Jump to content

tom_newton

Smoothwall Staff
  • Posts

    5,873
  • Joined

Everything posted by tom_newton

  1. Just found out that one of our number is a closet author - Flemming, our development manager has written a kids' book on global warming. I'll spring for a copy next time i'm down in our southampton office (its not on amazon yet I don't think ), but meanwhile, it may prove to be a decent resource, or interesting to folk on here.. so see linky Global warming for young minds
  2. As many folk have pointed out - ISA on its own won't do a right lot. You should ensure if you are starting from scratch that you get a filter with some credible answers for proxies, HTTPS and online gaming. If you'd like to eval one of our filter units (either hardware, or software/VM like Censornet), let me know. I'm not going to "sell it to you" on here - a) that's naughty, b) i'm no salesman and c) i'm sure our happy customers will do that for me
  3. For smoothie users... "desktop sillies" is the category
  4. Single nic mode is the way to go. Sorry - I misunderstood your original diagram. If it can't see the other vlans, you'll need to give it a default gateway that allows it to communicate to the other vlans, or give the cachepilot an alias on each vlan if the unit itself supports this.
  5. Quick question... why - not being... obstructive.. but if we know why, then chances are you'll get better advice from myself and these other fine folk! It may be worth noting that if you are doing authentication on the cachepilot this might break it. Personally I would avoid (what looks like) a double NAT situation. These are no fun. Also.. give us IPs. That might help.
  6. Locks are often standard makes - Lowe and Fletcher common enough. It's usually trivial to obtain spare keys based on the manufacturer and barrel number - I certainly "know a man who can".
  7. As discussed at EGconf'10 - here's a few screenies of my sequinned assistant.. I mean respected colleague Nile visiting a fakeAv site. Of course he was running firefox on linux at the time, so had little chance of getting infected seriously - although Wine was perfectly willing to run it! Rather than bore you with the stuff I put together for our internal team, I'll give you guys the raw material. I suggest you use a screenshot of this, combined with your REAL av whatever you use - and let users know the difference. If you close the site before you get to the final phase, you are generally safe. If you want to harmlessly trigger your real desktop AV in order to get a screengrab, you can use the EICAR test file: http://www.eicar.org/anti_virus_test_file.htm this is a small, harmless file that *should* trigger a positive in any AV engine. If yours doesn't complain to your vendor. I have certainly seen it trigger Clam, Kaspersky, Bitdefender and Sunbelt. Few extra bits: How did we find this site? Well we searched for "Rima Fakih pole dancing" - some ex-Miss USA with an.. embarrassing.. old home movie. This is how these guys operate - they pimp on popular search terms. Today you'll find some on "red dead treasure map" though the cleanup is well under way there. The Virustotal PDF is a printout of an analysis I sent to virustotal when we were looking at aforementioned pole-dancer.. it was certainly a couple of days into the outbreak, and as you can see, the nature of the malware has rendered many of the "big names" ineffective. In fairness, running that same exe now, a couple of weeks later, gets 38/41 coverage, with Fortinet being the only relatively major casualty. fakeav.zip
  8. Still waiting for logan... we are going to be laaaaaaaaaate. (Have rung Dos_Box tho)
  9. In our experience of buying relatively low quantities of branded merchandise - these prices aren't bad at all.
  10. Echo previous posters - had my Ixus 55 for *years* - the batteries are all starting to fade now (some were el cheapo 3p ones), and the camera is looking old and scuffed, but the camera served me well, and I will not be looking at non-canon again. Might have one of these, especially as it has IS. Edit: Hmm it even takes the same nb4l batteries as the old 55... could re-use 2 of the better ones...
  11. Chris, can you add me and Gav to that list - sorry we have been wastrels, but I only just found out who we could get out of the office those days...!
  12. What do you think would be a good method for warning you (As admin) that the stuff you've blocked is part of the blocklist? Obviously just taking them out of your list silently is a cack idea, as it may be that you have sites in your custom lists for other reasons. Email digest? Graphical display of the list with icons by those which are now in main blocklist?
  13. Not in the office at the mo - so hard to test... but will it not proxy over HTTP?
  14. Possibly, if it is linux based, and you have root... almost certainly.
  15. Assuming IPCop will still work similarly to Smoothie (it is effectively based on the 1.9 branch of Express, whereas our commercial products are on version 7(!) and next Express will be v8).. then it should be possible to use just the green i/face, and set your default gw on the IPCop to your green gateway, thereby allowing it to act as just a filter. HTH
  16. Absolutely, yes. The feedback facility is slightly crude, but we're working on new and better Also, if you have a whole variety of sites giving you gyp, we can put you on auto-feedback mode for a while, which helps us tune to new types of site, eg. if kids were getting on games by typing "online games" in french (which we already block BTW...) we'd use that to hoover up some examples to "train" the next batches of updates.
  17. @john - I think he did... will have to check "other ways of accessing it" tho
  18. I like that style - for those thinking "WTF, he has temp whitelist!?" - it is possible to change the behaviour of "banned group" to pretty much anything you want.
  19. Just one. Mostly with a capital W if we can be bothered, which sometimes we can't @RTFM - do you use the portal to let teaching staff at the temp bans too?
  20. I know an african prince with $12mil of viagra needs transferring to some hurricane victims if anyone's interested?
  21. Thanks guys saved me a job! The folk above are all correct!
  22. system » maintenance » licenses Will show you when all yer "bits" last got a successful update. Hope that helps! Maybe we can tempt you to one of our UI testing days at some point..
  23. Yes - you get a nightly update. This is automatic, and you can't turn it off(!) - a stipulation from our friends at IWF. Some days you may get inbetween updates - the system actually checks hourly. These are rare though. Drop me a PM/email/call if you think stuff's getting through as shouldn't.
  24. Do you have some sort of watchdog timer set in the BIOS? This tends to be a server-platform only type of issue...
  25. Silly! Everyone knows it is the decline in pirates that's the issue. http://www.venganza.org/images/PiratesVsTemp.png
×
×
  • Create New...