My goal is to allow students/staff to bring their own device but be able to block malicious sites, reverse proxies, porn, etc.
Then I would have other networks with different proxy rules.
These are already segmented by vlan.
IP blocklists seems to defeat the point. I can't possibly block all of the bad sites by an ip blocklist.
			Then I would have other networks with different proxy rules.
These are already segmented by vlan.
IP blocklists seems to defeat the point. I can't possibly block all of the bad sites by an ip blocklist.
 "
"