OPNsense Forum

Archive => 17.1 Legacy Series => Topic started by: meha on February 09, 2017, 08:24:49 am

Title: proxy landing page, whitelist, log
Post by: meha on February 09, 2017, 08:24:49 am
Dear forum,

we have set up opnsense with proxy and have some issues.

1. landing page
How can we define a landing page for denied domains in opnsense gui ?
Now we have a timeout without message of opnsense.

2. Whitelisting domains
We only want access to whitelisted domains, others are denied.
How can we do that in opnsense gui ?
Have the config files of squid to be modified ?
Are this files changed after an update ?

3. logging
Where can we find a readable log of blocked traffic to adjust the whitelist ?
URL for software updates, adobe, java etc. should go into the whitelist.


Thank you for your afford

Best regards

meha

Title: Re: proxy landing page, whitelist, log
Post by: meha on February 11, 2017, 11:04:08 pm
No one has an idea, i`ll answer that

1. Seems that blacklist´s delay the landing page. If you configure no 2 you´ll get the landing page.
2. You have to add . (dot) in the blacklist, then add the domains you want for whitelisting in the whitelist area.
   Config files can´t be manually edited, because after restarting the last config is restored.
3. You´ll find that under proxy/log section.
Title: Re: proxy landing page, whitelist, log
Post by: fabian on February 12, 2017, 11:31:05 am
For (1) you can overwrite squids error page if you like. They are somewhere under /usr/local/etc/squid/ but you will have to replace the files after each squid update because this files may be overwritten. There is an old ticket for that: https://github.com/opnsense/core/issues/828