<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Blocking orkut]]></title><description><![CDATA[<p dir="auto">Hi all</p>
<p dir="auto">I'm trying to block the orkut site (www.orkut.com). How can i block then with pfsense?</p>
<p dir="auto">I search for this in google and i find this: <strong>iptables -A FORWARD -d www.orkut.com -p tcp –dport 443 -j DROP</strong></p>
<p dir="auto">I try to put this rule in the rules section but not works. Its says an error message:</p>
<p dir="auto"><em>The following input errors were detected:<br />
A valid destination IP address or alias must be specified.</em></p>
<p dir="auto">Then, I'm trying to create an alias to host orkut.com and not works again. I choose the type host and in the section IP I put <strong>orkut.com</strong>. The error is:</p>
<p dir="auto"><em>The following input errors were detected:<br />
A valid address must be specified.</em></p>
<p dir="auto">What wrong with these rules? Anybody can helps me?</p>
<p dir="auto">Sorry my poor english</p>
<p dir="auto">thanks</p>
]]></description><link>https://forum.netgate.com/topic/5738/blocking-orkut</link><generator>RSS for Node</generator><lastBuildDate>Mon, 20 Jul 2026 12:57:34 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/5738.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 11 Sep 2007 14:25:02 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Blocking orkut on Mon, 24 Sep 2007 19:29:42 GMT]]></title><description><![CDATA[<p dir="auto">It works with OpenDNS. thanks cdsu.</p>
]]></description><link>https://forum.netgate.com/post/159970</link><guid isPermaLink="true">https://forum.netgate.com/post/159970</guid><dc:creator><![CDATA[galindro]]></dc:creator><pubDate>Mon, 24 Sep 2007 19:29:42 GMT</pubDate></item><item><title><![CDATA[Reply to Blocking orkut on Tue, 18 Sep 2007 03:41:38 GMT]]></title><description><![CDATA[<p dir="auto">I block my users with opendns.com</p>
]]></description><link>https://forum.netgate.com/post/159701</link><guid isPermaLink="true">https://forum.netgate.com/post/159701</guid><dc:creator><![CDATA[cdsu]]></dc:creator><pubDate>Tue, 18 Sep 2007 03:41:38 GMT</pubDate></item><item><title><![CDATA[Reply to Blocking orkut on Sat, 15 Sep 2007 02:19:53 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/galindro">@<bdi>galindro</bdi></a>:</p>
<blockquote>
<p dir="auto">A correction:</p>
<p dir="auto">Backing on the orkut:</p>
<p dir="auto">I do this in DNSforwarder-config-page:</p>
<p dir="auto"><em>Below you can override an entire domain by specifying an authoritative dns server to be queried for that domain.</em></p>
<p dir="auto"><em>Domain                  IP           Description <br />
www.orkut.com    0.0.0.0          Orkut       <br />
orkut                         0.0.0.0      Orkut <br />
orkut.com               0.0.0.0            Orkut</em></p>
<p dir="auto">I click on save, but does not works…. :(</p>
<p dir="auto">Do I somenting wrong?</p>
</blockquote>
<p dir="auto">Your users need to have ONLY pfsense as their DNS server. That will work. If they have other sources for DNS then it will not work</p>
]]></description><link>https://forum.netgate.com/post/159644</link><guid isPermaLink="true">https://forum.netgate.com/post/159644</guid><dc:creator><![CDATA[sai]]></dc:creator><pubDate>Sat, 15 Sep 2007 02:19:53 GMT</pubDate></item><item><title><![CDATA[Reply to Blocking orkut on Wed, 12 Sep 2007 11:55:41 GMT]]></title><description><![CDATA[<p dir="auto">Which script initiates pf in the pfsense and where it is located?</p>
<p dir="auto">In the /etc/defaults/rc.conf, the tag pf_enable is set to "NO".<br />
The /etc/pf.conf is entirely commented.</p>
<p dir="auto">It's impossible to insert that iptables rule, of course translated to pf, through pfsense's web-interface?</p>
<p dir="auto">thanks for the help.</p>
]]></description><link>https://forum.netgate.com/post/159537</link><guid isPermaLink="true">https://forum.netgate.com/post/159537</guid><dc:creator><![CDATA[galindro]]></dc:creator><pubDate>Wed, 12 Sep 2007 11:55:41 GMT</pubDate></item><item><title><![CDATA[Reply to Blocking orkut on Wed, 12 Sep 2007 06:01:34 GMT]]></title><description><![CDATA[<p dir="auto">http://www.freebsd.org/cgi/man.cgi?query=pfctl&amp;sektion=8&amp;apropos=0&amp;manpath=FreeBSD+6.2-RELEASE</p>
]]></description><link>https://forum.netgate.com/post/159527</link><guid isPermaLink="true">https://forum.netgate.com/post/159527</guid><dc:creator><![CDATA[GruensFroeschli]]></dc:creator><pubDate>Wed, 12 Sep 2007 06:01:34 GMT</pubDate></item><item><title><![CDATA[Reply to Blocking orkut on Wed, 12 Sep 2007 02:58:48 GMT]]></title><description><![CDATA[<p dir="auto">Ok thanks for the help.</p>
<p dir="auto">One more thing:</p>
<p dir="auto">it's possible to insert a pf rule seemed with this iptables rule on pfsense's web-interface?</p>
<p dir="auto"><strong>iptables -A FORWARD -d www.orkut.com -p tcp –dport 443 -j DROP</strong></p>
<p dir="auto">In the Internet, many sites say that this rule is enough to block orkut, because it blocks the domain orkut, not the IP's. But this rule only works in iptables. I do not know I eat to translate it for pfsense.</p>
<p dir="auto">This is my last shot before go to the squid-camp</p>
]]></description><link>https://forum.netgate.com/post/159524</link><guid isPermaLink="true">https://forum.netgate.com/post/159524</guid><dc:creator><![CDATA[galindro]]></dc:creator><pubDate>Wed, 12 Sep 2007 02:58:48 GMT</pubDate></item><item><title><![CDATA[Reply to Blocking orkut on Tue, 11 Sep 2007 20:46:22 GMT]]></title><description><![CDATA[<p dir="auto">nothing wrong. Just tried it too.<br />
i never really worked with the override domain thing and it was just an idea. But apparently one that does not work :)</p>
<p dir="auto">maybe someone from the squid-camp in this forum can help you.</p>
]]></description><link>https://forum.netgate.com/post/159513</link><guid isPermaLink="true">https://forum.netgate.com/post/159513</guid><dc:creator><![CDATA[GruensFroeschli]]></dc:creator><pubDate>Tue, 11 Sep 2007 20:46:22 GMT</pubDate></item><item><title><![CDATA[Reply to Blocking orkut on Tue, 11 Sep 2007 19:57:00 GMT]]></title><description><![CDATA[<p dir="auto">A correction:</p>
<p dir="auto"><strong>iptables -A FORWARD -d www.orkut.com -p tcp –dport 443 -j DROP</strong> does not works on freebsd. This is a rule of linux iptables. I'm sorry…</p>
<p dir="auto">Backing on the orkut:</p>
<p dir="auto">I do this in DNSforwarder-config-page:</p>
<p dir="auto"><em>Below you can override an entire domain by specifying an authoritative dns server to be queried for that domain.</em></p>
<p dir="auto"><em>Domain                  IP          Description <br />
www.orkut.com  0.0.0.0        Orkut   <br />
orkut                        0.0.0.0      Orkut <br />
orkut.com              0.0.0.0            Orkut</em></p>
<p dir="auto">I click on save, but does not works…. :(    The f**** orkut is keeping had access</p>
<p dir="auto">Do I somenting wrong?</p>
]]></description><link>https://forum.netgate.com/post/159509</link><guid isPermaLink="true">https://forum.netgate.com/post/159509</guid><dc:creator><![CDATA[galindro]]></dc:creator><pubDate>Tue, 11 Sep 2007 19:57:00 GMT</pubDate></item><item><title><![CDATA[Reply to Blocking orkut on Tue, 11 Sep 2007 19:45:08 GMT]]></title><description><![CDATA[<p dir="auto">hmm… if orkut.com only relais to a google server then i dont think you can use normal firewallrules.</p>
<p dir="auto">what you could try:<br />
If your clients use pfSense als DNS Server you could setup on the DNSforwarder-config-page a new DNS-authorative server that does not resolve the domain.<br />
You can override whol domains there.<br />
Just set the DNS server to something invalid and your clients behind pfSense should no longer be able to resolve orkut.com<br />
But if your clients access the google-page page directly.......</p>
<p dir="auto">I dont really know squid but i think there should be some way to filter this with it.<br />
Maybe someone else could help you with this.</p>
]]></description><link>https://forum.netgate.com/post/159508</link><guid isPermaLink="true">https://forum.netgate.com/post/159508</guid><dc:creator><![CDATA[GruensFroeschli]]></dc:creator><pubDate>Tue, 11 Sep 2007 19:45:08 GMT</pubDate></item><item><title><![CDATA[Reply to Blocking orkut on Tue, 11 Sep 2007 19:32:59 GMT]]></title><description><![CDATA[<p dir="auto">Yes, I know that. The orkut's ips is:</p>
<p dir="auto">209.85.193.85<br />
209.85.193.86<br />
209.85.193.87<br />
209.85.193.94</p>
<p dir="auto">But, if I create a rule denying these IPs, the access to www.orkut.com is still keeping allowed.</p>
<p dir="auto">I noticed that when the site www.orkut.com is opened, the browser redirect the www.orkut.com to https://www.google.com/accounts/ServiceLogin?service=orkut&amp;continue=http%3A%2F%2Fwww.orkut.com%2FRedirLogin.aspx%3Fmsg%3D0%26page%3Dhttp%253A%252F%252Fwww.orkut.com%252F&amp;hl=pt-BR&amp;passive=true</p>
<p dir="auto">My problem is: How can I block the site www.orkut.com?</p>
<p dir="auto">P.S.: the squid does not works because the orkut uses https.</p>
]]></description><link>https://forum.netgate.com/post/159507</link><guid isPermaLink="true">https://forum.netgate.com/post/159507</guid><dc:creator><![CDATA[galindro]]></dc:creator><pubDate>Tue, 11 Sep 2007 19:32:59 GMT</pubDate></item><item><title><![CDATA[Reply to Blocking orkut on Tue, 11 Sep 2007 18:49:51 GMT]]></title><description><![CDATA[<p dir="auto">Just create a firewall rule with the appropriate IP?</p>
<p dir="auto">(Firewall–&gt;Rules.......)</p>
]]></description><link>https://forum.netgate.com/post/159500</link><guid isPermaLink="true">https://forum.netgate.com/post/159500</guid><dc:creator><![CDATA[GruensFroeschli]]></dc:creator><pubDate>Tue, 11 Sep 2007 18:49:51 GMT</pubDate></item><item><title><![CDATA[Reply to Blocking orkut on Tue, 11 Sep 2007 16:39:05 GMT]]></title><description><![CDATA[<p dir="auto">Ok I undestand, but how can I insert this rule: <strong>iptables -A FORWARD -d www.orkut.com -p tcp –dport 443 -j DROP</strong> on pfsense's web-interface?</p>
]]></description><link>https://forum.netgate.com/post/159494</link><guid isPermaLink="true">https://forum.netgate.com/post/159494</guid><dc:creator><![CDATA[galindro]]></dc:creator><pubDate>Tue, 11 Sep 2007 16:39:05 GMT</pubDate></item><item><title><![CDATA[Reply to Blocking orkut on Tue, 11 Sep 2007 15:58:23 GMT]]></title><description><![CDATA[<p dir="auto">You cannot enter URL's into an IP-field.<br />
You have to put in this field the IP or create an alias with this IP and put the alias there.<br />
Look the IP of the adresse www.orkut.com up and fill in the IP of the server.</p>
]]></description><link>https://forum.netgate.com/post/159492</link><guid isPermaLink="true">https://forum.netgate.com/post/159492</guid><dc:creator><![CDATA[GruensFroeschli]]></dc:creator><pubDate>Tue, 11 Sep 2007 15:58:23 GMT</pubDate></item></channel></rss>