Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Dansgaurdian groups dont seem to be working.

    Scheduled Pinned Locked Moved pfSense Packages
    13 Posts 4 Posters 3.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      safetynetcafe
      last edited by

      Hi, I have squid2 installed with dansguardian.
      I have set up two groups and have put one machine's ip address into the second group.
      The first group filters urls and content and the second group only filters urls.
      However the machine in question still defaults to the first group.

      Where am I going wrong?

      Thanks

      1 Reply Last reply Reply Quote 0
      • marcellocM
        marcelloc
        last edited by

        @safetynetcafe:

        Where am I going wrong?

        How did you configured filters? based on ips or users?

        Treinamentos de Elite: http://sys-squad.com

        Help a community developer! ;D

        1 Reply Last reply Reply Quote 0
        • R
          rjcrowder
          last edited by

          @safetynetcafe:

          Hi, I have squid2 installed with dansguardian.
          I have set up two groups and have put one machine's ip address into the second group.
          The first group filters urls and content and the second group only filters urls.
          However the machine in question still defaults to the first group.

          Where am I going wrong?

          Thanks

          Works for me using IP addresses…

          1 Reply Last reply Reply Quote 0
          • M
            mlafer
            last edited by

            Hi, I have also difficulties to use groups with my pfsense + dansguardian

            My System:

            2.0.1-RELEASE (i386)
            built on Mon Dec 12 17:53:52 EST 2011
            FreeBSD 8.1-RELEASE-p6
            Platform pfSense
            CPU Type Intel(R) Atom(TM) CPU 330 @ 1.60GHz

            My plan:

            to allow my two boys to surf in the internet with Dansguardian filtering, but limit the Youtube time to 30 min maximum. I thought I can realize it with a different Youtube user they need to login instead their normal user with disconnection after 30 min and renewing the ticket the next day.
            I have created the second group and the second users, but I see no option to choose different filter rules for the group. I am used only to work with the GUI. Maybe this is the reason I have difficulties to set the rules properly. I have no experiance to work and edit the config files.

            I hope one can help me or offer a different option, maybe within the normal user settings but limits for pages like youtube, facebook or the use of skype.

            1 Reply Last reply Reply Quote 0
            • marcellocM
              marcelloc
              last edited by

              where did you configured the time limit on dansguardian acls?

              with latest dansguardian gui version, you can select multiple acls to groups.

              Treinamentos de Elite: http://sys-squad.com

              Help a community developer! ;D

              1 Reply Last reply Reply Quote 0
              • M
                mlafer
                last edited by

                My problem is that I see no possibility to define different filters for different groups or I do not find the proper link in the GUI. Is there a Howto? I found only instructions for adapting the config files and I am not the config txt edit fan.

                1 Reply Last reply Reply Quote 0
                • marcellocM
                  marcelloc
                  last edited by

                  @mlafer:

                  My problem is that I see no possibility to define different filters for different groups

                  Did you tried to create different filters on acls before trying to apply it on different groups?

                  Treinamentos de Elite: http://sys-squad.com

                  Help a community developer! ;D

                  1 Reply Last reply Reply Quote 0
                  • M
                    mlafer
                    last edited by

                    Sorry, I was on a business trip for quite a long time, but now I am back and my boys are angry as Youtube is still not available.

                    sorry, what do you mean with to apply ACL before apply the filter to groups. Where can I set the ACL'? I am a quite newbee and would need more detailed help. Sorry.

                    1 Reply Last reply Reply Quote 0
                    • marcellocM
                      marcelloc
                      last edited by

                      create other acls in acl tabs before applying it to a group(of users or ips)

                      acl_site_edit.png
                      acl_site_edit.png_thumb
                      acl_site_list.png
                      acl_site_list.png_thumb
                      acl_group_list.png
                      acl_group_list.png_thumb

                      Treinamentos de Elite: http://sys-squad.com

                      Help a community developer! ;D

                      1 Reply Last reply Reply Quote 0
                      • M
                        mlafer
                        last edited by

                        Thanks, now it is clear how to create the acl's for the different group. Am I correct: I need now to create new users with a limited time, but how can my users switch from the normal user with allowed access to other users log out from the captive portal and reconnect as new user with access to the time limited pages?

                        1 Reply Last reply Reply Quote 0
                        • marcellocM
                          marcelloc
                          last edited by

                          @mlafer:

                          how can my users switch from the normal user with allowed access to other users log out from the captive portal and reconnect as new user with access to the time limited pages?

                          There is no user integration between captive portal and local proxy(squid, dansguardian,squidguard, etc). You need to authenticate these users on squid first, take a look on squid auth options available for pfsense package.

                          Treinamentos de Elite: http://sys-squad.com

                          Help a community developer! ;D

                          1 Reply Last reply Reply Quote 0
                          • M
                            mlafer
                            last edited by

                            Hi, but for authentication I need to deactivate transparent proxy :-(, therefore I need to configure every PC, needn't I?

                            What about the use of Voucher:
                            a) normal user login with password: no Youtube access, but unlimited time;
                            b) with Voucher: xx min access to youtube, but still Dansfilter active

                            1 Reply Last reply Reply Quote 0
                            • R
                              rjcrowder
                              last edited by

                              @mlafer:

                              Hi, but for authentication I need to deactivate transparent proxy :-(, therefore I need to configure every PC, needn't I?

                              What about the use of Voucher:
                              a) normal user login with password: no Youtube access, but unlimited time;
                              b) with Voucher: xx min access to youtube, but still Dansfilter active

                              I don't think you would need to configure each PC - other than making sure they are setup to automatically detect the proxy settings. You would need to create a wpad.dat auto configuration file to allow automatic proxy configuration. You can search the forums here to see how to do it…

                              The other option would be to leave transparent on and assign each device a specific IP address (in DHCP settings). Of course, this assumes that your boys have there own devices and don't have the ability to access another users device.

                              1 Reply Last reply Reply Quote 0
                              • First post
                                Last post
                              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.