How to Configure pfSense Firewall to Only Allow Selected Websites

แชร์
ฝัง
  • เผยแพร่เมื่อ 8 ก.ย. 2024

ความคิดเห็น • 78

  • @Maykros
    @Maykros 4 ปีที่แล้ว +4

    It will not work because almost every site have external libraries witch loaded from another websites. Your pages will loading very long and in the end (if you open page console) display error.
    My english is not perfect so i put comment from reddit:
    "This is going to work fairly poorly for “allowed sites”. Functionality on the sites is going to break because they will often rely on third party dependencies (CDNs, etc) for delivering javascript, media files, etc. You have no ability to track these and whitelist and they could change at any time. pfSense firewall rules is not the right tool for the job."

    • @takjr0
      @takjr0 4 ปีที่แล้ว +1

      So what is the right tool for this job?

    • @msboy1978
      @msboy1978 3 ปีที่แล้ว

      @@takjr0 He's right. Sites that are in the white list load slowly and sometimes give an error because they have a link to libraries that are on other sites. And I'm looking for a solution but I can't find it.

  • @ariescamporedondo8824
    @ariescamporedondo8824 4 ปีที่แล้ว +2

    Sir new subs here i liked how you vlog about pfsense. more power sa page mo. I am newbie IT sa katatayo palang na small BPO and we're using PFsense as network management and firewall. this is big help for me.

  • @torogipro
    @torogipro  6 ปีที่แล้ว +1

    Like Share Subscribe Comment!

  • @bossak.mokpokpo
    @bossak.mokpokpo หลายเดือนก่อน

    thanks for the video.
    please can you show us allow access to facebook for exemple on the captive portal (hotspot) activated??

  • @MAbdilahi
    @MAbdilahi 6 ปีที่แล้ว +2

    Thanks for your amazing video could you please make a video VPN on pfsense and accessing from outside the LAN thanks

  • @spaghettienforcer4896
    @spaghettienforcer4896 3 ปีที่แล้ว +2

    PFSense blocks all by default. You don't need the deny all rules, or the two default allow rules. You get the same result if you have ONLY the Anti-lockout and allowed_websites rules. No need for those last 3.
    You also ignored the IPv6 portion. You are allowing all for IPv6. You should remove the IPv6 default allow rule or add another block all rule for IPv6. Imo, you shouldn't use IPv6 at all and should block all and ensure your dhcp doesn't assign them.

  • @mrpush2855
    @mrpush2855 4 ปีที่แล้ว +2

    Hi, well this should NOT block anything as you have the "default Allow LAN to any" rule AFTER the block rule, which would allow all traffic, right?

  • @bossak.mokpokpo
    @bossak.mokpokpo หลายเดือนก่อน

    how can we allow some websites to work or open despite/even if the captive portal is enabled?

  • @vanias1978
    @vanias1978 2 ปีที่แล้ว

    Simpe and usefull.

  • @lestherabong9496
    @lestherabong9496 6 ปีที่แล้ว +1

    Thanks sir :) :) mabuhay po kayo

    • @torogipro
      @torogipro  6 ปีที่แล้ว

      Welcome

    • @lestherabong9496
      @lestherabong9496 6 ปีที่แล้ว

      Hi sir, sinundan ko po yong video nagawa ko naman po lahat, nagkaroon lang po ng kunting problema nawalan naman po ako ng internet.

    • @torogipro
      @torogipro  6 ปีที่แล้ว

      @@lestherabong9496 dagdagan mu ng pasrule na any tas sa port range port 53 or ung dns.

    • @lestherabong9496
      @lestherabong9496 6 ปีที่แล้ว

      yong any sir sa source or sa destination?

    • @torogipro
      @torogipro  6 ปีที่แล้ว

      @@lestherabong9496 kanit any din. Basta port range 53. Tas ung protocol mu tcp/udp

  • @mrpush2855
    @mrpush2855 3 ปีที่แล้ว +1

    Hi, Doing it this way makes my web pages load REALLY REALLY slow! That must the due to the FW processing the rules maybe?
    What I did is for one Pc on my Lan, I applied rules like this to only allow certain web sites, then block all others. It just kills the performance and the web sites, they take forever to time out if blocked, or forever to load if allowed. Anyway to speed things up?

  • @syed9640
    @syed9640 3 ปีที่แล้ว

    thankyou very much,much appreciate it was really easy way to block i was trying this from so many days,do u have any tutorial to allow few user facebook and block for others

  • @athar112
    @athar112 3 ปีที่แล้ว +1

    Sir, Can we allow only Whatsapp in pfsence and block other App.

  • @lamyaeaissaoui3883
    @lamyaeaissaoui3883 3 ปีที่แล้ว +1

    hello, thank you for all your efforts. I have a qs how can I write a script PHP or a simple script in lunix, where I control the access to the internet, for example, my little brother can connect to youtube in just 3 hours but he can't connect to facbook or watssap etc ? I need your help to finish my project it's about the control parental. thank you

  • @ranilcadiz1805
    @ranilcadiz1805 3 ปีที่แล้ว +1

    sir why google drive still not loading, is this possible that google drive is block? how to fix that? thanksin advance for answer if you fix that already!

  • @joycedagrou
    @joycedagrou 4 หลายเดือนก่อน

    hello sir, I followed all the configurations you made. but mine blocks all the sites, I don't know what to do. please help me

  • @muhammadasjad6686
    @muhammadasjad6686 11 หลายเดือนก่อน

    What if we want to give full access to some pcs and apply restrictions on the rest??

  • @education-ryk1628
    @education-ryk1628 2 ปีที่แล้ว

    Respected Brother ! In which router you are performing firewall rules to deny and allow selected or known website through our firewall.

  • @back2basics512
    @back2basics512 ปีที่แล้ว

    hi torogi i have 3 computers on one network....how do you deny all and allow afew for the 2 computers and the 3rd pc must not be affected by this rule with pf sense please

  • @Martin-ot7xj
    @Martin-ot7xj 4 ปีที่แล้ว

    Hi there, please make a tutorial video about how we can block all incoming traffic from outside or internet to our network for more security on pfsense firewall. Thnx

  • @mithubopensourcelab482
    @mithubopensourcelab482 4 ปีที่แล้ว +1

    This is never going to work except first time.... Once the firewall + client pc is rebooted it will not work for sure. The reason is obvious. Next time the dns cache will not be there.

    • @sirpawelm
      @sirpawelm 4 ปีที่แล้ว

      You are right, TH-cam is full of this kind of "quality" content.

  • @tonyfernandes216
    @tonyfernandes216 3 ปีที่แล้ว

    how do i add and configure pfsense firewall in VMware, I have server 2019 and 2 workstations win10 for the lab. thanks

  • @MrZnopert21
    @MrZnopert21 2 หลายเดือนก่อน

    Good day do you offer online training po sa Pfsense and Proxmox?

  • @xdeathtv5155
    @xdeathtv5155 5 ปีที่แล้ว +1

    how to deny internet accses to other devices using an android phone

  • @jeytis72
    @jeytis72 4 ปีที่แล้ว

    Interesting, but I didn't understand how can I allow selected websites just to an IP or group of IPs? Thanks

  • @abdulaleemsonija3554
    @abdulaleemsonija3554 4 ปีที่แล้ว

    Is This Possible for Tenda Routers.
    Please make a video on Tenda also.
    Thanks

  • @asdfghjkl2417
    @asdfghjkl2417 4 ปีที่แล้ว

    If all the websites are denied except for the exceptions, then can we access the pfSense localdomain?

  • @irfanarshid2585
    @irfanarshid2585 3 ปีที่แล้ว +1

    block rule is working but pass rule is not working

  • @muhammadaamir566
    @muhammadaamir566 2 ปีที่แล้ว

    I want to allow all email servers like Gmail, Yahoo mail, outlook, hotmail etc?

  • @itwcditechsupport4977
    @itwcditechsupport4977 6 ปีที่แล้ว +1

    Hi Master , Ako ulit!!
    working po sya sa chrome .. pero sa ibang browser like microsoft edge , firefox and UC browser ... hindi po ma access yung mga unblocked sites. "Can't reach this page"

    • @JovinManeja
      @JovinManeja 5 ปีที่แล้ว

      ITwcdi Techsupport same here.. yung sa akin din nagwwork siya for about 2-5mins lang den after is blocked na lahat ng websites and all other browsers.. pa help po! Thanks

  • @shyamsali1017
    @shyamsali1017 4 ปีที่แล้ว

    Install pfsense & I apply this to rule. But still not working. Any step are missing by me. Plz expain.

  • @ink99
    @ink99 6 ปีที่แล้ว

    Thank bro.... and i have a question... how i can do that with a specific range IP in my LAN. and another range without restriction.??

    • @torogipro
      @torogipro  6 ปีที่แล้ว +2

      Group them by using alias then you can allow or deny websites for the created alias.

  • @davelodia9157
    @davelodia9157 5 ปีที่แล้ว

    I try this alias not working for me, allowed gmail and google drive

  • @christianguevarra1
    @christianguevarra1 5 ปีที่แล้ว +2

    Dude don't show your Netgate device ID

  • @lyndonericserrano197
    @lyndonericserrano197 4 ปีที่แล้ว

    nice job sir. will this workin multipoint server computers?

  • @daryldangan2577
    @daryldangan2577 4 ปีที่แล้ว

    Hi Sir, I have a question. How to deny all websites on a specific user while they can access a specifc website using proxy? Is it possible in squid? Thanks

  • @johnnielacapuyan2624
    @johnnielacapuyan2624 3 ปีที่แล้ว

    Boss gumagana po sayo ung alias sa latest version? Block specific website to specific user? Thanks

  • @irfanarshid2585
    @irfanarshid2585 3 ปีที่แล้ว

    some body help me in this issue. this is not working version 2.5.0 and 2.4.4.

  • @muhammadaamir566
    @muhammadaamir566 2 ปีที่แล้ว

    how allow yahoo mail? how to calculate the FQDN for yahoo mail?

  • @keilahshimeiaguasito1662
    @keilahshimeiaguasito1662 3 หลายเดือนก่อน

    Tinry ko po sya gawin ngayon di sya gumagana :((

  • @curtisrutledge878
    @curtisrutledge878 ปีที่แล้ว

    this is not a good solution this will block all lan traffic so printers and other devices will be blocked

  • @lakemonroblox1341
    @lakemonroblox1341 5 ปีที่แล้ว

    how do you deny it if you already allowed it?

  • @JovinManeja
    @JovinManeja 5 ปีที่แล้ว

    Sir, pano po ba i block si youtube sa isang IP or group of IPs but can access any site except youtube po.. thanks

  • @jamesbasilides9670
    @jamesbasilides9670 4 ปีที่แล้ว

    Hai Sir. In modem globe at home prepaid wifi po , what's the different between white list and block list?

    • @roncustodio1778
      @roncustodio1778 ปีที่แล้ว

      blocked not allowed white list allowed

  • @education-ryk1628
    @education-ryk1628 2 ปีที่แล้ว

    Is it possible in tp-link or Huwai

  • @ink99
    @ink99 6 ปีที่แล้ว

    Yesterday, I repeated the configuration with my firewall and my old connected PC and it worked fine.
    But when i conected the port out to router and connect some tablets recognized sites allowed and others not ... had to down the rules and see the pages ... and then re-apply the rules and worked well. the problem is that I have a 50% chance that the new tablets work the first time. I do not know if I'm doing something wrong.

  • @jeraldrodriguez5120
    @jeraldrodriguez5120 4 ปีที่แล้ว

    what is the settings of your vm ware ??? diko mapply eh

  • @jeraldrodriguez5120
    @jeraldrodriguez5120 3 ปีที่แล้ว

    Can i see the settings of your vmware

  • @ryanfranco1609
    @ryanfranco1609 5 ปีที่แล้ว

    Sir meron ka ba jan tutorial na my exeption sa web filtering? example yung mga regular employee is block lahat ng social media then sa mga boss open access?

  • @ramyateja998
    @ramyateja998 5 ปีที่แล้ว

    This is not working on my system why?

  • @romechristianguillen9665
    @romechristianguillen9665 4 ปีที่แล้ว

    wait what is pfsense ?

  • @markanthonysalazar6491
    @markanthonysalazar6491 4 ปีที่แล้ว

    What if 'yong youtube lang gumagana or the google...pero ung facebook at messenger at iba pang website di na gumagana🤔🙁

  • @chhornchanthy1707
    @chhornchanthy1707 2 ปีที่แล้ว

    it is not working

  • @yasirtahirkheli74
    @yasirtahirkheli74 3 ปีที่แล้ว

    doesnt work in my case.....did everything accordingly....all in vain...

  • @MrJeonard1985
    @MrJeonard1985 4 ปีที่แล้ว

    request boss block utorrent torrent video

  • @Martin-ot7xj
    @Martin-ot7xj 4 ปีที่แล้ว

    Hi there, please make a tutorial video about how we can block all incoming traffic from outside or internet to our network for more security on pfsense firewall. Thnx

  • @muhammadaamir566
    @muhammadaamir566 2 ปีที่แล้ว

    not working,,,,