OPNsense Forum

Archive => 17.7 Legacy Series => Topic started by: did on November 03, 2017, 03:11:28 pm

Title: Proxy Web Filtering
Post by: did on November 03, 2017, 03:11:28 pm
I am using 17.7.5 version of OPNsense.
I activated the web proxy and configured the web filtering with the UT Toulouse blacklist : OK it works but :

1) Users' web access to banned sites are not logged
2) It is currently not possible to customize the error message returned to the user (the current message is not very explicit)

Does anyone have informations ?
Is this a problem in my configuration ?
Is there any evolution of OPNsense in this direction ?

Thank you for your replies,
Regards,
Didier
Title: Re: Proxy Web Filtering
Post by: FCM on November 03, 2017, 03:27:12 pm
hello Didier,
Under Administration you have your access logs but you have to activate it via Admin/general proxy settings/Enable store logging
For the message, it's Squid related, so you have to edit you squid web site, it's not doable in Opnsense...
Title: Re: Proxy Web Filtering
Post by: fabian on November 03, 2017, 07:59:41 pm
the files are somewhere in /usr/local/etc/squid if you are looking for them - they are not rewritten via the GUI so they are the squid default templates.
Title: Re: Proxy Web Filtering
Post by: Wayne Train on November 09, 2017, 01:57:49 pm
Another question: Is it possible to proxy https traffic without tls-interception ?
Title: Re: Proxy Web Filtering
Post by: did on November 16, 2017, 03:57:26 pm
Hello FCM and fabian

Thank you for your answers.

1) concerning the proxy logs : they are actually activated but this is not very practical because :


2) To customize the error message, the file is /usr/local/etc/squid/xx/ERR_ACCESS_DENIED
--> OK it works
Title: Re: Proxy Web Filtering
Post by: FCM on November 17, 2017, 01:36:38 pm
hello,
for the logs I did a a cron job that save the file each day and erase them after X days