Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    How to filter like "facebook" this word in pfsense??

    Scheduled Pinned Locked Moved pfSense Packages
    8 Posts 6 Posters 6.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K
      kouevenwang
      last edited by

      hi, i am a pfsense new, how can i filter the "facebook" this word ? in which package?? thanks

      1 Reply Last reply Reply Quote 0
      • S
        Supermule Banned
        last edited by

        No can do. Pfsense does not have L7 filtering in the release versions….

        1 Reply Last reply Reply Quote 0
        • K
          kouevenwang
          last edited by

          can i block the facebook domain ?? or block facebook the ip address??

          1 Reply Last reply Reply Quote 0
          • AhnHELA
            AhnHEL
            last edited by

            If you're comfortable using OpenDNS servers for DNS then you can setup an account with them to block out Social Networking sites but this will block more than Facebook, it will block out MySpace amongst others.

            AhnHEL (Angel)

            1 Reply Last reply Reply Quote 0
            • M
              mhab12
              last edited by

              You can put facebook.com in the Squid blacklist via the GUI…the IP(s) would probably work there too.

              1 Reply Last reply Reply Quote 0
              • O
                Oroboros
                last edited by

                I've had a customer ask about blocking both myspace and facebook and am in a position where I could probably do it with snort (at least non-https traffic) or squid. We had a long conversation about it and left it open for now. People will tend to look for ways around forbidden things, and that creates its own set of security challenges. The end users may resort to proxy sites that aren't safe and in the end, that could create even bigger threats to network security.

                The right answer is adequate supervision and/or hiring only mature employees capable of self-restraint.

                1 Reply Last reply Reply Quote 0
                • K
                  kouevenwang
                  last edited by

                  Thanks your suggestion…......thanks again

                  1 Reply Last reply Reply Quote 0
                  • J
                    jigpe
                    last edited by

                    @mhab12

                    They can access facebook if they use HTTPS.. Blocking facebook is useless if you have 443 opened. You cannot remove 443 too because people need to access gmail and other email that uses 443.

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.