I'm looking for an effective way to block websites such as Facebook on the Juniper SSG 20.
For those who have succeeded in doing this, please contribute your steps/workaround.
What I've done:
Create a group list with the commonly used IP addresses of facebook. Next, created policy from Trust -> Untrust blocking these IP addresses. Applied policy above default any any.
I'm still getting issues with https requests such as login.facebook.com which still seem to be getting through even though the dns lookup shows that I'm blocking that IP.