-
Posts
5,873 -
Joined
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by tom_newton
-
If you are still struggling, put in a ticket and send me the details
-
I'll chase it up
-
Impero / Ed Pro Alternatives ??
tom_newton replied to mikkydoos's topic in Network and Classroom Management
You could switch to the cloud filter on the devices which run senso - that should stop em fighting. We did try to get senso working, I think 1.3 is a red herring here, there's something else it doesnt like. -
I think their filter and alert software are very much 2 sides of the same coin - my advice would be to look at one of the monitoring products that can stand alone by design (obviously I can recommend Smoothwall as market leader, but also senso I think is available from lgfl, and securus)
-
Probably the rancid windows inbuilt wget. I like windows subsystem for linux so I can have all my tools. If you DM me the site and the offending page, I will have a look today after work
-
That's what I did on my system, though I am a bit rusty with this
-
No those certs don't do anything until you tell the filter which one to use [on the guardian/https settings page] - but yes, create, then roll out, then tell the filter to use it
-
The warning message (stupidly) takes a day to expire - so as long as your clients are happy then dont worry I just did this on my test box - and there are improvements coming (I did try to hack fix the warning message not clearing, but I failed!)
-
wget --mirror and then grep the output for the suspicious link?
-
EastEnglandTeaching.org
tom_newton replied to soapyfish's topic in Internet Related/Filtering/Firewall
Sure, that could do with fixing, but hardly a reason not to visit, or am I missing something? -
EastEnglandTeaching.org
tom_newton replied to soapyfish's topic in Internet Related/Filtering/Firewall
Yeah, that ncsc block is their DNS only - I dont see an awful lot wrong with the site from a cursory glance -
EastEnglandTeaching.org
tom_newton replied to soapyfish's topic in Internet Related/Filtering/Firewall
You could always use a conditional DNS rule to look this up elsewhere if your DNS server supports that sort of thing. -
I don't think there is a timeout on radius. I'll chase the underlying issue up with the agents team in the new year.
-
Sounds like you have a handle on it - and if the username matches something in your google directory, yes, the Smoothwall will do group lookup there
-
Sure. It's deeply sub optimal, but might represent a reasonable interim. It's true of any system that relies on identity that isn't auth
-
Unless I am very much mistaken, if you do radius accounting the smoothwall simply doesnt care if a radius server exists. All it cares about is does a radacct packet arrive from a trusted source (you may have to maker all your IPs trusted)
-
Yeah, that's our challenge here - not having an actual proper logged in windows user. I have raised this with the filtering PM team.
-
My thought is that kerberos would need a local AD - have you still got one? And would require the user to be a domain joined user.
-
Probably the easiest way to send that sort of info to the smoothwall is a radius accounting packet... KRB requires cryptography
-
It should do! Go for it!
