Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    For porn site filter

    Scheduled Pinned Locked Moved General pfSense Questions
    7 Posts 7 Posters 3.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • H
      Htein Lin Aung
      last edited by

      I have  pfsense 2.1.4-RELEASE (amd64). I want to block porn site with aliases.Please suggest me.
      Than you all

      1 Reply Last reply Reply Quote 0
      • M
        muswellhillbilly
        last edited by

        I would suggest you use Squid and Squidguard/Dansguardian. PFS on it's own can't block addresses using aliases in firewall rules.

        1 Reply Last reply Reply Quote 0
        • W
          Wolf666
          last edited by

          You can try in addition also pfBlockerNG using EasyList feed (DNSB) and I-BlockList (IPs) to block adult content.

          Modem Draytek Vigor 130
          pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
          Switch Cisco SG350-10
          AP Netgear R7000 (Stock FW)
          HTPC Intel NUC5i3RYH
          NAS Synology DS1515+
          NAS Synology DS213+

          1 Reply Last reply Reply Quote 0
          • V
            vpmuhsin
            last edited by

            many new Blacklist files are available in internet with different category, you can download it and add to Squidguard

            1 Reply Last reply Reply Quote 0
            • D
              dexener
              last edited by

              @Wolf666:

              You can try in addition also pfBlockerNG using EasyList feed (DNSB) and I-BlockList (IPs) to block adult content.

              I tried this. It has been working for a few days…today...it is not working anymore. I think that pfBlockerNG is not really mature to be top blocking product...it just stopped to working...

              1 Reply Last reply Reply Quote 0
              • P
                pfBasic Banned
                last edited by

                Pfbng is mature, is running on many many setups without issue.

                I would strongly recommend pfbng & dnsbl + forcing all DNS through Unbound Resolver over using squid.
                To use squid with HTTP/S you have to MiTM every device on your network. This doesn't work well or at all with some devices and is generally a questionable practice on some networks.

                You can also use pfbng + suricata to block VPN connections that would bypass your filters. You can use Unbound to force Google safe search.

                You can really do very effective filtering on pfSense with its' packages.

                Just keep in mind that without whitelisting you'll never block it all.

                1 Reply Last reply Reply Quote 0
                • ?
                  Guest
                  last edited by

                  would suggest you use Squid and Squidguard/Dansguardian. PFS on it's own can't block addresses using aliases in firewall rules.

                  And on top of this you may combine this with an OpenDNS account too!

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.