From owner-freebsd-questions@FreeBSD.ORG Tue Apr 10 22:19:45 2012 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 39F4C1065670 for ; Tue, 10 Apr 2012 22:19:45 +0000 (UTC) (envelope-from feld@feld.me) Received: from feld.me (unknown [IPv6:2607:f4e0:100:300::2]) by mx1.freebsd.org (Postfix) with ESMTP id 0EA0D8FC0C for ; Tue, 10 Apr 2012 22:19:45 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=feld.me; s=blargle; h=In-Reply-To:Message-Id:From:Mime-Version:Date:References:Subject:To:Content-Type; bh=jJLqlfH7z9y1Y/NW1j10Tc+uTgjKtzNa2Gx5Eu3SCCw=; b=S0zc28vbj/1fnpMb8IiEBfN3wC5shyjNo7Hos7A9iE2ynMJSzNkUbUIlwskX7tOu4ugGQCM6DV7nY3v5xQCXLFXpz87aoMAFEIi2PCN9WH1focLiWXvtCIrvLQ26mhmt; Received: from localhost ([127.0.0.1] helo=mwi1.coffeenet.org) by feld.me with esmtp (Exim 4.77 (FreeBSD)) (envelope-from ) id 1SHjPc-0009M9-AX for freebsd-questions@freebsd.org; Tue, 10 Apr 2012 17:19:44 -0500 Received: from feld@feld.me by mwi1.coffeenet.org (Archiveopteryx 3.1.4) with esmtpa id 1334096383-23734-23733/5/13; Tue, 10 Apr 2012 22:19:43 +0000 Content-Type: text/plain; charset=utf-8; format=flowed; delsp=yes To: freebsd-questions@freebsd.org References: <3416873322-176955401@intranet.com.mx> <20355.44079.41358.84650@jerusalem.litteratus.org> <3416874405-176955403@intranet.com.mx> <4F83B566.8040705@herveybayaustralia.com.au> Date: Tue, 10 Apr 2012 17:19:42 -0500 Mime-Version: 1.0 From: Mark Felder Message-Id: In-Reply-To: <4F83B566.8040705@herveybayaustralia.com.au> User-Agent: Opera Mail/11.62 (FreeBSD) X-SA-Score: -1.5 Subject: Re: Kind OFF Topic. FreeBSD for Blocking URLS? Nanny? X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 10 Apr 2012 22:19:45 -0000 On Mon, 09 Apr 2012 23:21:58 -0500, Da Rock wrote > > For the interim (and as a POC), setup squid and dans guardian and point > the browsers to proxy using that machine. Prove your point and then > explain that this can be done transparently if you had some control of > the routers. > He could just do a MITM on the default gateway via ettercap. Not very ethical, but it would certainly work ^_^