Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Squid proxy block all websites except white listed domains

    Scheduled Pinned Locked Moved Cache/Proxy
    14 Posts 4 Posters 13.7k Views 4 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D Offline
      dhiyogroup
      last edited by

      Wow!! Awesome genius Idea... its working like a charm.

      Thank you so much!! KOM :-)

      1 Reply Last reply Reply Quote 0
      • KOMK Offline
        KOM
        last edited by

        Glad it worked for you.

        1 Reply Last reply Reply Quote 1
        • M Offline
          marksantos @KOM
          last edited by

          @kom can you make a step by step how to block all website except white listed domains

          KOMK 1 Reply Last reply Reply Quote 0
          • KOMK Offline
            KOM @marksantos
            last edited by

            @lesther123 I don't really have time for that, and there are lots of tutorials online. The short version is:

            Install Squid & configure
            Install Squidguard & configure
            Configure WPAD
            Force users to use proxy by blocking tcp80,443
            In Squidguard, set default ACL to Deny
            In Squidguard, create Whitelist ACL group and then add your allowed domains to it.

            That's basically it.

            M 2 Replies Last reply Reply Quote 0
            • M Offline
              marksantos @KOM
              last edited by

              @kom it is possible to block all https??

              1 Reply Last reply Reply Quote 0
              • RicoR Offline
                Rico LAYER 8 Rebel Alliance
                last edited by

                Port 443/TCP is HTTPS.

                -Rico

                1 Reply Last reply Reply Quote 0
                • M Offline
                  marksantos @KOM
                  last edited by

                  @kom Force users to use proxy by blocking tcp80,443, blocking in firewall rule??

                  1 Reply Last reply Reply Quote 0
                  • KOMK Offline
                    KOM
                    last edited by

                    Yes. How do you expect to enforce your web-browing rules if anyone can just go around the proxy by not using it?? If you block all tcp80,443 traffic on LAN, then NOBODY will be able to use the web except via proxy.

                    1 Reply Last reply Reply Quote 0
                    • M Offline
                      marksantos @KOM
                      last edited by

                      @KOM Hi sir kom, it is possible to allow gmail only?? in pfblocker

                      1 Reply Last reply Reply Quote 0
                      • KOMK Offline
                        KOM
                        last edited by

                        I don't know. I don't use pfB.

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.