• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Allow only Gmail.com

Scheduled Pinned Locked Moved Firewalling
8 Posts 4 Posters 3.9k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • I
    ixee
    last edited by Sep 9, 2012, 1:29 PM

    Hi all,
    I need to block all the HTTP/HPPTS websites (except for Gmail.com). What is my configuration ?

    Many thanks!

    1 Reply Last reply Reply Quote 0
    • C
      Cry Havok
      last edited by Sep 9, 2012, 8:33 PM

      Please search the forum - this has been discussed many times already.

      As a hint, you'll need to block all outbound ports by default (particularly 80 and 443) and use a proxy server.

      1 Reply Last reply Reply Quote 0
      • I
        ixee
        last edited by Sep 10, 2012, 4:05 AM Sep 10, 2012, 1:43 AM

        Any idea without use proxy server and filter ? I used Rules for a block http/https. And Aliases for a accept Gmail. But not worked. Also I need a update from kaspersky.com. Sorry for my bad english.

        1 Reply Last reply Reply Quote 0
        • M
          Metu69salemi
          last edited by Sep 10, 2012, 5:12 AM

          Do you have allow rule before deny rule?

          1 Reply Last reply Reply Quote 0
          • I
            ixee
            last edited by Sep 10, 2012, 5:31 AM

            Created aliases and rules. See the attachments.

            aliases.jpg
            aliases.jpg_thumb
            rules.jpg
            rules.jpg_thumb

            1 Reply Last reply Reply Quote 0
            • M
              Metu69salemi
              last edited by Sep 10, 2012, 5:56 AM

              modify your rule.

              Remove source port definition, that should do it

              1 Reply Last reply Reply Quote 0
              • I
                ixee
                last edited by Sep 10, 2012, 6:09 AM Sep 10, 2012, 6:00 AM

                I modified, but also can't go out to my aliases sites.

                rules.jpg
                rules.jpg_thumb

                1 Reply Last reply Reply Quote 0
                • D
                  dhatz
                  last edited by Sep 10, 2012, 2:08 PM

                  The method I'd use, which is also the one recommended by Google for users of Gmail and GoogleApps, would be to white-list Google's IPv4 blocks (and maintaining those with a script). It is described in a pfsense feature request I filed a year ago: http://redmine.pfsense.org/issues/1901

                  For details you can read Google's "Networking Best Practices for Large Deployments"

                  1 Reply Last reply Reply Quote 0
                  8 out of 8
                  • First post
                    8/8
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                    This community forum collects and processes your personal information.
                    consent.not_received