Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Data Loss Prevention

    Scheduled Pinned Locked Moved Off-Topic & Non-Support Discussion
    5 Posts 2 Posters 5.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      NM04
      last edited by

      Does pfsense support Data Loss Prevention …??
      if yes, how do i make it operate on my pfsense. Is there a way to integrate this feature in pfsense? 
      my pfsense version is 1.2.3. help..!!

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        It depends on what you mean by Data Loss Prevention.

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • N
          NM04
          last edited by

          By data loss prevention i mean

          1. Fetching data in to a removable drive or optical media.
          2. Any information sent via email should be restricted.
          3. Data should be encrypted before transferring through internet.
          4. Web Filtering: Managing which websites users can access.

          Also does pfsense support anti-virus and anti-spam?

          Regards

          1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate
            last edited by

            So you're talking more about preventing information disclosure, not backups.

            "1" In that list isn't really supported. It is possible to have the config located on removable media, but no other data (yet, might change in 2.1 or later, really depends on what "data" you mean)

            2 is up to your own firewall rules and MTA. pfSense doesn't touch e-mail contents, it just passes packets.

            3 is again really up to you and how your network is designed. No router can just encrypt info before sending it out to the internet. The other end also has to accept an encrypted connection of a given protocol (or have a VPN setup between endpoints). If you want to deny http and only allow https, you can do that with firewall rules. Same goes for other unencrypted versions of protocols (block pop3, allow pop3s, block imap, pass imaps, etc, etc).

            1. Can be done with the squid and squidguard packages. Search the forums for howtos.

            Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 0
            • N
              NM04
              last edited by

              Thanks for replying to my queries.
              I experimented with squid and squidgaurd its working a little bit, but need to be configured well for proper functioning.

              Best Regards

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.