-----Original Message----- From: Raylund Lai [mailto:raylund....@kankanwoo.com] Sent: Wednesday, March 23, 2011 11:14 AM To: support@pfsense.com Subject: RE: [pfSense Support] can't block https://facebook.com via firefox
I think the best is to combine DNS and firewall rule. Using something like OpenDNS for all the DNS inquiry on your network and then setup firewall rule so that only DNS inquiry are allowed to OpenDNS. Then, going to OpenDNS to set your own blocking/allowing rule(s). -Raylund This is a good approach too. Rather than only allow dns to opendns you could redirect all dns request to opendns in the nat settings. --------------------------------------------------------------------- To unsubscribe, e-mail: support-unsubscr...@pfsense.com For additional commands, e-mail: support-h...@pfsense.com Commercial support available - https://portal.pfsense.org