This is a static archive of our old Q&A Site. Please post any new questions and answers at ask.wireshark.org.

Block web sites on a lan platform

1

Hi

Can I use Wire Shark to block certain web sites?

I want to use it in an office environment and block certain sites that are not work related.

Jani

asked 10 Oct '11, 02:43

Jani%20Louw%20Fourie's gravatar image

Jani Louw Fo...
16113
accept rate: 0%


One Answer:

2

No, you can't. Think of Wireshark as a passive diagnostic tool, just like a doctor uses a stethoscope to listen to a patients body. It's doesn't affect it, it just listens.

What you need is to force your surfers to use a filtering proxy, meaning that they can't surf directly anymore but need to ask a web proxy for whatever they want. On that proxy, you can then filter content.

Take a look at Squid for example: www.squid-cache.org

answered 10 Oct '11, 02:49

Jasper's gravatar image

Jasper ♦♦
23.8k551284
accept rate: 18%

Hi Jasper

Thank you for your help!

(10 Oct '11, 04:45) Jani Louw Fo...

BTW
You can use Wireshark to create ACL entries.
Go to:
- Tools
- Firewall ACL Rules

This allows you to create command-line ACL rules for many different firewall products, including Cisco IOS, Linux Netfilter (iptables), OpenBSD pf and Windows Firewall (via netsh). Rules for MAC addresses, IPv4 addresses, TCP and UDP ports, and IPv4+port combinations are supported.
http://www.wireshark.org/docs/wsug_html_chunked/ChUseToolsMenuSection.html

(10 Oct '11, 11:47) joke