Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    For porn site filter

    Scheduled Pinned Locked Moved General pfSense Questions
    7 Posts 7 Posters 3.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • H Offline
      Htein Lin Aung
      last edited by

      I have  pfsense 2.1.4-RELEASE (amd64). I want to block porn site with aliases.Please suggest me.
      Than you all

      1 Reply Last reply Reply Quote 0
      • M Offline
        muswellhillbilly
        last edited by

        I would suggest you use Squid and Squidguard/Dansguardian. PFS on it's own can't block addresses using aliases in firewall rules.

        1 Reply Last reply Reply Quote 0
        • W Offline
          Wolf666
          last edited by

          You can try in addition also pfBlockerNG using EasyList feed (DNSB) and I-BlockList (IPs) to block adult content.

          ISP FTTH PPPoE 1000/300 Mbps
          pfSense 25.11.1 CPU i5-11320H @ 3.20GHz - 16GB RAM - NVMe 256GB -
          Switch Zyxel XGS1210-12
          AP Netgear RAX200 (Stock FW)
          NAS Synology DS1621+

          1 Reply Last reply Reply Quote 0
          • V Offline
            vpmuhsin
            last edited by

            many new Blacklist files are available in internet with different category, you can download it and add to Squidguard

            1 Reply Last reply Reply Quote 0
            • D Offline
              dexener
              last edited by

              @Wolf666:

              You can try in addition also pfBlockerNG using EasyList feed (DNSB) and I-BlockList (IPs) to block adult content.

              I tried this. It has been working for a few days…today...it is not working anymore. I think that pfBlockerNG is not really mature to be top blocking product...it just stopped to working...

              1 Reply Last reply Reply Quote 0
              • P Offline
                pfBasic Banned
                last edited by

                Pfbng is mature, is running on many many setups without issue.

                I would strongly recommend pfbng & dnsbl + forcing all DNS through Unbound Resolver over using squid.
                To use squid with HTTP/S you have to MiTM every device on your network. This doesn't work well or at all with some devices and is generally a questionable practice on some networks.

                You can also use pfbng + suricata to block VPN connections that would bypass your filters. You can use Unbound to force Google safe search.

                You can really do very effective filtering on pfSense with its' packages.

                Just keep in mind that without whitelisting you'll never block it all.

                1 Reply Last reply Reply Quote 0
                • ? This user is from outside of this forum
                  Guest
                  last edited by

                  would suggest you use Squid and Squidguard/Dansguardian. PFS on it's own can't block addresses using aliases in firewall rules.

                  And on top of this you may combine this with an OpenDNS account too!

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.