Redirect page in case of denied access
If the access for some site is blocked, the user can be automatically redirected to the web site configured at URL address
;
Blacklists
In this context, blacklists are set as site lists organized by several categories that are considered inconvenient. You can find here the following options (Figure 4.12):
Url for update
: That URL provides a default blacklist base file that is automatically decompressed by IPBrick. Each category will have a list of sites that is automaticaly updated, but it's possible to do a update clicking at Update
. The proxy service can use other blacklist bases, some with other categories. Some blacklists can be found here: http://www.squidguard.org/blacklists.html.
Current file MD5SUM
: MD5 Hash of the file if it's calculated. It lets you check file integrity;
Available categories
: Categories list present in that compilation (usually they are considered unsuited to LAN use)
ads
: List of advertisement sites;
aggressive
: List of violent content sites;
audio-video
: List of music and video content sites;
drugs
: List of drug related content sites;
gambling
: List of gambling sites;
hacking
: List of hacking sites;
mail
: List of sites that provide free webmail services;
phishing
: List of sites about phishing;
porn
: List of sites with pornographic content;
proxy
: List of sites that provide anonymous proxy service;
warez
: List of sites with pirate software content.
Content access management
Sets the number of simultaneous filtering processes that depends on the machine performance and the present CPU load. The default is five processes.
Proxy cache options
Cache enabled
: Activates the Proxy cache service. If the cache is activated, every page accessed by the origin groups are stored in the server. Example: If the page www.google.com
is in the cache, the browser will only access to IPBrick, instead of accessing the google web server, providing a better band width management.
Cache size
: Maximum cache size. If the limit is reached, the older cache files are removed.
Cache location
: The default is the /var
partition. If you choose a big cache size it's a good option to choose the /home1
or /home2
partition.
Allowed connections
This list presents all the ports that are accepted by proxy. So all traffic comming from LAN machines with destination ports in Internet listed here will match proxy defined ACL's. It's possible to configure witch ports are accepted or not by proxy with Remove
and Add
option.
Ignore rules for the following destinations
In this section we can define whitelists for any destinations, including domains and networks. So for that destinations no proxy ACL's will be matched.
All this settings can be viewed at Figure 4.12 and Figure 4.13.
IPBRICK