#squid #proxy #squidproxy #www #http #https #squidguard #pfsense #firewall #ids #ips #clamav #wpad
``System/Package Manager / Installed Packages``
``Available Packages``
Install ``Squid`` and ``SquidGuard``
Go to ``Services``, ``SquidProxy``



Choose Tab ``Antivirus``:

Zet AV aan, of niet.
Zet ook de automatische update aan:

Do NOT forget to **SAVE**
Go to ``Services``, ``SquidGuardProxyFilter``:


Go to

Load this list:
[https://web.archive.org/web/20210315164349/https://www.shallalist.de/Downloads/shallalist.tar.gz](https://web.archive.org/web/20210315164349/https:/www.shallalist.de/Downloads/shallalist.tar.gz)
Copy of this list: [https://janvandalemusic.stackstorage.com/s/shallalist](https://janvandalemusic.stackstorage.com/s/shallalist)
Alternatives [http://squidguard.mesd.k12.or.us/](http://squidguard.mesd.k12.or.us/)
[http://dsi.ut-capitole.fr/blacklists/download/all.tar.gz](http://dsi.ut-capitole.fr/blacklists/download/all.tar.gz)
Both the **QUIDPROXY** and the **PROXYGUARD** should be running!
If you'd like to add urls: ``Target Categories``:
``/var/db/squidguard`` – Location database blacklists
``/var/squid/logs`` – Logfiles
``/var/squidGuard/log`` – GuardLogs, blocklog
To create an #option252 entry in Microsoft #DHCP
1. Click Start, point to All Programs, point to Administrative Tools, and then click DHCP.
2. In the console tree, right-click the applicable DHCP server, click Set Predefined Options, and then click Add.
3. In Name, type WPAD.
#wpad
1. In Code, type 252.
2. In Data type, select String, and then click OK.
3. In String, type [http://Computer_Name:Port/wpad.dat](http://Computer_Name:Port/wpad.dat) where:
- Computer_Name is the fully qualified domain name of the ISA Server computer.
- Port is the port number on which automatic discovery information is published. You can specify any port number. By default, ISA Server publishes automatic discovery information on port 8080.
4. Right-click Server options, and then click Configure options.
Confirm that Option 252 is selected.
Important
- Perform this task on the relevant DHCP server.
- When you specify the Option 252 string, be sure to use lowercase letters when typing wpad.dat. For example, if you type [http://isaserver:8080/Wpad.dat](http://isaserver:8080/Wpad.dat), the request will fail. ISA Server uses wpad.dat and is case-sensitive.
- You do not need to create anything specifically for Wspad.dat. Wspad.dat uses the same 252 option as wpad.dat, and modifies the wpad.dat name to Wspad.dat as required.
More INFO:
[How to Block website with Squid and SquidGuard – ThongTranIT (wordpress.com)](https://thongtransite.wordpress.com/2018/09/17/how-to-block-website-with-squid-and-squidguard/)
[PFsense HTTP Webfiltering - YouTube](https://www.youtube.com/watch?v=nZ8rdpqLmJ4&list=PLXvkPiCm8shdHpXPmGnrExL1gD15PvCju&index=10)

[SSL inspection : configuration on PFSense / TLS inspection / Squid SSL inspection - YouTube](https://www.youtube.com/watch?v=n6wzD9ugyI8)

``/var/squid/logs``
``tail –f access.log``
``tail –f /var/squid/logs/access.log``
[[pfSense, Update Upgrade]]
[[pfSense, Receive log messages on Telegram]]
[[Enable SSH Server on PfSense]]