Page 1 of 2 12 LastLast
Results 1 to 10 of 13

Thread: Internet filter

Hybrid View

  1. #1
    Join Date
    Jan 2011

    Internet filter

    Hello, I am new to Ubuntu/Linux.
    I need an internet content filter, that filters url by keyword in url, and that blocks a list of https sites.

    I will make the first configuration of the filter myself and I will use the filter myself. But the password of the filter, will enter my sister, so that i cant turn off the filter whenever i want. (So- i do not fit the filtering methods, which are based on configuration, which are not protected by password or by administrator privilages.)

    I tried to install NxFilter and DansGuardian+Privoxy, but seeing how complicated is to install and configure them, i wondered - will I be able to get all the necessary results.

    So - is there a solution for my conditions for whichever of the Linux distributions?
    Last edited by bayon; March 9th, 2013 at 05:21 PM.

  2. #2
    Join Date
    May 2011
    Ubuntu 12.04 Precise Pangolin

    Re: Internet filter

    Will you have sudo (admin) rights on the computer, if so there is no solution for locking down the filter. Otherwise this link has a fairly simple tutorial. He uses iptables but gives all the commands so it shouldn't be to hard to follow.

  3. #3
    Join Date
    Jan 2011

    Re: Internet filter

    I can ask my sister to set the admin password, which will be known only by her. Will that help to lock down the filter?

  4. #4
    Join Date
    Nov 2008
    Metro Boston
    Kubuntu 18.04 Bionic Beaver

    Re: Internet filter

    What you want to do is pretty complex.

    First, your best choice for a filter is Squid. You can write all sorts of rules that allow or deny connections to remote sites based on IP, domain name, or text in the URL.

    HTTPS is a whole other ball game. Putting a filter between clients and remote sites using SSL will generate repeated complaints by the client's browser that you are being subjected to a "man-in-the-middle" attack since the filter will disrupt the encrypted transaction between the browser and the server. Squid 3.2 has some clever solutions for this problem, but they are not easy to implement. If you're curious, do a search for "SSLBump".

    At one client site where I manage filtering we use iptables firewalling rules to block remote HTTPS sites. That's not an easy task, either. Many sites with heavy traffic loads have multiple servers listening on multiple IP addresses. You'd need to identify all the possible server addresses for each site, then write iptables rules like this:

    /sbin/iptables -A OUTPUT -d -p tcp --dport 443 -j REJECT
    This blocks HTTPS connections to one of Facebook's servers.

    I would not suggest any of this for newbie Linux users. I cannot figure out from your request whom you're trying to filter, but a better method would be enforcing good behavior.
    If you ask for help, do not abandon your request. Please have the courtesy to check for responses and thank the people who helped you.

    Blog · Linode System Administration Guides · Android Apps for Ubuntu Users

  5. #5
    Join Date
    Mar 2013

    Re: Internet filter

    Hi bayon,

    This is Jinhee the developer of NxFilter.

    I thought I made it very easy to install NxFilter.
    But you said that you have some difficulties in using it.
    Can you tell me on what part you have the problem?

    If you are not familiar with Linux environment then you can try windows version of NxFilter.
    There's a Windows installer for people not familiar with Linux.
    And you can make it Windows service as well.

    The setup process is pretty easy.
    Just click the exe file and you get several icons.
    One for starting NxFilter one for web-admin.
    You need to have Java 1.6 or higher installed first.

    After you start NxFilter then click the icon to web-admin.
    Then you get the login prompt in your browser.
    And the initial password for admin is 'admin'.

    You can have authentication with IP or password.
    And you also can integrate it into Active Directory.
    Of course you can block https sites as well.
    Maybe some other applications as long as they use DNS.

    If you have difficulties in client setup then I recommend you
    to read something about DHCP and DNS setup.
    I think in your home-router you can set NxFilter as your DNS easily.

    If you can't install it still then send me an email.
    I can help you.


  6. #6
    Join Date
    Jan 2011

    Re: Internet filter

    I cant start NxFilter.
    i do not understand how to do this: "You can start NxFilter as a daemon use '-d' option for ''."

    and are you trying to say that i can use 'nxfilter.exe' for installation on Ubuntu?
    Last edited by bayon; March 6th, 2013 at 11:51 PM.

  7. #7
    Join Date
    Mar 2013

    Re: Internet filter

    No. I was telling you that if you are not familiar with Linux you can use Windows.
    Because it's a lot easier.

    If you were able to start NxFilter on your Linux that's OK.
    And about the '-d' option.
    It's there because some people want to run it on background mode.
    Like this.

    /nxfilter/bin/ -d

    You can use that option in rc.local script to start it with system booting.
    Coz that'd be better than starting it manually on your console.

  8. #8
    Join Date
    Mar 2013

    Re: Internet filter

    You couldn't start it.

    Then try to run this command.


    Did you install it into /nxfilter directory?
    You need to give execute permission to the scripts in /nxfilter/bin directory as well.

    Try this commad.

    ls -la /nxfilter/bin

    If there's no execute permission.

    chmod +x /nxfilter/bin/*.sh

    And go to /nxfilter/bin

    cd /nxfilter/bin

    There should be some message.
    At least some error message.

    And trying it on Windows would be a good idea before you move into Linux.
    When it comes to management Linux is better but it might be difficult for most of people if they don't have
    enough knowledge of Linux.
    Last edited by jinhee200; March 7th, 2013 at 01:04 AM.

  9. #9
    Join Date
    Jan 2011

    Re: Internet filter

    I installed nxfilter to /home/rihards/nxfilter.
    in folder 'bin' in all 4 'sh' files i changed 'NX_HOME=/nxfilter' to 'NX_HOME=/home/rihards/nxfilter'
    then i did 'chmod +x /home/rihards/nxfilter/bin/*.sh'
    then: '/home/rihards/nxfilter/bin/ 11: /home/rihards/nxfilter/bin/ java: not found'
    and it didnt create any database into '/home/rihards/nxfilter/db'.
    then i tried to go '', but it does not work.

  10. #10
    Join Date
    Mar 2013

    Re: Internet filter

    Yeah. You need to install Java.
    Try this.

    whereis java

    In my case.

    jinhee@ubuntu:~$ whereis java
    java: /usr/bin/java /usr/bin/X11/java /usr/share/java /usr/share/man/man1/java.1.gz

    Or if you didn't install it.

    sudo apt-get install openjdk-7-jre

Page 1 of 2 12 LastLast


Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts