Re: Content Filtering Firewall in Linux..

ben creitz <[email protected]>
Newsgroups gmane.comp.security.linux
Message-ID <[email protected]>
Look at DansGuardian.  I went with iptables +
dansguardian + squid for a school network instead of a
commercial product, I am EXTREMELY pleased with it,
and I saved the school a couple thousand a year. 
Dansguardian comes with great black and gray lists,
and can filter on URL, phrases in the page, regular
expressions in URL or page data, mime type, extansion,
and more.

Poke around for instructions on setting it all up as a
transparent proxy so that no client browser config is
necessary.  iptables listens for packets with
destination port TCP 80, redirects them to whatever
port squid listens on, etc.

On the network of about 60 PCs, the proxy runs on a
bargain basement E-Machines box, Celeron 1.8 GHz or
so, with 512 MB RAM.  The connection feels just as
fast as it did before, maybe faster with the caching.

-Ben


		
____________________________________________________
Start your day with Yahoo! - make it your home page 
http://www.yahoo.com/r/hs
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.