Jump to content
EduGeek EdSec 2026 is Go! 27th Oct in Derby! Join us for a day of EdTech security focused talks, networking, and an evening social ×

Recommended Posts

Posted

Just wondering on another network I use, I have a couple of admins who I would like to see what they are doing, e.g when on the internet for example shopping etc, now they don't go through my internet filtering/monitoring, obviously don't create a profile in the staff profiles area on the server,(or do they create a profile somewhere) so how do i find what they have been going on? is there a way even if they have deleted there temp internet files, cookies etc, is there a way i can look deeper?

 

Cheers

Posted
Does an appropriate senior level manager have sufficient grounds to investigate and have you been instructed to do so? You certainly can't monitor people just because you wonder what they are up to.
Posted
Does an appropriate senior level manager have sufficient grounds to investigate and have you been instructed to do so? You certainly can't monitor people just because you wonder what they are up to.

 

I see you point, but really im just wondering how to do it if I was asked to, bassically im not sure how to do it, I just wanted to know if it is possible and how I would go about it.

 

I haven't been asked to......yet, but best be prepared

Posted

Your best bet is get some camouflage gear, potted plants, face paint etc and put them near the PC. Then you can hide behind there with a camera.

 

Or you could not do it!

Posted
1st question should be why are they not going through the internet/monitoring system? No-one should be exempt during normal use. Not even admins!
Posted

In GPO you could set it so that temp files and all the business can't be deleted unless by a spefic staff member (i.e. yourself) so that you can log onto a machine (or \\machinename\drive$ it) and look into the folders, but as DMcCoy pointed out, you're probably best not doing anything unless given a directive by SLT/SMT (whatever term your place uses).

 

Obviuosly, keeping an eye on what Students are up to is generally allowed to ensure they're not using proxy sites to look at unwanted stuff etc etc, but with staff, you need to be very careful what you do.

 

So the answer is yes, there are ways and means, but is it really required at the moment? And if you think it is, get the backing of the SLT/SMT before you do anything else you could end up a certain creek without a paddle yourself!

 

:cool:

Posted
1st question should be why are they not going through the internet/monitoring system? No-one should be exempt during normal use. Not even admins!

 

but yeah .. this .. you should all sign up to a specific AUP I'm guessing, and therefore should all be using the same internet ..

Posted
but yeah .. this .. you should all sign up to a specific AUP I'm guessing, and therefore should all be using the same internet ..

 

I'm not quite sure what you mean.

 

All staff should adhere to the AUP including admins. Admins may have a privilage granted to them which would allow them to circumvent policies in place for the purpose of a specific task, however if they are abusing the system and mis-using the privilage then they should be taken to task.

 

This is for the protection of the admins as much as anything else.

Posted
You certainly can't monitor people just because you wonder what they are up to.

 

You can if the AUP says so, and people know you're doing it. School PC using a school Internet connection, therefore school can monitor it.

 

There is a greater issue of professional trust here, though - if you feel that some of your colleagues aren't working properly, it might fall to the HT to act, not you.

Posted
You can if the AUP says so, and people know you're doing it. School PC using a school Internet connection, therefore school can monitor it.

 

There is a greater issue of professional trust here, though - if you feel that some of your colleagues aren't working properly, it might fall to the HT to act, not you.

 

Just because you have an AUP, it doesn't mean you can do what you want WRT privacy laws and personal data. There needs to be a good reason to monitor.

Posted
Just because you have an AUP, it doesn't mean you can do what you want WRT privacy laws and personal data. There needs to be a good reason to monitor.

 

Actually, RIPA simply requires you to post a notice on the machines to cover yourselves. Our notice states:

 

"Use of the Internet and e-mail via this machine is monitored for violations of acceptable use. Somerset County Council monitoring and "Blah Blah School" will monitor virus activity, unsuitable language use in e-mail and use of banned applications such as file-sharing software. Somerset's Internet Service Provider the South West Grid for Learning monitors Internet use including attempts to access illegal websites. All users should be aware that this monitoring is taking place.

Violation of the Acceptable Use Policy may result In suspension of Internet AND e-mail accounts AND In some cases disciplinary action may be appropriate including In extreme cases dismissal For gross misconduct AND criminal proceedings.

The Internet is a wonderful tool For learners but must be used responsibly. Somerset County Council AND the South West Grid For Learning have a duty to ensure that all users of their systems follow rules For acceptable Use. Users are required to act responsibly when using Internet systems so that all can enjoy safe Internet access. By clicking accept below, you agree that you understand monitoring is taking place AND that your Use of this system will be responsible."

Posted
Just because you have an AUP, it doesn't mean you can do what you want WRT privacy laws and personal data. There needs to be a good reason to monitor.

 

Good reason #1 - ensure appropriate use of resources and equipment

Good reason #2 - ensure staff aren't messing around (same reason loads of companies block Facebook)

Good reason #3 - the equipment is school owned, and the school can do as it likes with it, if that includes monitoring what people choose to do with it, so be it.

 

I don't think I'm in breach of any privacy laws by monitoring what staff are doing on the school network. If they are worried about personal data, then they are welcome to not use the school server to back up their holiday photos. Obviously, I don't spend my days going through staff MyDocs folders or Internet logs, but I don't believe I'd be in the wrong if I chose to look, especially if there was suspicion of some form of misconduct, as there is in the OP's situation.

Posted
is there a way even if they have deleted there temp internet files, cookies etc, is there a way i can look deeper?

 

Cheers

 

Find their index.dat files in their local profile and download something to read them...

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...