Dansgaurdian groups dont seem to be working.



  • Hi, I have squid2 installed with dansguardian.
    I have set up two groups and have put one machine's ip address into the second group.
    The first group filters urls and content and the second group only filters urls.
    However the machine in question still defaults to the first group.

    Where am I going wrong?

    Thanks



  • @safetynetcafe:

    Where am I going wrong?

    How did you configured filters? based on ips or users?



  • @safetynetcafe:

    Hi, I have squid2 installed with dansguardian.
    I have set up two groups and have put one machine's ip address into the second group.
    The first group filters urls and content and the second group only filters urls.
    However the machine in question still defaults to the first group.

    Where am I going wrong?

    Thanks

    Works for me using IP addresses…



  • Hi, I have also difficulties to use groups with my pfsense + dansguardian

    My System:

    2.0.1-RELEASE (i386)
    built on Mon Dec 12 17:53:52 EST 2011
    FreeBSD 8.1-RELEASE-p6
    Platform pfSense
    CPU Type Intel(R) Atom(TM) CPU 330 @ 1.60GHz

    My plan:

    to allow my two boys to surf in the internet with Dansguardian filtering, but limit the Youtube time to 30 min maximum. I thought I can realize it with a different Youtube user they need to login instead their normal user with disconnection after 30 min and renewing the ticket the next day.
    I have created the second group and the second users, but I see no option to choose different filter rules for the group. I am used only to work with the GUI. Maybe this is the reason I have difficulties to set the rules properly. I have no experiance to work and edit the config files.

    I hope one can help me or offer a different option, maybe within the normal user settings but limits for pages like youtube, facebook or the use of skype.



  • where did you configured the time limit on dansguardian acls?

    with latest dansguardian gui version, you can select multiple acls to groups.



  • My problem is that I see no possibility to define different filters for different groups or I do not find the proper link in the GUI. Is there a Howto? I found only instructions for adapting the config files and I am not the config txt edit fan.



  • @mlafer:

    My problem is that I see no possibility to define different filters for different groups

    Did you tried to create different filters on acls before trying to apply it on different groups?



  • Sorry, I was on a business trip for quite a long time, but now I am back and my boys are angry as Youtube is still not available.

    sorry, what do you mean with to apply ACL before apply the filter to groups. Where can I set the ACL'? I am a quite newbee and would need more detailed help. Sorry.



  • create other acls in acl tabs before applying it to a group(of users or ips)








  • Thanks, now it is clear how to create the acl's for the different group. Am I correct: I need now to create new users with a limited time, but how can my users switch from the normal user with allowed access to other users log out from the captive portal and reconnect as new user with access to the time limited pages?



  • @mlafer:

    how can my users switch from the normal user with allowed access to other users log out from the captive portal and reconnect as new user with access to the time limited pages?

    There is no user integration between captive portal and local proxy(squid, dansguardian,squidguard, etc). You need to authenticate these users on squid first, take a look on squid auth options available for pfsense package.



  • Hi, but for authentication I need to deactivate transparent proxy :-(, therefore I need to configure every PC, needn't I?

    What about the use of Voucher:
    a) normal user login with password: no Youtube access, but unlimited time;
    b) with Voucher: xx min access to youtube, but still Dansfilter active



  • @mlafer:

    Hi, but for authentication I need to deactivate transparent proxy :-(, therefore I need to configure every PC, needn't I?

    What about the use of Voucher:
    a) normal user login with password: no Youtube access, but unlimited time;
    b) with Voucher: xx min access to youtube, but still Dansfilter active

    I don't think you would need to configure each PC - other than making sure they are setup to automatically detect the proxy settings. You would need to create a wpad.dat auto configuration file to allow automatic proxy configuration. You can search the forums here to see how to do it…

    The other option would be to leave transparent on and assign each device a specific IP address (in DHCP settings). Of course, this assumes that your boys have there own devices and don't have the ability to access another users device.


Locked