Hi list,
I'm new with pfsense. For many years I've used openbsd for
firewalling/webfiltering, carp and other without great problems and good
success.  Then I've ridden about pfsense and I've choosen to try it for
different reasons and maybe switch from obsd to pfsense. Principal reason
is that I can buy specialized hardware with pfsense installed at low cost
and because it works. This does not mean that openbsd does not work (it's
great).
Over this, I've installed latest stable, pfsense 2.2 on atom d525.
I've tried all basic operation all is ok (I love rrd graph). I've installed
snort as ips with community rules. It works good with some false positive
(my problem).Then I've installed some packages like cron, sarg, squid3 and
squidguard. I know that squid3 and squidguard are in beta version but I've
some issue with using theme. I've configured squid as transparent proxy
with antivirus filtering (with some modification) and all works very well.
Then I tried to use also squidguard for url filtering. I've followed
instruction on doc.pfsense.. without success. Blacklist are loaded, and
I've applied some categories deny policy.
Trying to test squidguard with a blocked url, squid call squidguard, but
squidguard does not block the url. I've tried to test squidguard manually
as reported from squidguard site with good success. The result is that the
site was blocked and redirected.
I've noticed that after loading  blacklist on pfsense, I can't find
relative domains.db, urls.db and so on in relative  blk_category. These
file .db are generated running squidGuard -C all.
I've tried also to disable squidGuard from squid, and enabling it on
squidclamav with relative directive without success.
Another issue is about squid custom directive. I've modified
url_rewrite_children from 5 to 25, saved and reloaded (as reported from the
console) without success (also rebooting).

How I can resolve this issue? Can someone point me in  the right direction?

Thanks in advance.

Alessandro
_______________________________________________
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold

Reply via email to