > squid -zX > /usr/local/etc/rc.d/squid.sh start That also obliterates all the cache content. I managed to keep it by only re-creating the missing directories

Re: [pfSense] squid/squidguard updates broken on 2.2.4

2015-09-29 Thread Jonathan Filogna
There's a possible solution " Failed to verify one of the swap directories, Check cache.log for details. Run 'squid -z' to create swap directories " In console cd /var/squid rm -rf cache/ mkdir cache/ chown proxy:proxy cache/ squid -zX /usr/local/etc/rc.d/squid.sh start Good luck

Re: [pfSense] squid/squidguard updates broken on 2.2.4

2015-09-29 Thread Edward Josette Ortega Salas
Greeting! Firstable i wanna thanks you for your quick answer but i already did that.. That workaround does not work, i had to do That every 5 min.. That why this morning i decided to downgrade my Pfsense Obviously that is not the answer, but i just bought time. El mar 29/09/2015, 9:31,

[pfSense] squid/squidguard updates broken on 2.2.4

2015-09-28 Thread Volker Kuhlmann
I upgraded to the new packages: squid3 0.3.4 squidGuard 1.9.15 which were offered. No more web browsing... squid fails on startup, with pfsense attempting to restart every minute and cache.log growing to tons of MB fast. The critical entry is right at the top: 2015/09/29 08:31:20 kid1| ERROR:

[pfSense] Squid + Squidguard

2015-04-21 Thread David White
I updated a client's pfSense server from 2.2.0 to 2.2.1 a couple weeks ago, and since then, the transparent proxy I had setup with Squid, doing content filtering with Squidguard, broke. I just updated again from 2.2.1 to 2.2.2 last week, and its still not working. Squid as a service is humming

Re: [pfSense] Squid + Squidguard

2015-04-21 Thread A Mohan Rao
i m facing same issue from last 6 months but still no one can give positive solution. then i m move to 2.1.3 there was working well my squid3-squid gurad etc... new version is not good have lots of problems.. On Wed, Apr 22, 2015 at 1:47 AM, compdoc comp...@hotrodpc.com wrote: The command

Re: [pfSense] Squid + Squidguard

2015-04-21 Thread compdoc
The command '/usr/pbi/squid-amd64/sbin/squid -k reconfigure' returned exit code '1' ... squid: ERROR: No running copy' If you type the following on the command line, do you get any output? squid -k shutdown Use your browser to start squid again. useful log: /var/squid/logs/cache.log