Any IT guys here? Need advice on web blocking software...

Started by bassadict69, July 11, 2015, 11:43:14 AM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

bassadict69

I have a buddy who would like to set up his office so most internet is blocked to his employees. Anyone here help with this?

hughesjasonk


sacid

Squid Webproxy. It can utilize ACLs  (access control lists) where you can black and white list certain content. it's not easily set up but am pretty sure there are many tools out there to configure it. I configure it usually by hand.

Smallie_Stalker

Send a PM to Princeton_Man. He does this stuff for a living and may be able  to help you out.
Dobyns Rods   Titan Tungsten   Abu Garcia  Berkley  Pflueger  Spiderwire

Princeton_Man

How many users? Are administrative rights restricted? Parental controls are an option.

As sacid and hjk recommended, a proxy server is a good way to go and you can manage changes. I used to prefer an in-house proxy server over services offered by outside folks however, there a lot to be said for instant implementation and he can block everything and allow only what's on his "whitelist".

He could also block unwanted connections using the local hosts file.

Another option might be a router which utilizes a whitelist/blacklist. -Jim
Stratos 285 XL Pro 150 Evinrude ETEC

Dobyns Rods - LSCR Club

caddyjoe77

On the cheap, I would recommend something like this:  http://www.ipfire.org/features

Can do everything.  Which means he can have dedicated boxes for Firewall/VPN/Proxy or if he just wants a proxy (using squid, which someone already mentioned). 

There is a gui as well and it looks really easy to use.  Also, if he has a VirtualMachine host(Just about any old server because it does not sound like a complicated setup), it runs on those as well. 

BeerMe

bassadict69

From what he can tell me about his system, he has a central computer that he is on and a couple other systems that are  hardwired into it so they can access his quickbooks and other business related software they use. He said there are also a couple computers that are wireless.

I have been looking online at CurrentWare...anyone familiar with it?

caddyjoe77

I have never used CurrentWare.  I am assuming it runs on a windows machine?

It really sounds like there needs to be a router/switch in between his client PC's, the "central computer" which is what everyone connects to and his filtering device. 

something like this:

Internet ------ CurrentWare Box -----------router/switch ------- "central computer" ------- client machines

"central computer" and client machines are on the same network segment.  Could not represent that very well here. 

the important thing is to put the currentware box outside the client machines but make sure the network path goes through the currentware box so that the client machines must follow the rules that are enforced by the currentware device. 
BeerMe