ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Content filtering with granular settings

    Scheduled Pinned Locked Moved IT Discussion
    content filtering
    37 Posts 17 Posters 2.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • CCWTechC
      CCWTech @DustinB3403
      last edited by

      @DustinB3403 said in Content filtering with granular settings:

      @CCWTech said in Content filtering with granular settings:

      @DustinB3403 said in Content filtering with granular settings:

      @CCWTech said in Content filtering with granular settings:

      I have a client who wants sites like facebook, instagram, etc. filtered on one computer but not another. They are looking for a very granular solution. I am guessing it's out of their price range to do something like this but they want more than just basic adblocking / Porn filtering (which I use PiHole for)

      Any suggestions?

      Remotely edit the workstations host file.

      That would be a huge task. I need a list or lists based solution.

      Okay, well it's free and it would work for just that 1 workstation

      Right but they are looking for category based blocking and different blocking on different workstations.

      1 Reply Last reply Reply Quote 0
      • DustinB3403D
        DustinB3403
        last edited by

        Just point every domain to 127.0.0.1 that you want blocked.

        Problem solved.

        1 Reply Last reply Reply Quote 1
        • CCWTechC
          CCWTech @dafyre
          last edited by

          @dafyre said in Content filtering with granular settings:

          Squid

          facebook is just an example. They would want all weapons sites blocked, all social network sites blocked, etc... Can you imagine the size of the host file?

          DustinB3403D 1 Reply Last reply Reply Quote 0
          • DustinB3403D
            DustinB3403 @CCWTech
            last edited by

            @CCWTech said in Content filtering with granular settings:

            @dafyre said in Content filtering with granular settings:

            Squid

            facebook is just an example. They would want all weapons sites blocked, all social network sites blocked, etc... Can you imagine the size of the host file?

            Well everything else is going to affect the entire site. . .so

            CCWTechC 1 Reply Last reply Reply Quote 0
            • CCWTechC
              CCWTech @DustinB3403
              last edited by

              @DustinB3403 said in Content filtering with granular settings:

              @CCWTech said in Content filtering with granular settings:

              @dafyre said in Content filtering with granular settings:

              Squid

              facebook is just an example. They would want all weapons sites blocked, all social network sites blocked, etc... Can you imagine the size of the host file?

              Well everything else is going to affect the entire site. . .so

              Unless it's agent based.

              1 Reply Last reply Reply Quote 0
              • DustinB3403D
                DustinB3403
                last edited by

                Why the dumb request to block this content from just 1 workstation?

                CCWTechC 1 Reply Last reply Reply Quote 0
                • CCWTechC
                  CCWTech @DustinB3403
                  last edited by CCWTech

                  @DustinB3403 said in Content filtering with granular settings:

                  Why the dumb request to block this content from just 1 workstation?

                  Not 1 workstation.

                  40+ workstations, some workstations would be locked down more than others.

                  My initial post was worded poorly.

                  DustinB3403D 1 Reply Last reply Reply Quote 0
                  • DustinB3403D
                    DustinB3403 @CCWTech
                    last edited by

                    @CCWTech said in Content filtering with granular settings:

                    @DustinB3403 said in Content filtering with granular settings:

                    Why the dumb request to block this content from just 1 workstation?

                    Not 1 workstation.

                    40+ workstations, some workstations would be locked down more than others.

                    Arbitrary requirements are arbitrary.

                    CCWTechC 1 Reply Last reply Reply Quote 0
                    • CCWTechC
                      CCWTech @DustinB3403
                      last edited by

                      @DustinB3403 said in Content filtering with granular settings:

                      @CCWTech said in Content filtering with granular settings:

                      @DustinB3403 said in Content filtering with granular settings:

                      Why the dumb request to block this content from just 1 workstation?

                      Not 1 workstation.

                      40+ workstations, some workstations would be locked down more than others.

                      Arbitrary requirements are arbitrary.

                      Not arbitrary in any way.

                      One group of workstations may be locking down social media sites, other groups may allow them.

                      This may be cost prohibitive for the client but that's what they want. The ability to assign different groups of computers to different settings.

                      dafyreD 1 Reply Last reply Reply Quote 0
                      • dafyreD
                        dafyre @CCWTech
                        last edited by

                        @CCWTech said in Content filtering with granular settings:

                        @DustinB3403 said in Content filtering with granular settings:

                        @CCWTech said in Content filtering with granular settings:

                        @DustinB3403 said in Content filtering with granular settings:

                        Why the dumb request to block this content from just 1 workstation?

                        Not 1 workstation.

                        40+ workstations, some workstations would be locked down more than others.

                        Arbitrary requirements are arbitrary.

                        Not arbitrary in any way.

                        One group of workstations may be locking down social media sites, other groups may allow them.

                        This may be cost prohibitive for the client but that's what they want. The ability to assign different groups of computers to different settings.

                        Again, that can be done using a Squid Proxy or some other proxy server.

                        1 Reply Last reply Reply Quote 1
                        • 1
                          1337
                          last edited by

                          What's the problem? Just put the workstation groups on different vlans and route their traffic differently. Block either in firewall, http proxy or dns.

                          dbeatoD 1 Reply Last reply Reply Quote 2
                          • AmbarishrhA
                            Ambarishrh
                            last edited by

                            You could try cisco umbrella (previously opendns) https://umbrella.cisco.com/products/packages or mimecast web security https://www.mimecast.com/products/web-security/

                            I've previously used untangle and clearos for these as well

                            1 Reply Last reply Reply Quote 1
                            • syko24S
                              syko24
                              last edited by

                              Nxfilter is a decent and inexpensive option. You can be granular by IP address or by username. All filtering is done using dns.

                              https://nxfilter.org/p3/

                              1 Reply Last reply Reply Quote 1
                              • dbeatoD
                                dbeato @1337
                                last edited by

                                @Pete-S said in Content filtering with granular settings:

                                What's the problem? Just put the workstation groups on different vlans and route their traffic differently. Block either in firewall, http proxy or dns.

                                Exactly what I am thinking even if it is Squid. @CCWTech what firewall do you have?

                                CCWTechC 1 Reply Last reply Reply Quote 1
                                • black3dynamiteB
                                  black3dynamite
                                  last edited by

                                  pfSense with squid and squidguard packages worked well when I last used it.

                                  1 Reply Last reply Reply Quote 3
                                  • JaredBuschJ
                                    JaredBusch
                                    last edited by

                                    The only reason to do something like this is it these are public computers. If these are users in an office setting then the problem is management needs to discipline employees.

                                    CCWTechC 1 Reply Last reply Reply Quote 2
                                    • CCWTechC
                                      CCWTech @JaredBusch
                                      last edited by

                                      @JaredBusch said in Content filtering with granular settings:

                                      The only reason to do something like this is it these are public computers. If these are users in an office setting then the problem is management needs to discipline employees.

                                      I agree. I think they are going to end up with something like PiHole when they hear the cost of doing what they actually want to do.

                                      1 Reply Last reply Reply Quote 0
                                      • CCWTechC
                                        CCWTech @dbeato
                                        last edited by

                                        @dbeato said in Content filtering with granular settings:

                                        @Pete-S said in Content filtering with granular settings:

                                        What's the problem? Just put the workstation groups on different vlans and route their traffic differently. Block either in firewall, http proxy or dns.

                                        Exactly what I am thinking even if it is Squid. @CCWTech what firewall do you have?

                                        Unifi USG

                                        dbeatoD 1 Reply Last reply Reply Quote 1
                                        • dbeatoD
                                          dbeato @CCWTech
                                          last edited by

                                          @CCWTech said in Content filtering with granular settings:

                                          @dbeato said in Content filtering with granular settings:

                                          @Pete-S said in Content filtering with granular settings:

                                          What's the problem? Just put the workstation groups on different vlans and route their traffic differently. Block either in firewall, http proxy or dns.

                                          Exactly what I am thinking even if it is Squid. @CCWTech what firewall do you have?

                                          Unifi USG

                                          Gotcha, that does not do content filtering.

                                          1 Reply Last reply Reply Quote 1
                                          • davide.bonavitaD
                                            davide.bonavita
                                            last edited by davide.bonavita

                                            I think the Watchguard firewalls can do this, you can create policies per user or per computer with very granular content filtering (even for https connections)

                                            JaredBuschJ RojoLocoR 2 Replies Last reply Reply Quote 1
                                            • 1
                                            • 2
                                            • 1 / 2
                                            • First post
                                              Last post