Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Clarification on PFSENSE Packages...

    Scheduled Pinned Locked Moved pfSense Packages
    2 Posts 2 Posters 460 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • O
      ocaisceti94
      last edited by

      Ok, don't shoot me, I'm a newb. I have done research and testing on various packages and need some clarification. Basically, I'm trying to avoid overbuilding my pfSense box.

      Long story short, we have about 200 IPs. Anything we host is all internal on our LAN (no web servers, mail servers, FTP, etc...). We want to block anything from coming in and be able to filter/monitor traffic going out. We don't want people visiting sites they shouldn't be and using services they shouldn't in our environment (ie torrent).

      So, from my understanding, by default pfSense blocks everything coming in so we should be good there. For outbound, I was thinking of setting up Suricata on the LAN side only to block services and Squidguard with block lists for web filtering. Am I on the right track or am I missing something?

      Also, for blocking web traffic based on block lists, should I be considering Squidguard or pfBlocker?

      Sorry if these are very basic questions but any help would be appreciated!

      1 Reply Last reply Reply Quote 0
      • kiokomanK
        kiokoman LAYER 8
        last edited by

        i would go with pfblockerng-devel (pfblockerng is old and probably discontinued) and suricata
        take in mind that blocking torrent is very difficult, you can't block it 100% but you can make life harder for the clients

        ̿' ̿'\̵͇̿̿\з=(◕_◕)=ε/̵͇̿̿/'̿'̿ ̿
        Please do not use chat/PM to ask for help
        we must focus on silencing this @guest character. we must make up lies and alter the copyrights !
        Don't forget to Upvote with the 👍 button for any post you find to be helpful.

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.