LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Slackware
User Name
Password
Slackware This Forum is for the discussion of Slackware Linux.

Notices


Reply
  Search this Thread
Old 06-05-2006, 03:08 PM   #1
pete_bogg
Member
 
Registered: Aug 2003
Location: Kentucky
Distribution: Ubuntu 9.10
Posts: 153

Rep: Reputation: 31
Restricting URLs on desktop - squid?


Hello,

I need to restrict certain websites from my children (myspace, xanga, etc.). My daughter, in order to keep me from modifying her blog accounts, has set up 'hidden' e-mail addresses (yahoo and others).

I am currently using Slackware 10.0 on a home machine with dial-up service. Mozilla, firefox and konqueror are the web browsers installed on my machine.

A quick search through LQ pulls up squid as a possible solution. However, it seems the squid recommendations are dealing with network setups, not necessarily for dial-ups.

Has anyone tried using squid in an application like mine? Does anyone have any other solutions to restrict web sites?

Thanks,

pete
 
Old 06-05-2006, 05:30 PM   #2
gilead
Senior Member
 
Registered: Dec 2005
Location: Brisbane, Australia
Distribution: Slackware64 14.0
Posts: 4,141

Rep: Reputation: 168Reputation: 168
Squid does allow you to restrict which web-sites are viewable. It works fine when the other people using it are on their own PCs and have to go through the Linux box to the internet. You can restrict forwarded ports (using iptables) and set it up so that client PCs have to go through Squid. You can also use transparent proxying so that no setup is required on the client PCs.

The only down side is when people are browsing from the Linux box that Squid is installed on. They can change the browser's proxy setting back to being a direct connection to the internet. Direct access to web ports from the Linux box is necessary so that Squid can retrieve pages and as far as I know trying to set up transparent proxying doesn't work properly on the local host.
 
Old 06-05-2006, 06:34 PM   #3
pete_bogg
Member
 
Registered: Aug 2003
Location: Kentucky
Distribution: Ubuntu 9.10
Posts: 153

Original Poster
Rep: Reputation: 31
gilead,

You're posting pretty much sums up what I was lead to believe about squid.

I have a dial-up linux client only and need the transparent proxy, so I do not think squid will work for me.

Oh well.....

I guess I will look around some more.


pete

Last edited by pete_bogg; 06-05-2006 at 06:35 PM.
 
Old 06-07-2006, 07:33 AM   #4
win32sux
LQ Guru
 
Registered: Jul 2003
Location: Los Angeles
Distribution: Ubuntu
Posts: 9,870

Rep: Reputation: 380Reputation: 380Reputation: 380Reputation: 380
one thing you could do (although it's WAY less effective than a transparent proxy) is set squid on the localhost like normal (non-transparent) and then find some kinda internet-cafe/kiosk extension for firefox which prevents the user from changing the browser's settings and stuff... so basically you'd set firefox to use squid on the localhost, then password protect firefox's settings (i'd also uninstall/disable mozilla and konqueror)... there's a "kiosk browsing" category at the firefox extension website - that might be a good place to find something like this...

https://addons.mozilla.org/firefox/extensions/

just my ...
 
Old 06-13-2006, 04:25 AM   #5
winxandlinx
Member
 
Registered: May 2006
Posts: 141

Rep: Reputation: 15
Hi pete_bogg ,

You can do one thing ,Each and every machine has its own

dns,that is host file .go to the host file make it your sitename

addressing to your localhost only .So, for that sites your

machine will search in your machine bcoz you are going point the

address to localhost only.

for example you want block www.games.com

go to the host file

add the line

127.0.0.1 www.games.com(it shoud not be # in front the line)

so u cannot able to access the page here after


Thanks & Regards
winxandlinx

Last edited by winxandlinx; 06-13-2006 at 04:27 AM.
 
Old 06-20-2006, 08:07 AM   #6
imanassypov
LQ Newbie
 
Registered: Sep 2005
Location: Toronto, Canada
Distribution: FreeBSD, Gentoo, NetBSD
Posts: 28

Rep: Reputation: 15
Cool re: restricting access

The uniform and standard way to go about it is to have a firewall sitting just before your internet exit point. You restrict the outgoing internet traffic (0.0.0.0) to originate from your squid machine. On the squid you impose whatever rules necessary. Now your lan is locked down. In case if users decide to pull a fast one and switch off the proxy setting, they wont get anywhere.
 
Old 06-20-2006, 08:47 AM   #7
Alien Bob
Slackware Contributor
 
Registered: Sep 2005
Location: Eindhoven, The Netherlands
Distribution: Slackware
Posts: 8,559

Rep: Reputation: 8106Reputation: 8106Reputation: 8106Reputation: 8106Reputation: 8106Reputation: 8106Reputation: 8106Reputation: 8106Reputation: 8106Reputation: 8106Reputation: 8106
Ah... I had lost track of this thread.
After having read it a couple of weeks ago, I tried to apply the knowledge I gained with another thread about transparent proxying on a LAN to the situation of a single Linux desktop machine (no LAN, no Linux gateway), and this is the article I wrote about it:

http://www.slackware.com/~alien/doku...arentalcontrol

Let me know if this is what you were looking for.

Eric
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
how to check urls and stop internet urls in network gface Linux - Networking 5 03-24-2005 09:48 PM
Firefox URLs with Squid win32sux Linux - Software 5 03-24-2005 02:03 PM
Squid Limit Urls Roach Linux - Networking 3 12-06-2004 11:59 AM
Squid - restricting usage by time 7 IP cic Linux - Networking 0 10-28-2002 03:41 AM
Restricting access to site by IP with squid hagenuk Linux - Software 0 12-05-2001 11:22 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Slackware

All times are GMT -5. The time now is 09:26 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration