
Hii All, Anyone who has successfully blocked Facebook with above ..including https:// Rgds Chege

Have you considered trying *OpenDNS <http://www.opendns.com/>?* On 8 July 2013 15:10, Chege <compulinekenya@gmail.com> wrote:
Hii All, Anyone who has successfully blocked Facebook with above ..including https://
Rgds
Chege
_______________________________________________ skunkworks mailing list skunkworks@lists.my.co.ke ------------ List info, subscribe/unsubscribe http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------
Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke

PFsense Blocks when it feels like Maybe you try Untangle On Mon, Jul 8, 2013 at 3:10 PM, Chege <compulinekenya@gmail.com> wrote:
Hii All, Anyone who has successfully blocked Facebook with above ..including https://
Rgds
Chege
_______________________________________________ skunkworks mailing list skunkworks@lists.my.co.ke ------------ List info, subscribe/unsubscribe http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------
Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Kind Regards, Tel: +254 727 049692 Twitter: Sadaqsteve Skype: steve.kyengo

@Steve - really? When it feels like? :) I wonder what component of the default pfSense can block a website based on the protocol. If the OP wanted to block using IP address, then yes, the firewall will do. On 8 July 2013 15:34, Steve Kyengo <k.stevo08@gmail.com> wrote:
PFsense Blocks when it feels like Maybe you try Untangle
On Mon, Jul 8, 2013 at 3:10 PM, Chege <compulinekenya@gmail.com> wrote:
Hii All, Anyone who has successfully blocked Facebook with above ..including https://
Rgds
Chege
_______________________________________________ skunkworks mailing list skunkworks@lists.my.co.ke ------------ List info, subscribe/unsubscribe http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------
Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Kind Regards, Tel: +254 727 049692 Twitter: Sadaqsteve Skype: steve.kyengo
_______________________________________________ skunkworks mailing list skunkworks@lists.my.co.ke ------------ List info, subscribe/unsubscribe http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------
Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 "I can't hear you -- I'm using the scrambler."

This is why employees should just carry their phones and tablets to the office, and have them on the desk to keep tabs on the sites that are blocked. On Monday, 8 July 2013, Odhiambo Washington wrote:
@Steve - really? When it feels like? :)
I wonder what component of the default pfSense can block a website based on the protocol. If the OP wanted to block using IP address, then yes, the firewall will do.
On 8 July 2013 15:34, Steve Kyengo <k.stevo08@gmail.com<javascript:_e({}, 'cvml', 'k.stevo08@gmail.com');>
wrote:
PFsense Blocks when it feels like Maybe you try Untangle
On Mon, Jul 8, 2013 at 3:10 PM, Chege <compulinekenya@gmail.com<javascript:_e({}, 'cvml', 'compulinekenya@gmail.com');>
wrote:
Hii All, Anyone who has successfully blocked Facebook with above ..including https://
Rgds
Chege
_______________________________________________ skunkworks mailing list skunkworks@lists.my.co.ke <javascript:_e({}, 'cvml', 'skunkworks@lists.my.co.ke');> ------------ List info, subscribe/unsubscribe http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------
Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Kind Regards, Tel: +254 727 049692 Twitter: Sadaqsteve Skype: steve.kyengo
_______________________________________________ skunkworks mailing list skunkworks@lists.my.co.ke <javascript:_e({}, 'cvml', 'skunkworks@lists.my.co.ke');> ------------ List info, subscribe/unsubscribe http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------
Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 "I can't hear you -- I'm using the scrambler."
-- with Regards: blog.denniskioko.com <http://www.denniskioko.com/>

*2013/7/8 Dennis Kioko <dmbuvi@gmail.com> *
*This is why employees should just carry their phones and tablets to the office, and have them on the desk to keep tabs on the sites that are blocked.*
Lol. *BYOD*ayobnt ------> *xxxxx*.and.your.own.bloody.network.too

Well, Here is the best way (I mean the BEST) way to do it. Do not block facebook completely, but rather create schedules when you allow people to access it. For me, I suggest the following sched: 0000 - 0800 (Timeafterwork) 1300 - 1359 (TimeLunch) 1630 - 2300 (TimeafterHours) Install squid on the pfSense box and define time ACLs as well as dstdomain ACLs and time the two together. The destdomain ACLs can include all other sites I refer to TimeWastageSites (office time of course) :-) You have to put in place provisions for the head honcho and his/her henchpeople to be allowed access all the time though! You use ARP based ACL for that. Besides that, you can also use the squid as web cache and control streaming - which consumes much bandwidth. That's how I've done it in the few sites where I run pfSense. Just my 2 cents. On 8 July 2013 15:10, Chege <compulinekenya@gmail.com> wrote:
Hii All, Anyone who has successfully blocked Facebook with above ..including https://
Rgds
Chege
_______________________________________________ skunkworks mailing list skunkworks@lists.my.co.ke ------------ List info, subscribe/unsubscribe http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------
Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 "I can't hear you -- I'm using the scrambler."

yep On 8 July 2013 15:10, Chege <compulinekenya@gmail.com> wrote:
Hii All, Anyone who has successfully blocked Facebook with above ..including https://
Rgds
Chege
_______________________________________________ skunkworks mailing list skunkworks@lists.my.co.ke ------------ List info, subscribe/unsubscribe http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------
Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke

Chege, I havent done it before but only was should be via firewall to block the domain. I have done this before using iptables firewall (DROP domain name - forwarding). A quick google search gives http://doc.pfsense.org/index.php/Blocking_websites#Using_Firewall_Rules as an overview of how you can do it. On Mon, Jul 8, 2013 at 3:10 PM, Chege <compulinekenya@gmail.com> wrote:
Hii All, Anyone who has successfully blocked Facebook with above ..including https://
Rgds
Chege
_______________________________________________ skunkworks mailing list skunkworks@lists.my.co.ke ------------ List info, subscribe/unsubscribe http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------
Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
participants (8)
-
Chege
-
Dennis Kioko
-
Kennedy Aseda
-
mash lists
-
Michael Bullut
-
Odhiambo Washington
-
Steve Kyengo
-
Tony Likhanga