block website with pix firewall

Posted on 2007-10-04
Last Modified: 2008-08-08
Hi all does anyone know how to use the pix firewall to block some website.
I dont want to have to build a proxy. I heard that there was a way to block website from the pix firewall.

Thanks all.
Question by:xcsvx
    LVL 12

    Accepted Solution

    You can do either
    If you have an outside ACL, just add this line to the top somewhere
    access-list Outside-in-ACL deny ip host [offending IP] host [ExternalIP]

    Or on the inside interface
    access-list Inside-out-ACL deny ip any host [offending IP]
    access-list Inside-out-ACL permit ip any any

    access-group Inside-out-ACL in interface inside

    You can expand the inside ACL to permit any traffic that you explicitly want to allow out (I recommend this) rather than allowing everything out.
    LVL 12

    Expert Comment

    Any luck with this?

    Expert Comment

    Ip Addresses normally changes time to time on websites?
    Can we configure pix to use a dns server?
    LVL 1

    Expert Comment

    Force accepted.
    Experts Exchange Moderator

    Featured Post

    6 Surprising Benefits of Threat Intelligence

    All sorts of threat intelligence is available on the web. Intelligence you can learn from, and use to anticipate and prepare for future attacks.

    Join & Write a Comment

    In this tutorial I will show you with short command examples how to obtain a packet footprint of all traffic flowing thru your Juniper device running ScreenOS. I do not know the exact firmware requirement, but I think the fprofile command is availab…
    Hi All,  Recently I have installed and configured a Sonicwall NS220 in the network as a firewall and Internet access gateway. All was working fine until users started reporting that they cannot use the Cisco VPN client to connect to the customer'…
    In this sixth video of the Xpdf series, we discuss and demonstrate the PDFtoPNG utility, which converts a multi-page PDF file to separate color, grayscale, or monochrome PNG files, creating one PNG file for each page in the PDF. It does this via a c…
    This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor ( If you're looking for how to monitor bandwidth using netflow or packet s…

    729 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    17 Experts available now in Live!

    Get 1:1 Help Now