Port 88 is not a standard port, what do you have running on it? If you disable squid, can you access it? Have you change the outbound NAT settings? Do you see a block in the firewall log? If you monitor tcpdump at the server can you see the packets arriving? If you can, look at the tcpdump on the WAN interface of pfSense to see if you see the returns.