Jump to content

Joeloman

Members
  • Posts

    218
  • Joined

  • Last visited

Everything posted by Joeloman

  1. Today you cannot schedule any reports. I would be surprised if this will be introduced....Partly because it certainly costs Smoothwall to create these reports in the cloud and because it is extremely common to only create reports that are then never used for anything in many systems. I think that Smoothwall chooses the way to instead, as today, alert when there are Safeguardning reasons to check reports. It is likely that reports will soon also be created where changes in behavior are seen. That is if new domains or different categories suddenly get a lot of traffic. Hopefully, you can also set it up so that there is an alarm.
  2. It is always good to separate the traffic on different physical networks and/or VLANs. Then it is also easy to avoid double filtering. However, it is important to ensure that only school computers with Cloud Filter installed can connect to that network. Check this KB:https://kb.smoothwall.com/hc/en-us/articles/360015978080-Smoothwall-Filter-Firewall-Preparing-for-Cloud-Filter-to-avoid-Double-Filtering
  3. If you have made new certificates in Maiden, there are absolutely no problems. It's only very old certificates that can have problems from 2018 if I remember correctly... If you use MacOS with SSL VPN, you must select Legacy in the OpenVPN client under settings. Not lower security but only support for a slightly older server, this is not something that needs to be done in the PC client.
  4. You have uninstalled everything and run an installation as admin and then selected "import file" where you import the file from Smoothwall... Check in the client that you only have one TAP Check that you can ping (if it is switched on in Smoothwall) the "SSL VPN client gateway" that you specified in Smoothwall Are you running Windows 10 or 11? What does it say in the client log?
  5. If you use the Open VPN client, you should not install any certificate but only use the file "Connection.ovpn" which is in the zip file "SmoothWall-SSL-VPN-install" which you download from Smoothwall. .ovpn contains both cert and conf. that is all that is needed. If you use several different tunnels, you just rename Connetion to whatever you want, such as office or home..
  6. I think Smoothwall is waiting to release Maiden to everyone as it's almost soon time for Newport. Contact support and they'll make sure you get Maiden if you have a problem with anything.
  7. SSL VPN is absolutely not removed in Maiden and not in the next version Newport, but it is updated to a newer version. It is the client itself, the SSL client for Windows, which will not be developed further, as there are many good free alternatives such as e.g. OpenVPN. That is when you update to Maiden, you should also update the clients to the latest version. Reverse Proxy remains as before. Shouldn't have anything to do with SSL VPN, but instead of troubleshooting Leeds, update to Maiden which is also faster.
  8. On the client, uninstall everything related to the VPN. Check that you don't have any TAP-Windows Adapter left in the device manager. Then install the latest OpenVPN client with admin rights. Yes, Smoothwall's own client for Windows is not updated as the Open VPN client works well and it is also available for Mac.
  9. What does the log look like in the client? If you look under VPN Control in Smoothwall, do you see the client's external IP?
  10. I recommend you to use Cloud Reporting. Then 5 minutes is correct. Then the Safeguarding alarms will also come much faster from the cloud service. What happens for you today is that first the Cloud clients must report to the Cloud Filter, which then packages up the logs and sends them to On Premise. I think the setting was 30 minutes.
  11. The logs upload every 5 minutes from on prem, and from the cloud agent, regardless.
  12. Hi dapaulio It is always On Premise that is the master, this means that when someone is logged in, the various rules are locked in Cloud Filter. The rules in Cloud Filter are then greyed out and a red banner is visible with the text "Your policy has been locked due to an active login on your Smoothwall device." As soon as you log out of On Premise, the rules are synchronized and changes can be made to the Cloud Filter. The good thing about Cloud Filter is that you can let non-technical personnel have access to only the Filter (which you decide yourself in the filter), then they can e.g. get to turn off or turn on already existing rules. Everything is logged, so you can see who did what in a simple way.. Just don't forget to tell them that they need to publish the changes when they're done, in order for them to be sent out to clients and synced to On Premise Contact your Smoothwall contact in the first instance or secondly ask Tom Newton to enable Cloud Reporting.
  13. Could it be that port 2949 was chosen as IDex Client Interfaces? Look at the setting under GUARDIAN/Client interfaces/IDex Client IDex Client will not be available in Maiden and later version. I recommend using Cloud Filter instead, however IDex Agent will remain.
  14. Here you will find more information about the Edge extension: https://learn.microsoft.com/en-us/deployedge/microsoft-edge-manage-extensions
  15. In Smoothwall there are ready-made categories that can block Google Search as well as some other search engines, these are currently available: Search Engines Al known Search Engines Search Engines -> Baidu Search Engines -> Bing Search Engines -> DuckDuckGo Search Engines -> Google Instant Previews Search Engines -> Google Search Search Engines -> Reverse Image Search Search Engines -> Search Suggestions Search Engines -> Yandex Search If you use Block for "Search Engines" all known ones will be blocked, guess around 5-600. Read more about the different categories in Smoothwall:https://kb.smoothwall.com/hc/en-us/articles/360004511520-Blocklist-Categories-and-Content-Modifications-List
  16. I think it's hard for Smoothwall to keep track of all the changes that happen in Windows and Edge. Mircosoft has this which can contain good information.https://learn.microsoft.com/en-us/education/windows/ Have you followed this guide?https://kb.smoothwall.com/hc/en-us/articles/360017297219-Install-Cloud-Filter-on-Windows-10-11-using-Intune-Multiple-Browsers As well as turning off USB so they can't bot some OS or get things they shouldn't into their computers:https://kb.smoothwall.com/hc/en-us/articles/360005387519-Block-USB-Ports-using-Windows-Group-Policy-Object-GPO
  17. If you simply want to make the emails work in Smoothwall On-premise I listened with one of our technicians. Today, they usually set up a private Gmail account just for IoT. Then it is very easy to make it work with Smoothwall and printers etc. Each device gets its own password and you can easily remove devices that are not in use. You should only use the account for devices and not change the password because then it stops working for all devices. Requirements are two way auth. Here is a description: https://nanopo.st/how-to/gmail-app-passwords/ Don't forget to remove the spaces in the password. In Smoothwall use smtp.gmail.com and Enable SMTP auth and Enable SMTP TLS. We have verified that this method works in both Leeds and Maiden without any problems.
  18. There are no problems at all to set up Smoothwall with e.g. Gmail. It is important to have mail set up to see any attacks and errors as updates. The short answer: You have written the wrong address, the correct address is: smtp.gmail.com The long answer: Both Google and Microsoft had problems with spam being sent through their SMTP servers a number of years ago, so they added additional protection, which caused problem for many systems... However, Smoothwall were quite quick and added what was needed as well created this KB article that explains how to do also for printers and other devices: https://kb.smoothwall.com/hc/en-us/articles/360003683819-Using-Cloud-Services-to-Send-out-Alert-Notification-or-Scheduled-Report-Emails In this case, it is "Option 2: Send email with the Gmail SMTP server" in this link that best applies to Smoothwall if you use Gmail. https://apps.google.com/supportwidget/articlehome?hl=en&article_url=https%3A%2F%2Fsupport.google.com%2Fa%2Fanswer%2F176600%3Fhl%3Den&assistant_id=generic-unu&product_context=176600&product_name=UnuFlow&trigger_context=a
  19. To me it sounds extremely strange that you allow logins to school computers beyond the school's domain. Now maybe it's different in the UK but in Sweden it's very common with 1:1 and since the school doesn't want the computers in the school overnight (risk of theft of spare parts like HD and memories etc.) the students get to take the computers home. So that's why Cloud Filter is very common. If you can log in with another account, you can bypass the local web filter with various apps such as VPN and Proxy services. Swedish schools usually have a number of loan computers that students can use if they forgot their computer at home. These are also usually given out to substitute teachers and sometimes also to visiting students. You have then created some ready-made users that you hand out after you have written down who received it, so that you still have traceability. Perhaps something to follow?
  20. The quick answer is no and it probably won't come. The slightly longer answer is that most people who use Linux as a desktop are often developers and they are almost always both Root and admin on their computers, so they will easily be able to bypass all filters if they want to... If I remember correctly we set up Global Proxy with cert. to a customer and it worked. But it is of course nothing that is officially supported. Also think we skip auth. so that everyone had to use the same filter. P.S. A client for Android is in the works... so maybe it won't be too difficult to fix one for Linux if the need is there. Which users have Linux as clients?
  21. We have had some customers use the firewall serial number instead of the UNCL serial number... Can't remember what error the system showed though...
  22. We have tested through the Proxy and in the Cloud Filter and both Youtube Comment removal and Youtube Remove adverts works without any problems...
  23. Regarding Poki Smoothwall has changed its categories and added signatures. https://kb.smoothwall.com/hc/en-us/articles/11206334266268-Important-Updates-to-the-Smoothwall-Category-Hierarchy If you look at the list of signatures, you'll see that Poki is listed under Game Stores and Publishers When it is a signature, it blocks everything that belongs to that signature, e.g. poki.io etc.
  24. I would recommend switching to the Smoothwall Cloud Filter. Then you avoid many problems like this. Talk to your Smoothwall contact.
  25. Check DHCP-Global to make sure that your VLAN against AD is not ticket for DHCP. Normally it might be better to just use one DHCP (Smoothwall) and use Smoothwall as DNS and then only Conditional DNS forwarders for the internal domains. We also usually try to have BYOD on a completely separate network card, then you don't have to be afraid of VLAN spoofing.
×
×
  • Create New...