• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Best way block facebook on https (port 443)

Scheduled Pinned Locked Moved General pfSense Questions
7 Posts 5 Posters 36.8k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • A
    asankaj2006
    last edited by Jul 23, 2012, 6:11 PM

    I have implemented squid server and squid filter successfully on pfsense 2.0.1.
    One of the intentions behind implementation of  squid proxy is to block facebook.
    I manage to block facebook that is running with (http) port 80, but  its possible access facebook using (https) port 443 .
    Can some please advise me best possible way to block facebook on hhtps.

    Cheers
    Asanka

    1 Reply Last reply Reply Quote 0
    • P
      podilarius
      last edited by Jul 23, 2012, 6:43 PM

      haven't tried it but in the ACL black list try

      .*facebook.com:80
      

      It might work.

      1 Reply Last reply Reply Quote 0
      • M
        marcelloc
        last edited by Jul 23, 2012, 7:13 PM

        @asankaj2006:

        Can some please advise me best possible way to block facebook on hhtps.

        Are you using squid in transparente mode?

        Treinamentos de Elite: http://sys-squad.com

        Help a community developer! ;D

        1 Reply Last reply Reply Quote 0
        • D
          dhatz
          last edited by Jul 23, 2012, 8:08 PM

          You can't do https filtering with Squid in transparent mode, you need to configure your clients to use it.

          1 Reply Last reply Reply Quote 0
          • A
            asankaj2006
            last edited by Jul 24, 2012, 2:59 AM

            Yes I am  using squid in transparente mode.

            1 Reply Last reply Reply Quote 0
            • P
              podilarius
              last edited by Jul 24, 2012, 3:39 PM

              @dhatz:

              You can't do https filtering with Squid in transparent mode, you need to configure your clients to use it.

              That is true … so I just added:

              .*facebook.com
              

              to the black list. I was blocked on port 80, but I was still allowed to access facebook on https.

              1 Reply Last reply Reply Quote 0
              • J
                josekym
                last edited by Jul 25, 2012, 9:29 AM

                You have to block using firewall rules.  We do block 443/HTTPS traffic to Facebook CIDR networks during regular office hours.

                For us, we block the following destination CIDR networks:

                69.63.176.0/20
                69.171.224.0/19
                63.135.80.0/20
                66.220.144.0/20
                65.201.208.24/29
                65.204.104.128/28
                74.119.76.0/22
                204.15.20.0/22
                173.252.64.0/18
                96.16.0.0/15

                1 Reply Last reply Reply Quote 0
                7 out of 7
                • First post
                  7/7
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                  This community forum collects and processes your personal information.
                  consent.not_received