From owner-freebsd-questions@freebsd.org Fri Aug 25 20:59:52 2017 Return-Path: Delivered-To: freebsd-questions@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 330A4DE14E9 for ; Fri, 25 Aug 2017 20:59:52 +0000 (UTC) (envelope-from galtsev@kicp.uchicago.edu) Received: from cosmo.uchicago.edu (cosmo.uchicago.edu [128.135.20.71]) by mx1.freebsd.org (Postfix) with ESMTP id 162CA70688 for ; Fri, 25 Aug 2017 20:59:51 +0000 (UTC) (envelope-from galtsev@kicp.uchicago.edu) Received: by cosmo.uchicago.edu (Postfix, from userid 48) id 3A675CB8CEE; Fri, 25 Aug 2017 15:59:50 -0500 (CDT) Received: from 128.135.52.6 (SquirrelMail authenticated user valeri) by cosmo.uchicago.edu with HTTP; Fri, 25 Aug 2017 15:59:50 -0500 (CDT) Message-ID: <56596.128.135.52.6.1503694790.squirrel@cosmo.uchicago.edu> In-Reply-To: <4c9d24fc-021b-cde6-babc-a1c34d770c53@nofroth.com> References: <59988180.7020301@gmail.com> <4c9d24fc-021b-cde6-babc-a1c34d770c53@nofroth.com> Date: Fri, 25 Aug 2017 15:59:50 -0500 (CDT) Subject: Re: How to block facebook access From: "Valeri Galtsev" To: "Duane Whitty" Cc: freebsd-questions@freebsd.org, duane@nofroth.com Reply-To: galtsev@kicp.uchicago.edu User-Agent: SquirrelMail/1.4.8-5.el5.centos.7 MIME-Version: 1.0 Content-Type: text/plain;charset=iso-8859-1 Content-Transfer-Encoding: 8bit X-Priority: 3 (Normal) Importance: Normal X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.23 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 25 Aug 2017 20:59:52 -0000 On Fri, August 25, 2017 3:41 pm, Duane Whitty wrote: > > > On 17-08-19 03:20 PM, Ernie Luzar wrote: >> Hello list; >> >> Running 11.1 & ipfilter with LAN behind the gateway server. LAN users >> are using their work PC's to access facebook during work. >> >> What method would recommend to block all facebook access? >> >> ` >> _______________________________________________ >> freebsd-questions@freebsd.org mailing list >> https://lists.freebsd.org/mailman/listinfo/freebsd-questions >> To unsubscribe, send any mail to >> "freebsd-questions-unsubscribe@freebsd.org" > > Not sure if I missed this but did you say whether the users on you LAN > are tech savvy? If they understand networking which of the above > solutions, other than white-listing, would prevent one of them from > setting up a web proxy at an address they control? Maybe they might > even be really clever/motivated and take turns running a proxy at > different addresses :-) And/or go through tor network ;-) Valeri > > > Best Regards, > Duane > > -- > Duane Whitty > duane@nofroth.com > _______________________________________________ > freebsd-questions@freebsd.org mailing list > https://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to > "freebsd-questions-unsubscribe@freebsd.org" > ++++++++++++++++++++++++++++++++++++++++ Valeri Galtsev Sr System Administrator Department of Astronomy and Astrophysics Kavli Institute for Cosmological Physics University of Chicago Phone: 773-702-4247 ++++++++++++++++++++++++++++++++++++++++