Page 1 of 1

How to prevent users from typing in direct IP addresses & accessing OpenDNS-blocked sites?

Posted: Fri Jan 12, 2018 8:09 am
by srix55
Hi,

I have successfully set up OpenDNS and it works great. However I noticed that it can be easily bypassed by typing in the ip address directly in the browser. How do I block that? I mean, I know I can block specific IP addresses in gargoyle. I want to know how you can block requests that are trying to bypass my forced-dns.

Re: How to prevent users from typing in direct IP addresses & accessing OpenDNS-blocked sites?

Posted: Fri Jan 12, 2018 9:07 am
by Lantis
You can’t. Those aren’t requests to the router they are to the remote server.
Any solution to do this would probably involve a proxy

Re: How to prevent users from typing in direct IP addresses & accessing OpenDNS-blocked sites?

Posted: Fri Jan 12, 2018 9:31 am
by srix55
Can gargoyle act as a proxy server?

Re: How to prevent users from typing in direct IP addresses & accessing OpenDNS-blocked sites?

Posted: Fri Jan 12, 2018 11:58 am
by tapper
Sorry that is beyond Gargoyle. You could do it by installing a OpenWRT package but It mite mess with a lot of the things Gargoyle does like firewalling and things.

Re: How to prevent users from typing in direct IP addresses & accessing OpenDNS-blocked sites?

Posted: Fri Jan 12, 2018 6:07 pm
by Lantis
Most routers aren’t capable of running a proxy server at any reasonable throughput

Re: How to prevent users from typing in direct IP addresses & accessing OpenDNS-blocked sites?

Posted: Sat Jan 13, 2018 4:29 am
by tapper
You could look in to running a proxy on a R-Pi. Even then tho the R-Pi has a slow network connection. The Ethernet port is over the USB.