This is excellent Ryan, how about the nat/firewall rules?

 

From: list-boun...@lists.pfsense.org [mailto:list-boun...@lists.pfsense.org]
On Behalf Of Ryan Rodrigue
Sent: Thursday, April 26, 2012 6:40 PM
To: 'pfSense support and discussion'
Subject: Re: [pfSense] [pfsense] dansguardian

 

That's funny.  It deleted all of the values.  I cleaned it up a little and
put the correct values in red

 

 

From: list-boun...@lists.pfsense.org [mailto:list-boun...@lists.pfsense.org]
On Behalf Of Ryan Rodrigue
Sent: Thursday, April 26, 2012 5:24 PM
To: 'pfSense support and discussion'
Subject: Re: [pfSense] [pfsense] dansguardian

 

Mine is up and running, but I have to manually put the dansguardian port in
the web browser as a proxy server.  I do not have it working for transparent
squid

As you can see, most of the settings are default.

These are the Dansguardian settings. (I hope you can read this).

Daemon

Listening Settings
Enable dansguardian 
I agree with dansguardian Terms and Conditions.
<http://dansguardian.org/?page=copyright2>   - Checked

 

Listen Interface(s) 
LAN/loopback 

 


Listen port 
8080

 



Daemon Options.  softrestart

 

 

Min/Max Children 
8/120

 

 


Min/Max Spare Children 
4/32

 

Prefork Children 

8

 

Max Age Children

500


Max Ips 
 0
Parent proxy Settings

 


Proxy IP 
127.0.0.1

 


Proxy Port 
3128

 

General

Config Settings
Auth Plugins 

Proxy-Basic

 


Scan Options 

All with on in ()

 


Weighted phrase mode 

Singular = each weighted phrase found only counts once on a page


Lower casing options 

Force lover case

 


Phrase filter mode 

Use both


Url cache number 

blank

 


Url cache age 

blank


SSL man in the middle Filtering
CA 

none

 

Cert 
webconfigurator default

 

Content Scanner


Content Scanners (antivirus) 

None


freshclam frequency 
Every day

 


Content scanner timeout 
60

 


Content scan exceptions 
No Check


ICAP URL 
Blank

 


Misc Options 
Misc options. 

None

 

 

 

 

 

In squid from top to bottom I have selected (squid won't paiste for some
reason)

 

Proxy Interface: LAN and Loopback

Allow users = checked

Blank until Enable Logging

Enable logging = checked

Log store = /var/squid/logs

Log rotate = 90

Proxy port = 3128

ICP port = (blank)

Visible hostname = localhost

Anministrator email = admin@localhost

Language = English

X-Forward = no check

Disable Via = no check

Strip

The rest is blank

 

 

Upstream Proxy is totally blank and I am using no authentication for now.

 

 

This may not be the best settings.  If anyone has any suggestion, please let
me know.  I always look for ways to do things better.

_______________________________________________
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list

Reply via email to