Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Dansgaurdian groups dont seem to be working.

    Scheduled Pinned Locked Moved pfSense Packages
    13 Posts 4 Posters 3.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      mlafer
      last edited by

      Hi, I have also difficulties to use groups with my pfsense + dansguardian

      My System:

      2.0.1-RELEASE (i386)
      built on Mon Dec 12 17:53:52 EST 2011
      FreeBSD 8.1-RELEASE-p6
      Platform pfSense
      CPU Type Intel(R) Atom(TM) CPU 330 @ 1.60GHz

      My plan:

      to allow my two boys to surf in the internet with Dansguardian filtering, but limit the Youtube time to 30 min maximum. I thought I can realize it with a different Youtube user they need to login instead their normal user with disconnection after 30 min and renewing the ticket the next day.
      I have created the second group and the second users, but I see no option to choose different filter rules for the group. I am used only to work with the GUI. Maybe this is the reason I have difficulties to set the rules properly. I have no experiance to work and edit the config files.

      I hope one can help me or offer a different option, maybe within the normal user settings but limits for pages like youtube, facebook or the use of skype.

      1 Reply Last reply Reply Quote 0
      • marcellocM
        marcelloc
        last edited by

        where did you configured the time limit on dansguardian acls?

        with latest dansguardian gui version, you can select multiple acls to groups.

        Treinamentos de Elite: http://sys-squad.com

        Help a community developer! ;D

        1 Reply Last reply Reply Quote 0
        • M
          mlafer
          last edited by

          My problem is that I see no possibility to define different filters for different groups or I do not find the proper link in the GUI. Is there a Howto? I found only instructions for adapting the config files and I am not the config txt edit fan.

          1 Reply Last reply Reply Quote 0
          • marcellocM
            marcelloc
            last edited by

            @mlafer:

            My problem is that I see no possibility to define different filters for different groups

            Did you tried to create different filters on acls before trying to apply it on different groups?

            Treinamentos de Elite: http://sys-squad.com

            Help a community developer! ;D

            1 Reply Last reply Reply Quote 0
            • M
              mlafer
              last edited by

              Sorry, I was on a business trip for quite a long time, but now I am back and my boys are angry as Youtube is still not available.

              sorry, what do you mean with to apply ACL before apply the filter to groups. Where can I set the ACL'? I am a quite newbee and would need more detailed help. Sorry.

              1 Reply Last reply Reply Quote 0
              • marcellocM
                marcelloc
                last edited by

                create other acls in acl tabs before applying it to a group(of users or ips)

                acl_site_edit.png
                acl_site_edit.png_thumb
                acl_site_list.png
                acl_site_list.png_thumb
                acl_group_list.png
                acl_group_list.png_thumb

                Treinamentos de Elite: http://sys-squad.com

                Help a community developer! ;D

                1 Reply Last reply Reply Quote 0
                • M
                  mlafer
                  last edited by

                  Thanks, now it is clear how to create the acl's for the different group. Am I correct: I need now to create new users with a limited time, but how can my users switch from the normal user with allowed access to other users log out from the captive portal and reconnect as new user with access to the time limited pages?

                  1 Reply Last reply Reply Quote 0
                  • marcellocM
                    marcelloc
                    last edited by

                    @mlafer:

                    how can my users switch from the normal user with allowed access to other users log out from the captive portal and reconnect as new user with access to the time limited pages?

                    There is no user integration between captive portal and local proxy(squid, dansguardian,squidguard, etc). You need to authenticate these users on squid first, take a look on squid auth options available for pfsense package.

                    Treinamentos de Elite: http://sys-squad.com

                    Help a community developer! ;D

                    1 Reply Last reply Reply Quote 0
                    • M
                      mlafer
                      last edited by

                      Hi, but for authentication I need to deactivate transparent proxy :-(, therefore I need to configure every PC, needn't I?

                      What about the use of Voucher:
                      a) normal user login with password: no Youtube access, but unlimited time;
                      b) with Voucher: xx min access to youtube, but still Dansfilter active

                      1 Reply Last reply Reply Quote 0
                      • R
                        rjcrowder
                        last edited by

                        @mlafer:

                        Hi, but for authentication I need to deactivate transparent proxy :-(, therefore I need to configure every PC, needn't I?

                        What about the use of Voucher:
                        a) normal user login with password: no Youtube access, but unlimited time;
                        b) with Voucher: xx min access to youtube, but still Dansfilter active

                        I don't think you would need to configure each PC - other than making sure they are setup to automatically detect the proxy settings. You would need to create a wpad.dat auto configuration file to allow automatic proxy configuration. You can search the forums here to see how to do it…

                        The other option would be to leave transparent on and assign each device a specific IP address (in DHCP settings). Of course, this assumes that your boys have there own devices and don't have the ability to access another users device.

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.