Jump to content

Recommended Posts

Posted
What don't you like about the inbuilt reporting in the SG UTMs? I've been pretty happy with it - it emails me a list of all "extremism" hits and who did it etc... each week, for example.

It's not granular enough for my needs. A Daily/Weekly/Monthly report of one of the 5 inbuilt reports (of which "extremism" isn't one for me... unless you mean as included in the "Policy Violators" report(?) which is far too generic for my needs... finding stuff is like finding a needle in the haystack... and the PDFs aren't text searchable for me either) doesn't cut the mustard here. FastVue gives us realtime alerts, and the reports you can run or schedule are very granular.

Posted
It's not granular enough for my needs. A Daily/Weekly/Monthly report of one of the 5 inbuilt reports (of which "extremism" isn't one for me... unless you mean as included in the "Policy Violators" report(?) which is far too generic for my needs... finding stuff is like finding a needle in the haystack... and the PDFs aren't text searchable for me either) doesn't cut the mustard here. FastVue gives us realtime alerts, and the reports you can run or schedule are very granular.

You can make your own reports - which is what I have done. Took a few minutes to set up how I wanted.

Posted

@AMLinington

 

A very passionate response of SW. I've been a user for 15 years (ish) so I obviously like it but reporting has been promised a overhaul for longer than I remember... and the safeguarding logs are nowhere near what was shown to me in leeds 12 months ago. If they came out and said our reporting wouldnt improve due to the brilliant filtering. fine...

 

I'll be doing a pro/con evaluation of all the products I look at.. as well as my time learning a new product if I move.

Posted
You can make your own reports - which is what I have done. Took a few minutes to set up how I wanted.

There is that. But I find it advantageous to know that little Johnny has googled "how to commit suicide" in realtime rather than in a summary email at 12:46am... :/

I'll have to take a closer look at the custom ones tho. (I do use the Daily Top10 already). Thanks.

Posted
@AMLinington

 

A very passionate response of SW.

 

It is probably worth reiterating that I do not work for Smoothwall anymore. I was made redundant and discarded. So my comments are based on my own opinions of the product and not out of loyalty or because they are my employer.

 

As I said, I have a lot of respect for the Smoothwall Product and for the Support and Development teams, but objectively, having been 'behind the scenes' I am aware of the challenges and can provide some relevant insight. But my comments should not be construed as representing Smoothwall in any way.

Posted
Well - I certainly agree with the conclusion. Assess the products out there and evaluate their strengths and weaknesses. It would seem to me that too many schools take a look at what others around are using - and use that as an argument for implementing it. I thought SW did better than most to address the prevent strategy....and provided a hardware firewall with the ability to provide relatively seamless BYOD use as it acts as a radius and DHCP server. And we were keen on a solution which could do reverse proxy. Yes it has limitations,....and I am currently struggling to get lots of APPS to work for mobile devices without either making them "invisible" by bypassing https inspection for them, or blocking them - or risking holes that allow users to bypass authentication. Its good to prevent users from being able to download potentially infected word macro files, but simply blocking all word files is not so useful. And it would have been nice if files from "official" sites like exam boards and government were not blocked by default. Perhaps they should take a look at the "exceptions" that lots of schools end up adding and after inspecting them (and making any appropriate changes) have a "school configuration" that is likely to meet the needs of schools without lots of school based customisations.
Posted

Hi Simcfc,

 

I'd be happy to provide a quote and some options for you. If you'd like a demo, or a chat with one of our technical team, no problem.

 

DM me your details if you'd like a quote.

 

kind regards

 

Lee

Posted

+1 for iBoss

 

We were using Smoothwall appliance for last three years, now moved to iBoss which is much better.

We used to use proxy when using SW, now with the iBoss no need to push the proxy settings. Few application had issue connecting via proxy.

Posted

I am a relatively new user to smoothwall - and so still getting the hang of it. I thought the reporting looked fine - no worse than Websense (now forcepoint) that I was used to. And I liked the Safeguarding provision a lot.

 

But...the safeguarding reports don't have the customisation that the main reports have (didn't realise that earlier ).....so I would quite like to email reports to appropriate Heads of year which ONLY have the reports for the users in that year group.

 

Don't understand why safegiarding section doesn't have the customisation tools available elsewhere.

 

...and I'd like to be able to clear up some of the "clutter" to make the reports more understandable/readable without the multiple line quoted content.

 

And currently I'm forever having to "unblcok" or allow sites - such as downloads from exam boards - which are clearly going to be safe for schools....

 

...oh...and APPS on mobile devices are a bit of a nightmare - I seem to have to practically allow a list of URLS for each APP to bypass https inspection or authentication to allow them to work.

 

But I'm not saying the competition is any better....because I looked at several of those. And I liked the fact that BYOD works nicely with it using it as a Radius server and DHCP server....and I like the reverse proxy....and the load balancing....

Posted
Moving from SW to Sophos in a couple of weeks. Was impressed by the demo we had (UI much better than SW) and the price was sensible (SW quote was just silly).

 

I sought out some honest feedback from Sophos users and all were very positive.

 

Had a demo of Sophos recently. Looked great. Stuck with Smooth' after hammering them down on the price and to avaoid the hassle. Will change next time around though.

Posted
And it would have been nice if files from "official" sites like exam boards and government were not blocked by default. Perhaps they should take a look at the "exceptions" that lots of schools end up adding and after inspecting them (and making any appropriate changes) have a "school configuration" that is likely to meet the needs of schools without lots of school based customisations.

 

Hi @AlanD - Usually when you first set up your Smoothwall you're presented with the option to chose your default web filter policies - selecting Education from this list will create three allow policies, for 'Education and Reference', 'Academic Institutions', and 'Government' - these should cover the "official" sites you're referring to. If you didn't/haven't seen that page then I'd recomend allowing those three categories which should reduce any overblocking issues.

 

We usually (almost always) categorise exam related sites (such as exam boards) as 'Education and Reference' but it's possible we've missed some - if you (or anyone else) is experiancing any issues with exam related sites then please PM me so we can work to resolve these issues :)

 

Chris

Posted

Smoothwall has been fine for us too but yes reporting awful. I ran a custom report on an IP address 10.x.x.x between 01/02/17 to 24/02/17 and it crashed twice before it produced the report which I converted in PDF, 61Mb in size. Not a presentable report to higher management. I also struggle to setup reports be send to email directly.

 

I am counting on Inverness to fix some of the major issues including reporting. At the end of the day higher management and parents (if they ask for it) need simple to understand reports and quick, not in 5hrs or more.

 

Kindest regards

 

J.

  • Thanks 1
Posted
Smoothwall has been fine for us too but yes reporting awful. I ran a custom report on an IP address 10.x.x.x between 01/02/17 to 24/02/17 and it crashed twice before it produced the report which I converted in PDF, 61Mb in size. Not a presentable report to higher management. I also struggle to setup reports be send to email directly.

 

I am counting on Inverness to fix some of the major issues including reporting. At the end of the day higher management and parents (if they ask for it) need simple to understand reports and quick, not in 5hrs or more.

 

Kindest regards

 

J.

 

Better reporting is coming ;)

Posted (edited)
I still worrying about a Sophos UTM being as bad as hosted light speed was for not stopping the wrong stuff and having to unblock other stuff. Also does it do a good enough job for prevent alerting? Edited by nicholab
Posted
I had a long conversation with a Sophos guy (sales so take it with a pinch of salt) but according to him the next release of Sophos due Easter will have useful safeguarding reporting that you can actually use and hand out. Also mentioned keyword filtering
Posted
I had a long conversation with a Sophos guy (sales so take it with a pinch of salt) but according to him the next release of Sophos due Easter will have useful safeguarding reporting that you can actually use and hand out. Also mentioned keyword filtering

 

If you could PM me his email address that would be most useful.

Cheers

Posted (edited)

@Simcfc73 We had Sophos in yesterday, demonstrating and explaining all about their Sophos XG Solution; and how it can expand and support Sophos Cloud, (We are currently using Sophos Enterprise Console). The GUI was definitely a breath of fresh air (compared to our existing Smoothwall) but of course, it's the features that are most important, and that it is able to meet the demands and requirement technically, from a security, detection and preventative point of view as well as our DSL's requirements, in respect of KCSIE / PREVENT.

 

The 'heartbeat' function was very good, for protecting (remote) devices not connected directly to the School's Network; but would still be protected and filtered as per School-based filtering; and how device(s) can be blocked, or limited if security / AV level is not current etc.

 

Additionally, we have been researching SonicWALL and Fortinet as well as continued discussions with Smoothwall on how their product (and reporting) is going to be updated and improved over the next few releases etc.

 

Despite the many meetings and time spent researching, it is proving to be a very worthwhile exercise in respect of being brought up to date with the latest (and future) developments and features of the various potential products etc.

Edited by MYK-IT
Posted
If I was looking at buying any solution, I'd almost certainly arrange a trial and that the purchase is dependent on the success of the trial. Did that with SW and it was all sorted, configured and working before we spent a penny.
Posted

I have the ISO to make a virtual machine so will have a play with that. Shame it hasnt got the safeguarding and keyword stuff on that he mentioned.

 

The deal they sent me was very very tempting though.. but I have to buy it by the end of this month.

Posted (edited)

We've recently removed our web filtering from a dedicated appliance to being handled purely by our Palo Alto Firewall.

Best decision we've made - our internet speeds have increased dramatically. Our previous products (Bloxx and CensorNet, both Squid proxies) seemed to be a bottle neck.

 

We did look at Smoothwall, but the quote was more than we had budgeted, especially when we're already paying for a URL subscription from Palo Alto.

Edited by Arcolite

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...