ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    cannot access gmail when bypassing proxy server (sometimes not always !!!!????)

    Scheduled Pinned Locked Moved IT Discussion
    59 Posts 4 Posters 15.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • IT-ADMINI
      IT-ADMIN
      last edited by

      yes, but the proxy server can block also https if and only if the browser is aware of the proxy server, and if the browser not using any proxy server the https traffic will pass through the proxy but the proxy will be unable to do anything with it,

      scottalanmillerS 1 Reply Last reply Reply Quote 0
      • scottalanmillerS
        scottalanmiller @IT-ADMIN
        last edited by

        @IT-ADMIN said:

        yes, but the proxy server can block also https if and only if the browser is aware of the proxy server, and if the browser not using any proxy server the https traffic will pass through the proxy but the proxy will be unable to do anything with it,

        In the way that you have set it up, yes. That need not be the case. There are many ways to architect the proxy server.

        1 Reply Last reply Reply Quote 0
        • scottalanmillerS
          scottalanmiller
          last edited by

          I've not done this in a very long time. But HTTPS setup is the correct answer to push everything through the proxy. Otherwise you need to move the proxy out of the packet path so that the bypassing clients can fully bypass it.

          http://www.howtoforge.com/filtering-https-traffic-with-squid

          1 Reply Last reply Reply Quote 0
          • IT-ADMINI
            IT-ADMIN
            last edited by

            i think it is time to try sophos UTM, because really this temporarily nature of this problem broke my trust toward pfSense, and what annoy me more i cannot find any explanation for this problem,
            because the problem itself is not annoying but when you can't figure out the cause of the problem, that time you hate yourself. hhhh

            1 Reply Last reply Reply Quote 1
            • IT-ADMINI
              IT-ADMIN
              last edited by

              and this what lower my self confidence sometimes when i cannot find a cause for an IT problem, or a solution for it, since i don't have strong IT experience this take it toll on me

              1 Reply Last reply Reply Quote 0
              • scottalanmillerS
                scottalanmiller
                last edited by

                Using Squid proxy is definitely a more advanced UNIX task.

                For your light need, have you considered something more simple like using hosts files? Really simple to maintain.

                1 Reply Last reply Reply Quote 0
                • IT-ADMINI
                  IT-ADMIN
                  last edited by

                  but if use only host file, sure there will be some users who will manage to access those blocked website, i think it is not a reliable solution, isn't it???

                  scottalanmillerS 1 Reply Last reply Reply Quote 0
                  • scottalanmillerS
                    scottalanmiller @IT-ADMIN
                    last edited by

                    @IT-ADMIN said:

                    but if use only host file, sure there will be some users who will manage to access those blocked website, i think it is not a reliable solution, isn't it???

                    Can't the work around by using HTTPS now?

                    1 Reply Last reply Reply Quote 0
                    • scottalanmillerS
                      scottalanmiller
                      last edited by

                      It's easier to work around all this than it is to not because you can make an external hairpin to bypass pretty much any proxy. Even billion dollar international firms can't really get around that easily.

                      1 Reply Last reply Reply Quote 0
                      • C
                        Carnival Boy
                        last edited by

                        I used to use Squid, but now use Trend Micro Worry-Free Business Security installed on all my clients. This handles antivirus and web protection, and the GUI makes it very easy to block specific websites or categories of websites. I haven't implemented any Active Directory integration, which is limiting, but I'm not sure how easy that is with Squid either?

                        I'm also trialling GFI Webmonitor, which offers a similar service but is cloud based, and therefore easier to manage our home workers.

                        But I used to like the Squid logs for investigating what users were up to at any given point in time. Neither Trend or GFI provides that functionality. So I may go back to Squid.

                        1 Reply Last reply Reply Quote 0
                        • IT-ADMINI
                          IT-ADMIN
                          last edited by

                          what about this temporarily nature of this problem, anyone can guess with me how this occur only sometimes ????!!!!!

                          1 Reply Last reply Reply Quote 0
                          • IT-ADMINI
                            IT-ADMIN
                            last edited by

                            can this have any explanation ?????

                            1 Reply Last reply Reply Quote 0
                            • scottalanmillerS
                              scottalanmiller
                              last edited by

                              I think we need a network map to understand exactly how things are flowing through the existing proxy.

                              1 Reply Last reply Reply Quote 0
                              • IT-ADMINI
                                IT-ADMIN
                                last edited by

                                ok, i will make a simple network map to make thing more clear

                                thank you very much

                                1 Reply Last reply Reply Quote 0
                                • scottalanmillerS
                                  scottalanmiller
                                  last edited by

                                  Thanks.

                                  1 Reply Last reply Reply Quote 0
                                  • IT-ADMINI
                                    IT-ADMIN
                                    last edited by

                                    ok, my network map is the following, if someone can guess with me why this problem happen only sometimes,

                                    map.JPG

                                    thank you so much fir any clarification ...

                                    1 Reply Last reply Reply Quote 0
                                    • scottalanmillerS
                                      scottalanmiller
                                      last edited by

                                      Thanks, that helps a lot.

                                      1 Reply Last reply Reply Quote 0
                                      • IT-ADMINI
                                        IT-ADMIN
                                        last edited by

                                        hopefully someone give me an explanation why this problem occur

                                        1 Reply Last reply Reply Quote 0
                                        • scottalanmillerS
                                          scottalanmiller
                                          last edited by

                                          We're wracking our brains on this but it is very odd, which, of course, is why you are having the issue 🙂

                                          My only guess is that it has to do with the transparent proxy situation. The proxy is in line for all traffic, so it might be somehow interfering in an unpredictable way, but I cannot determine how.

                                          1 Reply Last reply Reply Quote 0
                                          • IT-ADMINI
                                            IT-ADMIN
                                            last edited by

                                            hhhh
                                            tell my Mr Scott, did you ever face such situation when you find yourself unable to explain the cause of a problem, you can imagine how it is embarrassing, especially in the business environment, when your manager tell you : why you didn't find a solution for this problem, lol

                                            scottalanmillerS 1 Reply Last reply Reply Quote 0
                                            • 1
                                            • 2
                                            • 3
                                            • 1 / 3
                                            • First post
                                              Last post