Jump to content

Recommended Posts

Posted

Well for a start your proxy would log these site hits I should think. I've trialled it but again the cost was high and our need isn't lol. If i becomes apparent that we need something like this then I may decide to change my mind.

 

 

Wes

Posted
we're all ears

 

Local or remote Cache, history either from local or remote cache or proxy server etc etc. On our box we can run reports for specific users or sites etc.

 

Getting back to Securus, I am wondering how many SMTs / heads have actually fallen for the tactics they use and also how many have actually gone over the NM / ICT Tech actual advice....

Posted
Local or remote Cache, history either from local or remote cache or proxy server etc etc. On our box we can run reports for specific users or sites etc.

 

Infact, as the site in question is an Invasion Power board based forum, it's quite easy. You could grep your logs for people invoking the reply form and just pull that data.

 

grep ihurtmyself.*act.post /var/log/dansguardian.log > ~/ihurtmyself_postings.txt

 

 

Of course you can improve on this examples with sed, awk and friends to get something a little neater (maybe even pulling the urls automatically with imagemagik or lynx and doing some post processing).

Posted
You know the time of the posting from the proxies access log (see my previous post). You can read the forum thread. Each post has a time associated with it. Therefore you can work out which post is theirs.
Posted
But you still don't get PMs and there are things where they are likely to confide in one or two people they know from the board. We already know their user names so we can monitor their postings with ease.
Posted
That's not a big deal either. It's just a case of cross referencing the url with the squid store.log and pulling the relevant items from the on disk cache.
Posted

I have to agree with Geoff on this.

 

Yes we all want to ensure that those at risk are monitored and reported to the correct teams but at a cost of 3, 4 or 5k is way to high when you can do it for free with the tools you most likely have already.

 

Yes Securus does some ofthe work for you but you still have to go through the logs to get, the screenshots, you need.

 

I currently use 3 layers of content filtering DansGuardian, ISA 2004, and a Bloxx appliance all of which give me all the information I need when I cross refernece the custom logon database I have for students logon/logoof activity.

 

This allows me to pinpoint and confirm exactly who accessed what, from where and when.

 

OK so i don't have a screenshot to go with it but the proof is there, and anyway just becouse you have a screenshot does not mean anything more than if you don't, students will always claim that someone used thier logon details to try and get out of it.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...