MkII Posted May 19, 2007 Posted May 19, 2007 Good way of using it but there is a cheaper way of doing that. we're all ears
wesleyw Posted May 19, 2007 Posted May 19, 2007 Well for a start your proxy would log these site hits I should think. I've trialled it but again the cost was high and our need isn't lol. If i becomes apparent that we need something like this then I may decide to change my mind. Wes
mattx Posted May 19, 2007 Posted May 19, 2007 we're all ears Local or remote Cache, history either from local or remote cache or proxy server etc etc. On our box we can run reports for specific users or sites etc. Getting back to Securus, I am wondering how many SMTs / heads have actually fallen for the tactics they use and also how many have actually gone over the NM / ICT Tech actual advice....
Geoff Posted May 19, 2007 Posted May 19, 2007 Local or remote Cache, history either from local or remote cache or proxy server etc etc. On our box we can run reports for specific users or sites etc. Infact, as the site in question is an Invasion Power board based forum, it's quite easy. You could grep your logs for people invoking the reply form and just pull that data. grep ihurtmyself.*act.post /var/log/dansguardian.log > ~/ihurtmyself_postings.txt Of course you can improve on this examples with sed, awk and friends to get something a little neater (maybe even pulling the urls automatically with imagemagik or lynx and doing some post processing).
Espada Posted May 19, 2007 Posted May 19, 2007 But with Securus we get a screen shot showing what they wrote. Including any PMs. Great for child protection.
Geoff Posted May 19, 2007 Posted May 19, 2007 You know the time of the posting from the proxies access log (see my previous post). You can read the forum thread. Each post has a time associated with it. Therefore you can work out which post is theirs.
Espada Posted May 19, 2007 Posted May 19, 2007 But you still don't get PMs and there are things where they are likely to confide in one or two people they know from the board. We already know their user names so we can monitor their postings with ease.
Geoff Posted May 19, 2007 Posted May 19, 2007 That's not a big deal either. It's just a case of cross referencing the url with the squid store.log and pulling the relevant items from the on disk cache.
ICTNUT Posted May 19, 2007 Posted May 19, 2007 I have to agree with Geoff on this. Yes we all want to ensure that those at risk are monitored and reported to the correct teams but at a cost of 3, 4 or 5k is way to high when you can do it for free with the tools you most likely have already. Yes Securus does some ofthe work for you but you still have to go through the logs to get, the screenshots, you need. I currently use 3 layers of content filtering DansGuardian, ISA 2004, and a Bloxx appliance all of which give me all the information I need when I cross refernece the custom logon database I have for students logon/logoof activity. This allows me to pinpoint and confirm exactly who accessed what, from where and when. OK so i don't have a screenshot to go with it but the proof is there, and anyway just becouse you have a screenshot does not mean anything more than if you don't, students will always claim that someone used thier logon details to try and get out of it.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now