Jump to content

OB1

Members
  • Posts

    729
  • Joined

  • Last visited

Everything posted by OB1

  1. If they were using the Skype client I doubt it. Skype's communication is encrypted and not always directly between clients, there might be a server in the way. You could look for traffic to skype hosts, but they're not all known and now all obvious.
  2. Google sites (sites.google.com) is only served over https, so you'll need a proxy capable of filtering https traffic.
  3. Restricted youtube doesn't work on the app. The app does weird stuff™ and generally doesn't like having its traffic messed with. If you have MDM in place, you could install YouTube for Kids instead.
  4. I'd advise you to look at this from the other side. Block Social Networking and allow the social networks you want to, it's likely to be a much shorter list.
  5. Would you mind PM-ing me some examples? Historically web proxy detection has been one of our strong suits, so it's concerning to hear this.
  6. Clear the cache / temp files and scan for spyware.
  7. Have you tried the smoothwall.org forums? You're much more likely to get a helpful / knowledgeable response there. Most people on here have the commercial version of Smoothwall. community.smoothwall.org
  8. Yup, sounds like Sisra doesn't understand auth. Find out which domains it's connecting to (we can't as we don't have the application) and make them authentication exceptions. Its not uncommon for applications not to understand proxies, so this is a bit of a get out of jail free card.
  9. It's quite possible Sisra doesn't understand authenticating proxies. What's it not doing that it should? Also, in the realtime logs, where is it trying to connect to and what responses are you getting?
  10. Allowing a domain allows the subdomains. It's the same with blocking. You might be getting blocked upstream. I'd be very careful about allowing deviantart outright. I think there's a NSFW filter on there but that can be bypassed by logging in. We'll have a look at it and see if we can come up with something.
  11. Off the top of my head, iMessage doesn't actually use ports 80 / 443 exclusively, so if you're firewall's locked down that may have something to do with it. Snapchat doesn't like being decrypted and inspected either (most apps don't). Check your realtime web filter, if nothing's showing up in there then it's going to be firewall related.
  12. Which search engine was it? And do you know if you are enforcing safesearch?
  13. Do you have a record of what they searched for and which search engine they were using? PM me details if you have them. Otherwise, I'd follow @simoanorak's advice and add HTTPS decrypt and inspect too, although setting that up can be non-trivial depending on your environment. EDIT: Apparently, Dan types faster than me...
  14. Our apologies if there has been any confusion. Your best option is to contact your account manager, I'm sure they'll be more than happy to clear things up.
  15. The twitter app, like many, makes SNI-less connections to twitter over https. Most filters and proxies don't like this and with good reason. Your best bet is just to use the browser. Bear in mind, there is also a lot of questionable content on twitter generally.
  16. We're always trying to improve. Feel free to feed those false positives back to us here.
  17. If this kind of thing was easy, people like myself and @russdev would be out of a job. Language is a mighty complex thing, especially once you get past the apparent meaning of words and into euphemisms, context, codewords, colloquialisms and a raft of other devices people use to obfuscate their meaning.
  18. We made an adjustment to one of our content modifications. If you've got Enable Google SafeSearch [bETA] enabled in your Content Modification table, this will now include youtube, since they share the same infrastructure. If you definitely want to turn it off drop me a PM.
  19. This will improve as time goes on. I'd be interested in some examples though. There are a large number of sites in that category. Some of them have no moderation or virus scanning at all, so people can upload and download literally anything they want. Seriously, if you're in a school, block this category and make exceptions for the services you use. As I said, the customisation will slow down as time goes on. Do you have Education and Reference allowed? We've found this can help considerably.
  20. There are a very small number of categories on Smoothwall that you should actually Allow. Examples are Education & Reference, Academic Institutions and Online Banking. File Hosting is definitely not on this list. Don't allow this category. It's very common for our customers to want to use a small subset of a category and block the rest of it, which is why our policy table works the way it does and why it's so customizable. It's perfectly normal for a school to have quite a restrictive policy and a list of sites specific to their needs that are allowed. Dropbox is one example, some schools allow Twitter but block all other Social Netwokring, or allow specific game sites and block the rest. This list is different in every school.
  21. I believe Word, Excel et al. download templates and other resources from there. Run the domain through the policy checker (clienttemplates.content.office.net) to make sure you don't have conflicting policies. Are you transfer capped? i.e. is your connection restricted to X Gb/month? If not, 1.5G in 24 hours isn't much. Translates to an average of about 20k/sec over the whole day. Unless it's causing you performance issues or chewing up your limit, don't worry about it.
  22. Disclaimer: I'm not a php coder. Personally, instead of using python and adding another tool into the chain, I'd do this with fgetcsv(). After that you can determine which rows don't have a room and discard them by checking the appropriate element of the array. If you really want to do it in python, you'll want to use the csv module. Re: sorting your days correctly, I think you'll have to change the representation somehow.
  23. 407 is Proxy authentication required. It's just the Smoothwall prompting the client to prove it's credentials, nothing to worry about. Some of codeacademy's content comes from amazon's aws service, which is categorized as Content Delivery. If you have this blocked it may cause some problems. Re: Facebook, unless your users are signing in with it, you shouldn't need to go anywhere near it. PM me a screenshot of the log lines that are concerning you.
  24. Ah yes. Apps tend to use their own certificates, sometimes they don't understand proxies and they definitely don't like being man-in-the-middled. A lot of them don't send Server Name Indication headers either, so we have to do funky stuff™ to work out what the traffic is before we can decide what to do with it. PM me which apps you're using and I'll try and advise you.
  25. We can't apply content modifications to the YouTube App unfortunately. Comment removal works on the mobile site through Safari and Chrome, but you need to have Decrypt and Inspect enabled to apply it (and the Smoothwall's certificate installed as a root CA). Decrypt and inspect breaks the app because it won't accept the Smoothwall's certificate. HTH.
×
×
  • Create New...