Jump to content

PFSense Firewall Configuration at Design Atiliers: Difference between revisions

From TetraWiki
Created page with "<center><u>'''Pfsense Firewall Configuration'''</u></center> [[Image:]] '''Installing Squid:-''' '''Click on''' '''System -> Packages''' '''-> available packages->squid''' ..."
 
No edit summary
Line 1: Line 1:
<center><u>'''Pfsense Firewall Configuration'''</u></center>
<center><u>'''Pfsense Firewall Configuration'''</u></center>


[[Image:]]
[[Image:Design-1.png]]


'''Installing Squid:-'''
'''Installing Squid:-'''
Line 15: Line 15:
'''Click '''&nbsp;'''on "+" button to&nbsp;install.'''
'''Click '''&nbsp;'''on "+" button to&nbsp;install.'''


[[Image:]]
[[Image:Design-2.png]]




Line 226: Line 226:




[[Image:]]
[[Image:Design-3.png]]


[[Image:]]
[[Image:Design-4.png]]


'''Define Network and Whitelisting:-'''
'''Define Network and Whitelisting:-'''


[[Image:]]
[[Image:Design-5.png]]


[[Image:]]
[[Image:Design-6.png]]




Line 241: Line 241:
'''Click on''' '''Services ->SquidGuard Proxy->'''
'''Click on''' '''Services ->SquidGuard Proxy->'''


[[Image:]]
[[Image:Design-7.png]]


[[Image:]]
[[Image:Design-8.png]]


'''Now Click on Blacklist Tab:-'''
'''Now Click on Blacklist Tab:-'''


[[Image:]]
[[Image:Design-9.png]]


'''Click on Download. It will configure automatic.'''
'''Click on Download. It will configure automatic.'''
Line 253: Line 253:
'''Next click on Common ACL:-'''
'''Next click on Common ACL:-'''


[[Image:]]
[[Image:Design-10.png]]


'''Now Click on Target categories:-'''
'''Now Click on Target categories:-'''
Line 259: Line 259:
'''Create New Category “local “ to allow everyone—'''
'''Create New Category “local “ to allow everyone—'''


[[Image:]]
[[Image:Design-11.png]]


'''Create Category “google_images” to allow google images-'''
'''Create Category “google_images” to allow google images-'''


[[Image:]]
[[Image:Design-12.png]]


'''Create Target “adobe_update”- to allow Adobe update-'''
'''Create Target “adobe_update”- to allow Adobe update-'''


[[Image:]]
[[Image:Design-13.png]]


'''Create Target “Tally_update” – to update tally-'''
'''Create Target “Tally_update” – to update tally-'''


[[Image:]]
[[Image:Design-14.png]]




Line 278: Line 278:
'''Create New Group “Full_Access”- To Define Full Access:-'''
'''Create New Group “Full_Access”- To Define Full Access:-'''


[[Image:]]
[[Image:Design-15.png]]


[[Image:]]
[[Image:Design-16.png]]


'''Create Group “Admin” –'''
'''Create Group “Admin” –'''


[[Image:]]
[[Image:Design-17.png]]


[[Image:]]
[[Image:Design-18.png]]




'''Create Group “Super_User” –'''
'''Create Group “Super_User” –'''


[[Image:]]
[[Image:Design-19.png]]


[[Image:]]
[[Image:Design-20.png]]


'''Now Click on General Settings Under SquidGuard:-'''
'''Now Click on General Settings Under SquidGuard:-'''
Line 299: Line 299:
'''Check Mark Enable and click on Apply:-'''
'''Check Mark Enable and click on Apply:-'''


[[Image:]]
[[Image:Design-21.png]]




'''Finally Check All services should be running:-'''
'''Finally Check All services should be running:-'''


[[Image:]]
[[Image:Design-22.png]]




'''Thanks:-'''
'''Thanks:-'''

Revision as of 05:25, 15 December 2015

Pfsense Firewall Configuration

Installing Squid:-

Click on System -> Packages -> available packages->squid

Click  on "+" button to install.

Installing SquidGuard:-

Click on System -> Packages -> available packages->squidGuard

Click  on "+" button to install.


User Rights


Group Members IP Rights
Admin Vishal 192.168.0.140 Railways
RA 192.168.0.171 Airlines
Dvat
Service Tax
Income tax
Gmail
Bank Sites
Finance sites
Computax updates
Tally updates
Form 26as/form 16/form 16a
Wct TDS deposites/certificates
Principal Ashish Karode 192.168.0.151 Full
Sushil Ji 192.168.0.123 Full
Special User Abdul 192.168.0.163 Adove Update
Chetanya 192.168.0.241 Adove Update
All Google Images
www.bibliocad.com
www.revitcity.com
www.augi.com
concert/sms
autodesk.com
fonts.com
Blocked Sites Adult Content
Music
Downloading
Social Media
Movies

Configuring Squid Proxy:-

Click on Services -> Proxy Server->


Define Network and Whitelisting:-


Configuring SquidGuard:-

Click on Services ->SquidGuard Proxy->

Now Click on Blacklist Tab:-

Click on Download. It will configure automatic.

Next click on Common ACL:-

Now Click on Target categories:-

Create New Category “local “ to allow everyone—

Create Category “google_images” to allow google images-

Create Target “adobe_update”- to allow Adobe update-

Create Target “Tally_update” – to update tally-


Now Click on Groups Acl tab- to define Groups:-

Create New Group “Full_Access”- To Define Full Access:-

Create Group “Admin” –


Create Group “Super_User” –

Now Click on General Settings Under SquidGuard:-

Check Mark Enable and click on Apply:-


Finally Check All services should be running:-


Thanks:-