Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Cannot block single host or alias? [SOLVED] Now: Block bittorrent

    Scheduled Pinned Locked Moved Firewalling
    14 Posts 5 Posters 5.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • marcellocM
      marcelloc
      last edited by

      Did you checked if dns defined on pfsense configuration is working?

      Treinamentos de Elite: http://sys-squad.com

      Help a community developer! ;D

      1 Reply Last reply Reply Quote 0
      • S
        SirMacke
        last edited by

        @marcelloc:

        Did you checked if dns defined on pfsense configuration is working?

        Where do I do that?
        ::)

        [[/b] Corsair HX620W ] [[/b] AMD Phenom II 965BE C3 @ 4Ghz ] [[/b] Asus Crosshair IV Formula ] [[/b] GTX560Ti @ 950Mhz ]
        [[/b] 8Gb Mushkin 1600Mhz DDR3 Blackline ] [[/b] Corsair Force GT 120Gb + 3.5TB Hdd ]
        ****

        1 Reply Last reply Reply Quote 0
        • marcellocM
          marcelloc
          last edited by

          At console you can do nslookup www.youtube.com

          Treinamentos de Elite: http://sys-squad.com

          Help a community developer! ;D

          1 Reply Last reply Reply Quote 0
          • T
            toomeek
            last edited by

            ehh man.. I block sites this way
            (put blocking rules first before any other rules)

            pfsense-blocked-www.png
            pfsense-blocked-www.png_thumb
            pfsense-blocked-www2.png
            pfsense-blocked-www2.png_thumb

            1 Reply Last reply Reply Quote 0
            • C
              costasppc
              last edited by

              Good!

              When something is blocked, is there a way of users get a page that informs them of company policy?

              Also, is there a way of blocking all torrents?

              Best

              Kostas

              1 Reply Last reply Reply Quote 0
              • N
                Nachtfalke
                last edited by

                @costasppc:

                Good!

                When something is blocked, is there a way of users get a page that informs them of company policy?

                Use squid +squidguard or squid+dansguardian

                @costasppc:

                Also, is there a way of blocking all torrents?

                Best

                Kostas

                Probably not. You can try to block .torrent files or pages with squidguard/dansguardian and then redirect to your company policy page.

                1 Reply Last reply Reply Quote 0
                • C
                  costasppc
                  last edited by

                  Thank you, and sorry to hijack this thread…

                  Is squid +squidguard or squid+dansguardian works reliably with multiWAN?

                  Best regards

                  Kostas

                  1 Reply Last reply Reply Quote 0
                  • marcellocM
                    marcelloc
                    last edited by

                    @costasppc:

                    Is squid +squidguard or squid+dansguardian works reliably with multiWAN?

                    Yes, configure tcp_outgoing_address 127.0.0.1 on squid and then configure a floating rule to balance outgoing http access.

                    Treinamentos de Elite: http://sys-squad.com

                    Help a community developer! ;D

                    1 Reply Last reply Reply Quote 0
                    • C
                      costasppc
                      last edited by

                      Thank you!

                      What is preferred squid+squidguard or squid+dansguardian?

                      Where should I configure the floating rule?

                      What about https? I have now an https failover rule, because of round robin problem with banking sites.

                      Best regards

                      Kostas

                      1 Reply Last reply Reply Quote 0
                      • marcellocM
                        marcelloc
                        last edited by

                        @costasppc:

                        What is preferred squid+squidguard or squid+dansguardian?

                        it's up to you. squidguard is free and dansguardian can do antivirus as well content filtering

                        @costasppc:

                        Where should I configure the floating rule?

                        go on firewall -> rules -> floating

                        @costasppc:

                        What about https? I have now an https failover rule, because of round robin problem with banking sites.

                        It's normal on sites that do not accept request from the same session on different ips

                        Treinamentos de Elite: http://sys-squad.com

                        Help a community developer! ;D

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.