Block or allow certain sites debian


Recommended Posts

hello,

 

I am using my debian pc as router and i want to block connections from places...a white list would be beneifcial for my purposes

 

 

I want to block websites as well as APIs on websites making calls to external sites like twitter/facebook.... I want to make sure these connections are not even called to boost speed (I am on a very VERY VERY limited connection speed) i am using a cache server which works great but im trying to shave off a few more seconds...

 

so i wont to cut out things that dont cache such as API requests and adverts etc any ideas will be welcome

Link to comment
https://www.neowin.net/forum/topic/1216465-block-or-allow-certain-sites-debian/
Share on other sites

  On 04/06/2014 at 10:21, 68k said:

I could be wrong about this, but I presume you'd need to edit the hosts file on your Debian machine. Here's a guide: https://www.weg.ucar.edu/documentation/hostfile-unix.html

I will look into this,

 

I know there is a function in my proxy to sort out the websites... but I cannot seem to get it working...i am using squid

  On 04/06/2014 at 11:24, Shaun N. said:

I also use squid proxy, it's very effective along side Dansguardian

got any tips on setting up the whitelist? I cant seem to get it working

 

this is what I am inputting

 

acl whitelist dstdomain .example.com .google.com .bing.com

http_access allow whitelist

 

do I have to http_access deny all ? and allow 192.168.2.0/24 ? I dont know with this proxy :(

  On 04/06/2014 at 11:38, SPEhosting said:

got any tips on setting up the whitelist? I cant seem to get it working

 

this is what I am inputting

 

acl whitelist dstdomain .example.com .google.com .bing.com

http_access allow whitelist

 

do I have to http_access deny all ? and allow 192.168.2.0/24 ? I dont know with this proxy :(

 

For Squid or Dansguardian?

  On 04/06/2014 at 13:25, Shaun N. said:

For Squid or Dansguardian?

 

For Squid it would be something like this

 

acl localnet srv 192.168.1.0/25

http_access allow all whitelist

http_access deny all

http_port 8080

 

and set up your whitelist with sites or *.gov type sites

 

You can take a look here for some examples

 

http://www.webdnstools.com/articles/squid-proxy-whitelist

  On 05/06/2014 at 09:04, Shaun N. said:

How did you get on with this?

hello, I got it working in the end, it was all about placment (cheated a lil and used webmin)

 

but now I have two problems to overcome... 1 is to use squid to block multimedia (which it seems to be refusing to do) and another is allow https traffic as well as http through the proxy so I can stop the streaming.... im stuck on this one

  On 05/06/2014 at 10:36, SPEhosting said:

hello, I got it working in the end, it was all about placment (cheated a lil and used webmin)

 

but now I have two problems to overcome... 1 is to use squid to block multimedia (which it seems to be refusing to do) and another is allow https traffic as well as http through the proxy so I can stop the streaming.... im stuck on this one

the 443 traffic is mainly issues with the Iptables  right now i believe...

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Microsoft changes hit Teams Android devices: Disable Entra ID policy to restore sign-in by Paul Hill As part of its Secure Future Initiative, Microsoft has deployed a new Entra ID Conditional Access policy targeting Device Code Flow authentication. Unfortunately, it has led some Microsoft Teams-certified Android devices (Teams Rooms on Android, Teams Phones, Teams Panels, and Teams Displays) to be logged out and signing back in can be a bit fiddly so guidance has been shared. Microsoft said that it shared previous guidance which explained how to exclude Android devices, but it seems some admins didn’t catch this as many devices were not excluded and have been signed out. It’s important to realize that this is not a bug, it’s a security feature. However, the move could have been better communicated. To sign the devices back in, you can do so manually. However, if the devices are remote you’ll need to follow these steps: By disabling the “Block device code flow” policy in step 1, it will change everything back to how it was before Microsoft decided to enable it to boost security. This will allow you to get those affected Android devices logged back in again. Also pay special attention to step 2 which says you might need to reboot your device three times. Once you have your Android devices logged in again, it’s probably a good idea to follow Microsoft’s previous guidance and add these to an exclusion list before re-enabling the “Block device code flow” policy. Microsoft recommends only allowing DCF where it’s absolutely necessary and then blocking it elsewhere. The best thing to do is to add your Teams Android device to the exclusion list - this will allow these devices to operate normally, while boosting overall security. If you’re an admin and have been impacted by this, be sure to take proactive measures to avoid disruptions in the future.
    • Can someone help me with writing a batchfile using notepad to tell me to start a vpn plz? I would greatly appreciate any help  
    • Yeah define not catching up then to see the next part of this then
    • RoboForm 9.7.7 by Razvan Serea RoboForm is the top-rated Password Manager and Web Form Filler that completely automates password entering and form filling. RoboForm makes logging into Web sites and filling forms faster, easier, and more secure. RoboForm memorizes and securely stores each user name and password the first time you log into a site, then automatically supplies them when you return. RoboForm's powerful Logins feature eliminates the manual steps of logging into any online account. With just one click RoboForm will navigate to a Web site, enter your username and password and click the submit button for you. Completing long registration or checkout forms is also a breeze. Simply click on your RoboForm Identity and RoboForm fills-in the entire form for you. You no longer need to remember all your passwords. You remember one Master Password, and RoboForm remembers the rest. This allows you to use stronger passwords, making your online experience more secure. RoboForm uses strong AES encryption for complete data security. The all new RoboForm comes with Chrome and Safari browser support, iPhone/iPad and Android support, as well a brand new RoboForm Everywhere license for use on unlimited computers and mobile devices. RoboForm 9.7.7 changelog: Show RF Desktop unlock UI when user selects "Unlock" in RF Desktop UI. Fixed blank icon appeared in the Windows taskbar for RF Editor. Miscellaneous bug fixes. Download: RoboForm 9.7.7 | 42.2 MB (Free, paid upgrade available) View: RoboForm Website Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • LG G5 was the last memorable phone I had. The Samsung and Pixels and have had since have been disappointing and boring.
  • Recent Achievements

    • Reacting Well
      SteveJaye earned a badge
      Reacting Well
    • One Month Later
      MadMung0 earned a badge
      One Month Later
    • One Month Later
      Uranus_enjoyer earned a badge
      One Month Later
    • Week One Done
      Philsl earned a badge
      Week One Done
    • Week One Done
      Jaclidio hoy earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      439
    2. 2
      ATLien_0
      157
    3. 3
      +FloatingFatMan
      149
    4. 4
      Nick H.
      64
    5. 5
      +thexfile
      62
  • Tell a friend

    Love Neowin? Tell a friend!