Skip to main content
Microsoft
separator
https://catalogartifact.azureedge.net/publicartifacts/cloud-infrastructure-services.squid-web-28b1a1d7-48bd-4791-a568-ff5594447333/image6_squidproxywindows2016216216x216.png

Squid Proxy Server with Web Console

by Cloud Infrastructure Services

Squid 7.6 with web dashboard & AD authentication for access control, URL filtering, traffic monitoring, reporting, caching & management

Squid Proxy Server with Web Console and Directory Authentication

Squid Proxy Server is a caching forward proxy for HTTP and HTTPS, packaged as an appliance with a web console (CloudInfra Proxy Manager) so it can be run without editing configuration files by hand. Production-ready Squid Proxy Server with a modern web dashboard for access control, URL filtering, traffic monitoring, reporting, caching, health monitoring and configuration management.

Squid Proxy with Web GUI - CloudInfra Proxy Manager Features

Squid 7.6 compiled from source on Ubuntu 24.04 LTS, with the management console on port 8443 and the proxy on port 3128.

  • Access rules: Allow or deny by client address, network, directory user or directory group, against a domain, a network or a named list. Rules are evaluated in order and the console shows you the order.
  • URL filtering: Keep named lists of domains and networks and reuse them across rules, so one edit updates every rule that refers to the list.
  • Directory authentication: Active Directory, Entra Domain Services or OpenLDAP, over LDAPS on port 636 or StartTLS on port 389. StartTLS fails rather than falling back to clear text. Install your directory certificate authority from the console so the connection validates.
  • Microsoft 365 endpoints: Microsoft publishes the address ranges its services use, and the appliance keeps that list current so those policies do not go stale.
  • Certificate management: Replace the console certificate with your own from the console and the browser warning goes away. The pair is checked before anything is written, takes effect without a restart, and the previous certificate is restored if the new one fails to load.
  • Web caching & bandwidth: Squid is a caching proxy, and the cache is fully configurable from the console: enable or disable it, set the cache size on disk, the memory cache, and the maximum object size.
  • Safe changes: Every change is parsed by the proxy engine itself before installation, the running configuration is snapshotted, and the proxy is health checked afterwards. If it fails, the snapshot is restored automatically.
  • Traffic reporting: Requests, allowed and blocked counts, cache hit rate, top destinations and top clients, all computed from the proxy's own log.
  • Health monitoring: Monitor the status of your Squid proxy such as proxy service, listener, configuration validity, log rotation, cache, disk, DNS, pending security updates & more.
  • Backups, audit log and configuration history: Included as standard, so every change is recorded and any earlier configuration can be restored.

Common Use Cases for Squid Proxy

  • Controlled outbound access from private subnets: Give workloads with no direct route to the internet one audited way out. You decide what they may reach, and every request is logged in one place. Clients are pointed at the proxy deliberately, so nothing is intercepted without your knowledge.
  • Web filtering for staff, by directory group: Connect the appliance to your Active Directory and write rules that name groups rather than addresses. One policy for marketing, another for engineering, and each rule reads back as a sentence before you apply it.
  • Microsoft 365 access without maintaining address lists: Microsoft publishes the ranges its services use and changes them regularly. The appliance keeps that list current, so a Microsoft 365 policy does not quietly go stale.
  • Cutting repeated download traffic: Package mirrors, container layers and installers pulled by many machines are served from cache the second time, which reduces both the wait and the egress bill.

Squid Proxy First Boot

The TLS certificate and the administrator password are generated on your instance the first time it starts, so no two instances share them. The password is written to the instance console and to a file on the instance, and you are required to change it at first sign in.

Setup / Documentation / Support

Post deployment Getting Started Guide At: CloudInfra Proxy Manager Documentation

Learn more on: Squid Proxy Server with Web Filtering & Management Software

Disclaimer: Squid is licensed under GNU GPL license. No warrantee of any kind, express or implied, is included with this software. Use at your risk.

At a glance

https://catalogartifact.azureedge.net/publicartifacts/cloud-infrastructure-services.squid-web-28b1a1d7-48bd-4791-a568-ff5594447333/image5_squidproxyazure.png
https://catalogartifact.azureedge.net/publicartifacts/cloud-infrastructure-services.squid-web-28b1a1d7-48bd-4791-a568-ff5594447333/image1_squidproxyguiazure.png
https://catalogartifact.azureedge.net/publicartifacts/cloud-infrastructure-services.squid-web-28b1a1d7-48bd-4791-a568-ff5594447333/image3_urlfilteringsquidazure.png
https://catalogartifact.azureedge.net/publicartifacts/cloud-infrastructure-services.squid-web-28b1a1d7-48bd-4791-a568-ff5594447333/image8_AccessRulessquidazure.png
https://catalogartifact.azureedge.net/publicartifacts/cloud-infrastructure-services.squid-web-28b1a1d7-48bd-4791-a568-ff5594447333/image7_squidactivedirectoryauthenticationazure.png
English (United States)
Your Privacy Choices Opt-Out Icon Your Privacy Choices
Consumer Health Privacy Sitemap Contact Us Privacy & Cookies Terms of Use About our ads Manage cookies