Jump to content

Recommended Posts

Posted

Re: examstudies.com

 

Look like the complaints have had an impact I get:

 

Service Temporarily Unavailable

The server is temporarily unable to service your request due to maintenance downtime or capacity problems. Please try again later.

--------------------------------------------------------------------------------

 

Apache/1.3.33 Server at http://www.examstudies.com Port 80

 

 

HAHAHAHAHAHAHAHA !

Posted

Excellent .

 

We're picking up about 10 a day at least whan we vnc into the machines a lunch and break. I made a not of a couple of sites that have lists of them. I think one had over 750 listed. Unfortunatly the RM SafetyNet filtering that we use cannot import URLs so we have to put them in manualy. A job for the tech I think :D

 

I think we'll put a Smoothwall box in between the RM SmartCache (spit) and the external to enable a more customisable upstream proxy.

 

As mentioned earlier if they stop using the obvious words like proxy, myspace, bebo etc they'll be a lot harder to pick up.

 

HBJB

Posted
They are now starting to use foreign language proxie sites such as chinese here but are blocking them as and when we find them.

 

Ditto

 

We're thinking about setting up a (secure) site with a list of said proxies that can be added to by people like us that need to catch these sites. Any takers?

 

HBJB

Posted

Adding to this... does anyone know of a way to block website access by IP address using ISA Server?

 

The recent problem that I've had isn't proxy bypass sites (yet) but the use of online nslookup-style services to find the IP address of a blocked site.

Posted

Hi Ric,

 

I'm assuming you want to block sites by using the site's IP address i.e. http://www.bbc.co.uk --> 212.58.224.115

 

You need to create a computer set called say Blocked Sites By IP and then add entry for each website's IP.

 

The create a Deny rule at the top which goes something like this:

 

Deny HTTP, HTTPS from Internal, LocalHost, etc TO the Computer Set you created ealier i.e. Blocked Site by IP.

 

This will then block all access (on using protocols HTTP, HTTPS) to the IPs specified in the Computer set you created.

 

Another way to do its to create a host file on the isa server and then in the host file enter the sites' name i.e. http://www.bbc.co.uk followed by few spaced and then the ip address 127.0.0.1 so it will never go the website. Also the isa server queries the host file first before using the DNS.

 

HTH,

 

Ash.

Posted
@ashok: Thanks for your suggestion but I know that I can block using the sites' IP addresses. However, I would ideally like to block any request that is for an IP address so that ONLY DNS names can be entered. I have a suspicion that this cannot be done :(
Posted
If that is his real name, and he has already been found out before with http://www.alevelwork.com, then he is very very stupid to post his details on there.

I (the owner) didn't post it.

 

Re: examstudies.com

 

Look like the complaints have had an impact I get:

 

Service Temporarily Unavailable

The server is temporarily unable to service your request due to maintenance downtime or capacity problems. Please try again later.

--------------------------------------------------------------------------------

 

Apache/1.3.33 Server at http://www.examstudies.com Port 80

 

 

HAHAHAHAHAHAHAHA !

Complaints? That error has nothing to do with any complaints, the server has been overloaded with visitors so I'm upgrading to a new server.

Posted

Not a problem Jak ... the fact that we (and your college) and a company that produces filtering systems can track a large number of things means that as fast as you set them up we can knock them down, does not bother us ...

 

It is interesting to see someone of your talents bending the system, rather than trying to work with it. Out of interest, how many people do you regularily have using your site? The shoutbox seems a bit dull really ... but I suppose people will use any method possible to chat and avoid work ... heck ... we do in here nearly all day :-)

Posted

Well the other sites I use, I havn't heard of being blocked, well yet at least.

Trying to work with it? How do you mean.

 

Admittedly I only made the site(s) for me and a few mates, but it took off. I now typically receive 15k hits per month on all the sites combined. Well whether they got blocked or not won't impact me so much, I enjoy working on them, make a profit from the adsense, and it's going to be impossible to have it blocked at every institution.

 

Yes, the shoutbox at times does get "dull" but it's just a way for people to chat I suppose.

Posted
Well the other sites I use, I havn't heard of being blocked, well yet at least.

Trying to work with it? How do you mean. To be fair I have to "bend the system" my college has pretty much all pages except a select few blocked, which doesn't seem fair considering.

 

You seem to forget the human factor in all this ... without getting into a deep and meaningful discussion about walled gardens and so on, in spite of however sensible we presume users are going to be about using the 'Net ... you will still get those that abuse it and it means things end up getting locked down. At my place, if it was just a case of students (and staff) wanting to check their hotmail account or put a new message on their myspace then that would be fine ... but it is those users who would rather spend a whole morning playing games rather than getting some work done that ruin it for everyone.

 

Admittedly I only made the site(s) for me and a few mates, but it took off. I now typically receive 15k hits per month on all the sites combined. Well whether they got blocked or not won't impact me so much, I enjoy working on them, make a profit from the adsense, and it's going to be impossible to have it blocked at every institution.

 

That's how this place started ... just a handful of people ... in one area of the country ... and a year later it is scary.

 

That is a good hit rate there ... do you find it is a mix of UK and US users? Have you had any impact from EU users (who have less filtering by default anyway)?

 

Yeah ... you will never be blocked from everywhere and the coding can be fun ... but a friendly word of warning to you (and the students from my place who I know have been reading this thread) ... if doing this sort of thing is in breach of your college's AUP then you could end up is serious trouble ... even booted out. I respect the time and effort you have put into doing this but be careful ...

 

Yes, the shoutbox at times does get "dull" but it's just a way for people to chat I suppose.

 

You youngsters ... chat and work at the same time ... I wish I could multi-taks like that. ;-)

Posted

I agree, all I'd like to do is just check my e-mails once in a while and when I'm on lunch break be able to use the computers and just chat with friends on MSN and read up on digg (which is blocked for some reason).

 

I admit, I don't play games, use myspace etc I go to college for my education but there are a few people who spend alot of the time doing unproductive things, but if they are adamant not to do their work, they'd still be searching, and find, a way to be able to be able to do what they want (play games etc) which is going to take up much more of their time.

 

The stats for my sites are mainly all from the USA, which is weird. Examstudies.com are as follows:

Tuesday Dec 5

435 - 75% - United States

116 - 21% - United Kingdom

5 - 1% - Australia

4 - 1% - Canada

%%Unknown

On the other sites I have a massive amount of hits from UAE and China, which I presume is because of the Gvt. national internet censorship.

 

I have read the college's misuse policy and although it isn't very detailed they don't mention anything about bypassing, filters etc. but in a worse case scenario if I am kicked out I already have a placement at University.

 

Of course it's your jobs to block sites etc to protect the networks and that but you need to see things from the student's point of view as well, which my techies don't seem to do. :wink:

Posted

Of course it's your jobs to block sites etc to protect the networks and that but you need to see things from the student's point of view as well, which my techies don't seem to do. :wink:

 

Hey,

 

Having only recently come out my college myself (I am 20 years old and now work as an IT Technician at a couple of schools) I can easily speak on behalf of both sides here.

 

I was a student at solihull sixth form college and admittedly I was one for trying to bypass the filter. I was a bit of an idiot really, at one point I even sent a message saying 'hello world' across the entire network (this was before service pack 2 was released and patching that). They found out it was me of course, but fortunately the technicians found it funny and I didn't get into trouble.

 

But now working on the other side of things, I have realised now that if a student accesses something on a education network that they shouldn't have done, the blame really does lie with the person responsible for that network and they could possibly lose their job, regardless of how well they tried to lock down the network. They blocked hotmail at my college, not to stop the students accessing their e-mail (as I first thought) but because the technicians were fed up of people downloading viruses that keep going through the hotmail servers and causing them hours of work.

 

I think at the end of the day they'd rather be sure (some people even go to the extent of blocking all sites by default and whitelisting sites they want students on, though this is rare) simply for their jobs sake. If the students can't go without their e-mail or myspace for a few hours a day then it is them that has an issue, not the other way around. I can appreciate what you have done though, i'd have done the same a couple of years back if I had the time. You really do have to work on the other side of things to understand.

 

I would post more, but its late and I need to go to bed.

 

Take care!

Posted

Examstudies: it is not a student's right to visit any website they want to using a school's or college's internet connection, it is a privilege.

 

We don't filter sites just for the fun of it or because we don't like you, it's partly down to how appropriate certain websites are to education, quality of service, and netwok security.

Posted

Jak> I really like that site, very creative, however if you'd make it look more like, say, the bitesize site, it would be easier for the kids to hide.

 

My main annoyances with websites are the flash games, as they slow down our already stupidly slow connection (SWS filtering).

Posted

I used to be quite the troublemaker when at school. I secretly managed to install netbus on every single machine in the network once, and was fully aware of how to bypass filters.

 

Now through a massive stroke of irony I work as an IT Tech in a school and can understand the sheer danger of such actions.

 

Examstudies: As an 'underground' site, what is your policy if someone uses your services for illegal actions? For instance what would you do if somebody uses your services to illegally and 'anonymously' surf for child porn? Shrug it off?

 

Now who's to blame?

 

You? The end user?

Or perhaps it is us, the IT Techs who are supposed to stop people like you from allowing the end user to do so?

 

Think about that for a while and consider the side-effects of your website. It might be cool if you do it privately and keep it a secret among yourselves for your own personal use, but once you unleash it to the unsuspecting public a lot of control slips out of not only our hands but your hands too and that is a most dangerous thing for anybody.

 

Edited to make more sense!

Posted

friez> im assuming that was aimed at jak/examstudies

 

Friez's point is also one of the reasons that Tor nodes are frowned upon by most web server providers.

 

You proxy doesnt actually work here as it all gets filtered by SWS, so it'll allow a blocked url, but then the content filter will block it for having questionable words on it.

 

A better approach is to use SSH to connect to a machine offsite and point your browser through the tunnel, however that it also blocked here, even when routed via port80 (I hate the filter more than the kids as I have to put up with it as well)

Posted
Examstudies: it is not a student's right to visit any website they want to using a school's or college's internet connection, it is a privilege.

 

We don't filter sites just for the fun of it or because we don't like you, it's partly down to how appropriate certain websites are to education, quality of service, and netwok security.

 

Examstudies: I think that just about says it all. It's not your internet connection so if the person/organisation who does own it says you can't use it to do something, then it's not right to do it anyway or help others to do so.

 

If your attitude is "well I have a placement at university anyway" so it doesn't matter if they kick you out... well I just hope your university never see that attitude for your sake.

Posted

Ok so I am now facing explosion from college (and even police action) due to the person who made a complaint. I don't see how this can be justified considering that it is MY personal website which I made home and isn't aimed at any college in particular. I don't use it at college or any other proxy.

My University placement is now at jeopardy. Why couldn't you have talked to me first about it?

 

They way I think of it is, and it over the top I know, if a student goes onto a pornography website, does the college then have the right to complain to the owner of the porn site and say "Hey, look I don't like your site, take it down or facing the consequences". This seems completely unfair.

 

I completely respect what you admins do, and my site isn't there to annoy you and defeat what your doing. I saw a similar site (allaboutabe.com, another to block if you havn't already) and ran with the idea as I heard alot of people thought it was great and just jumped on the bandwagon.

 

There are thousands of proxy sites out there, and what I'm doing is not illegal at all, I just offer a free service to who ever may want to use it.

 

Migdet: Thank's I already know about the SSHing to a VPS tunnel technique, but don't see the need to use it as like I said I'm at college to learn.

 

Friez: The blame will be soley upon the user, if it is their intention to do something illegal then they should face the blame. I monitor my logs regularly and nothing like that happens, but if it were IP's are logged and they would be reported. To be fair, the only sites that are accessed are myspace, bebo and ebay really.

Posted
Ok so I am now facing explosion from college (and even police action) due to the person who made a complaint. I don't see how this can be justified considering that it is MY personal website which I made home and isn't aimed at any college in particular. I don't use it at college or any other proxy.

My University placement is now at jeopardy. Why couldn't you have talked to me first about it?

 

At the risk of sounding judgemental on this ... now you understand how serious it is. If you develop a site or software that can be specifically used by people to commit illegal activities then you are in trouble ... yes, there is case law that goes either way (so no conclusive right or wrong) but there is a clear line that say "you may be in trouble if you get involved in this".

 

Ok, you are in trouble at your college ... you are a bright lad and approaching the Network Manager to say "fair cop, what can I do to improve my standing with you?" might not be a bad idea ...

 

I would say that there are a fair number of people in here that may have stratched, bent or broken the rules in the past ... and learnt from it. Don't let it get you down, just learn...

 

They way I think of it is, and it over the top I know, if a student goes onto a pornography website, does the college then have the right to complain to the owner of the porn site and say "Hey, look I don't like your site, take it down or facing the consequences". This seems completely unfair.

 

If I know that a pornography site has been set up by a student in another school and is being viewed by students in my school then yes, I would ask that school to check that it wasn't being done within school time as the school could get into serious trouble (allowing the distrubution of materials under the Obscene Publications Act). As mentioned by other members ... if something dodgy is going on in a college then it is up to that college or school to do what they can to sort it. If it is outside of their remit but still something you should be warned about then take it in the chin as helpful advice.

 

I completely respect what you admins do, and my site isn't there to annoy you and defeat what your doing. I saw a similar site (allaboutabe.com, another to block if you havn't already) and ran with the idea as I heard alot of people thought it was great and just jumped on the bandwagon.

 

There are thousands of proxy sites out there, and what I'm doing is not illegal at all, I just offer a free service to who ever may want to use it.

 

How the site gets used may be though ... and carefully think about the idea that by opening up unfiltered, unprotected websites you may be helping to propogate viral code within your college or other schools and colleges.

 

Migdet: Thank's I already know about the SSHing to a VPS tunnel technique, but don't see the need to use it as like I said I'm at college to learn.

 

Friez: The blame will be soley upon the user, if it is their intention to do something illegal then they should face the blame. I monitor my logs regularly and nothing like that happens, but if it were IP's are logged and they would be reported. To be fair, the only sites that are accessed are myspace, bebo and ebay really.

 

Fair enough ... at least you are a diligent admin of your site ... unfortunately so many of the others aren't. I know of one student (at my last school) who ended up in court as BT had the book thrown at him as he left an FTP server completely open and unchecked (knowingly) to allow friends to share warez ... but then it was also used by a ring to swap child porn around. He was lucky as the evidence just pointed to him being a stupid idiot who was a script kiddie and a waste of space ... but he was very lucky.

Posted
Ok so I am now facing explosion from college (and even police action) due to the person who made a complaint.

 

Sounds OTT to me. I guess moral of the story is not to advertise your 'services' to the very people who are trying to prevent such things. just stick to msn/gootube.

Posted

 

Ok, you are in trouble at your college ... you are a bright lad and approaching the Network Manager to say "fair cop, what can I do to improve my standing with you?" might not be a bad idea ...

 

I would say that there are a fair number of people in here that may have stratched, bent or broken the rules in the past ... and learnt from it. Don't let it get you down, just learn...

 

:)

 

Do not let anybody on this forum fob you off - your site and other sites like it, keep our work interesting and challenging, and although I hate to admit it, some of us old farts learn more about the your generation trying to keep students off these sites.

 

But now you understand how serious this is.

 

I for one hope all goes well and that you learn something from this, get a place in Uni etc. etc

Guest
This topic is now closed to further replies.



×
×
  • Create New...