[ale] selective DNS server for DHCP clients?

Jim Kinney jim.kinney at gmail.com
Wed Feb 27 22:14:25 EST 2013


It's basically use iptables to route outbound port 80 traffic to the input
port for squid at your firewall. Squid sends traffic back automatically.
On Feb 27, 2013 3:17 PM, "Pete Hardie" <pete.hardie at gmail.com> wrote:

> Know any good tutorials for this, Jim?  Or godg Google keywords?
>
> Pete Hardie
> --------
> Better Living Through Bitmaps
>
>
> On Wed, Feb 27, 2013 at 3:07 PM, Jim Kinney <jim.kinney at gmail.com> wrote:
>
>> Use an invisible proxy by capturing all http/https traffic from her
>> laptop IP and routing through your squid proxy. No changes on laptop and no
>> more faceplant sucking away her IQ.
>>
>>
>> On Wed, Feb 27, 2013 at 2:29 PM, Pete Hardie <pete.hardie at gmail.com>wrote:
>>
>>> Doesn't squid require changing the browser proxy settings?  I'd prefer
>>> something that does not rely on changes on the laptop, since I don't
>>> control the software, etc - we already have enough trouble getting the wifi
>>> settings to work
>>>
>>> Pete Hardie
>>> --------
>>> Better Living Through Bitmaps
>>>
>>>
>>> On Wed, Feb 27, 2013 at 2:13 PM, Chuck Payne <terrorpup at gmail.com>wrote:
>>>
>>>>
>>>>
>>>> On Wed, Feb 27, 2013 at 2:02 PM, Pete Hardie <pete.hardie at gmail.com>wrote:
>>>>
>>>>> Hello all,
>>>>>
>>>>> After another round of disagreements concerning homework, I've
>>>>> determined that my daughter can't resist the lure of time-wasting Internet
>>>>> sites.  The wrinkle is that she has a school-issued laptop, so I can't
>>>>> install anything on it to block access to the time-sinks.  So here's what I
>>>>> think I can do, and I need to know if it's possible:
>>>>>
>>>>> I already have a DHCP server on my desktop, providing fixed IPs and a
>>>>> different DNS server for my ReplayTV boxen.  I'd like to target her
>>>>> laptop's DNS to one running on my desktop, without using that one as my
>>>>> desktop's DNS (I can use the router)
>>>>>
>>>>> I also need a good tutorial on DNS servers - I have dnsmasq, which
>>>>> seems like it might work for my purposes - have the sites I need to block
>>>>> be mapped to 127.0.0.1 for her laptop, while letting the rest to resolve
>>>>> normally
>>>>>
>>>>> So is this feasible?  If not, is there a good alternative?
>>>>>
>>>>> TIA,
>>>>>
>>>>>
>>>>> Pete Hardie
>>>>> --------
>>>>> Better Living Through Bitmaps
>>>>>
>>>>> _______________________________________________
>>>>> Ale mailing list
>>>>> Ale at ale.org
>>>>> http://mail.ale.org/mailman/listinfo/ale
>>>>> See JOBS, ANNOUNCE and SCHOOLS lists at
>>>>> http://mail.ale.org/mailman/listinfo
>>>>>
>>>>>
>>>> Are you wanting to block site with DNS?  You might be better setting up
>>>> squid.
>>>>
>>>>
>>>> http://milky.manishsinha.net/2009/06/06/speeding-up-internet-surfing-squid-bind/
>>>>
>>>> This is what I think you are looking for...
>>>>
>>>> http://qmail.jms1.net/djbdns/bind-blocking.shtml
>>>>
>>>>
>>>> http://ct-bond.blogspot.com/2010/03/blocking-malicious-websites-with-dns.html
>>>>
>>>> http://www.deer-run.com/~hal/sysadmin/dns-advert.html
>>>>
>>>>
>>>> --
>>>> Terror PUP a.k.a
>>>> Chuck "PUP" Payne
>>>>
>>>> (678) 636-9678
>>>> -----------------------------------------
>>>> Discover it! Enjoy it! Share it! openSUSE Linux.
>>>> -----------------------------------------
>>>> openSUSE -- en.opensuse.org/User:Terrorpup
>>>> openSUSE Ambassador/openSUSE Member
>>>> Community Manager -- Southeast Linux Foundation (SELF)
>>>> skype,twiiter,identica,friendfeed -- terrorpup
>>>> freenode(irc) --terrorpup/lupinstein
>>>> Register Linux Userid: 155363
>>>>
>>>> Have you tried SUSE Studio? Need to create a Live CD,  an app you want
>>>> to package and distribute , or create your own linux distro. Give SUSE
>>>> Studio a try. www.susestudio.com.
>>>> See you at Southeast Linux Fest, June 7-9, 2013 in Charlotte, NC.
>>>> www.southeastlinuxfest.org
>>>>
>>>> _______________________________________________
>>>> Ale mailing list
>>>> Ale at ale.org
>>>> http://mail.ale.org/mailman/listinfo/ale
>>>> See JOBS, ANNOUNCE and SCHOOLS lists at
>>>> http://mail.ale.org/mailman/listinfo
>>>>
>>>>
>>>
>>> _______________________________________________
>>> Ale mailing list
>>> Ale at ale.org
>>> http://mail.ale.org/mailman/listinfo/ale
>>> See JOBS, ANNOUNCE and SCHOOLS lists at
>>> http://mail.ale.org/mailman/listinfo
>>>
>>>
>>
>>
>> --
>> --
>> James P. Kinney III
>> *
>> *Every time you stop a school, you will have to build a jail. What you
>> gain at one end you lose at the other. It's like feeding a dog on his own
>> tail. It won't fatten the dog.
>> - Speech 11/23/1900 Mark Twain
>> *
>> http://electjimkinney.org
>> http://heretothereideas.blogspot.com/
>> *
>> _______________________________________________
>> Ale mailing list
>> Ale at ale.org
>> http://mail.ale.org/mailman/listinfo/ale
>> See JOBS, ANNOUNCE and SCHOOLS lists at
>> http://mail.ale.org/mailman/listinfo
>>
>>
>
> _______________________________________________
> Ale mailing list
> Ale at ale.org
> http://mail.ale.org/mailman/listinfo/ale
> See JOBS, ANNOUNCE and SCHOOLS lists at
> http://mail.ale.org/mailman/listinfo
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mail.ale.org/pipermail/ale/attachments/20130227/259312fe/attachment-0001.html>


More information about the Ale mailing list