[pfSense] [pfsense] dansguardian
k_o_l
k_o_l at hotmail.com
Fri Apr 27 11:52:31 EDT 2012
Ryan, your solution worked just fine, but in addition I added a fw rule to
catch all http (port 80) traffic and had it redirected to 8080, that way you
don't need to change the proxy on the individual hosts
From: list-bounces at lists.pfsense.org [mailto:list-bounces at lists.pfsense.org]
On Behalf Of Ryan Rodrigue
Sent: Thursday, April 26, 2012 6:40 PM
To: 'pfSense support and discussion'
Subject: Re: [pfSense] [pfsense] dansguardian
That's funny. It deleted all of the values. I cleaned it up a little and
put the correct values in red
From: list-bounces at lists.pfsense.org [mailto:list-bounces at lists.pfsense.org]
On Behalf Of Ryan Rodrigue
Sent: Thursday, April 26, 2012 5:24 PM
To: 'pfSense support and discussion'
Subject: Re: [pfSense] [pfsense] dansguardian
Mine is up and running, but I have to manually put the dansguardian port in
the web browser as a proxy server. I do not have it working for transparent
squid
As you can see, most of the settings are default.
These are the Dansguardian settings. (I hope you can read this).
Daemon
Listening Settings
Enable dansguardian
I agree with dansguardian Terms and Conditions.
<http://dansguardian.org/?page=copyright2> - Checked
Listen Interface(s)
LAN/loopback
Listen port
8080
Daemon Options. softrestart
Min/Max Children
8/120
Min/Max Spare Children
4/32
Prefork Children
8
Max Age Children
500
Max Ips
0
Parent proxy Settings
Proxy IP
127.0.0.1
Proxy Port
3128
General
Config Settings
Auth Plugins
Proxy-Basic
Scan Options
All with on in ()
Weighted phrase mode
Singular = each weighted phrase found only counts once on a page
Lower casing options
Force lover case
Phrase filter mode
Use both
Url cache number
blank
Url cache age
blank
SSL man in the middle Filtering
CA
none
Cert
webconfigurator default
Content Scanner
Content Scanners (antivirus)
None
freshclam frequency
Every day
Content scanner timeout
60
Content scan exceptions
No Check
ICAP URL
Blank
Misc Options
Misc options.
None
In squid from top to bottom I have selected (squid won't paiste for some
reason)
Proxy Interface: LAN and Loopback
Allow users = checked
Blank until Enable Logging
Enable logging = checked
Log store = /var/squid/logs
Log rotate = 90
Proxy port = 3128
ICP port = (blank)
Visible hostname = localhost
Anministrator email = admin at localhost
Language = English
X-Forward = no check
Disable Via = no check
Strip
The rest is blank
Upstream Proxy is totally blank and I am using no authentication for now.
This may not be the best settings. If anyone has any suggestion, please let
me know. I always look for ways to do things better.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.pfsense.org/pipermail/list/attachments/20120427/86954a37/attachment-0001.html>
More information about the List
mailing list