RW wrote:
> On Fri, 6 Jul 2007 13:20:07 +0200
> Zbigniew Szalbot <[EMAIL PROTECTED]> wrote:
> 
>> I do not yet have FreeBSD functioning as a real gateway as I will be
>> able to do it at a later stage. However, there is one thing that
>> leaves me wondering. In order to use the content filtering as
>> provided by Dansguardian, I need to configure the browser to look for
>> proxy on port 8080. Now, if someone just changes the port in their
>> browser to 3128 (squid proxy port), then all content filtering will
>> be bypassed. 
>>
> 
> If this box is not the gateway, there is no point in doing anything
> about this because they can simply turn-off proxying and go direct to
> the internet. 

Not if the box is an inline bridge...

Allow minimal Internet use, ftp, ssh, 587, 110 etc, then fwd 80, 443 to
the internal proxy box and voila.

Steve
_______________________________________________
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Reply via email to