Jump to content

Recommended Posts

Posted

I am wondering what everyone's thoughts are on the best practice for preventing pupils from downloading files from the internet. I got into one of my primary schools this afternoon to find a pupil had managed to download something that appeared in Sophos Enterprise Console as "Adware or PUA". Binkilandupdater.exe to be precise.

It is a Server 2012 (NOT R2) domain with Windows 7 x86 clients. I think the best scenario would be to allow download of images such as jpeg and png but prevent downloads of .exe files.

Posted

I've got rules on the firewall (Sophos UTM) to stop users downloading certain file types, stricter for students than staff...

 

I also use Impero to fine-tune the rules depending on location etc.

 

Do you manage your own firewall?

Posted
Have you thought about using file resource manager on your server to block saving certain file types? I use resource manager on my server to stop any potentially malicious files being saved that I wouldn't like on the server. You can set the path of which resource manager takes effect. For example have mine set to \\Server\RedirectedFolders\Students\* and then all subfolders inside here. This prevents the files being saved anywhere in here.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...