Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    How can i give acces just to gmail.com and yahoo? with proxy filtre In LAN?

    Scheduled Pinned Locked Moved Firewalling
    3 Posts 2 Posters 1.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F Offline
      fifinon
      last edited by

      Hi,

      i want to block acces in my lan to all sites and let just mails domaine ( gmail, yahoo and hotmail) !

      it is possible?

      thanks in advance.

      1 Reply Last reply Reply Quote 0
      • Cry HavokC Offline
        Cry Havok
        last edited by

        Yes.

        Block all outbound traffic and install the Squid and SquidGuard packages. Then whitelist all the domains required for access to those services. For instance, for GMail you'll need both mail.google.com and gstatic.com. You'll have to ensure you configure the firewall to allow access to Squid and other key services on pfSense (eg DNS). You'll want to ensure that you also allow access to allow software and anti-virus updates.

        If you don't block all outbound traffic then it will be simple enough for people to bypass the proxy.

        1 Reply Last reply Reply Quote 0
        • F Offline
          fifinon
          last edited by

          @Cry:

          Yes.

          Block all outbound traffic and install the Squid and SquidGuard packages. Then whitelist all the domains required for access to those services. For instance, for GMail you'll need both mail.google.com and gstatic.com. You'll have to ensure you configure the firewall to allow access to Squid and other key services on pfSense (eg DNS). You'll want to ensure that you also allow access to allow software and anti-virus updates.

          If you don't block all outbound traffic then it will be simple enough for people to bypass the proxy.

          thank you very much  ;).

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.