ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Content filtering options

    IT Discussion
    opendns content filtering strongarm.io
    15
    47
    3.6k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • RojoLocoR
      RojoLoco @JaredBusch
      last edited by

      @jaredbusch said in Content filtering options:

      @rojoloco said in Content filtering options:

      @jaredbusch yeah, that recent acquisition had me wondering. But their service is reasonably priced.

      Can you still buy it as a separate service? I know that WatchGuard bought it to bake into their Firewall OS.

      It looks like you can. But I haven't contacted them yet because they actually show pricing.

      1 Reply Last reply Reply Quote 0
      • RojoLocoR
        RojoLoco
        last edited by

        We just need to lock down approx. 20 folks at our India office. 9,000 miles and no local HR department means we have to treat them like children I suppose.

        DustinB3403D 1 Reply Last reply Reply Quote 0
        • DustinB3403D
          DustinB3403 @RojoLoco
          last edited by

          @rojoloco said in Content filtering options:

          We just need to lock down approx. 20 folks at our India office. 9,000 miles and no local HR department means we have to treat them like children I suppose.

          What makes you think they simply won't bypass whatever you install?

          RojoLocoR 1 Reply Last reply Reply Quote 1
          • RojoLocoR
            RojoLoco @DustinB3403
            last edited by

            @dustinb3403 said in Content filtering options:

            @rojoloco said in Content filtering options:

            We just need to lock down approx. 20 folks at our India office. 9,000 miles and no local HR department means we have to treat them like children I suppose.

            What makes you think they simply won't bypass whatever you install?

            The fact that they've already signed an AUP and we will fire the shit out of them.

            DustinB3403D 1 Reply Last reply Reply Quote 0
            • DustinB3403D
              DustinB3403
              last edited by

              Wasn't there a conversation here on ML about ClearOS as a content filter not to long ago?

              1 Reply Last reply Reply Quote 0
              • DustinB3403D
                DustinB3403 @RojoLoco
                last edited by

                @rojoloco said in Content filtering options:

                @dustinb3403 said in Content filtering options:

                @rojoloco said in Content filtering options:

                We just need to lock down approx. 20 folks at our India office. 9,000 miles and no local HR department means we have to treat them like children I suppose.

                What makes you think they simply won't bypass whatever you install?

                The fact that they've already signed an AUP and we will fire the shit out of them.

                So then why do you need an CF on top of the AUP. . . or are you just really wanting to monitor if they break the AUP and then fire them?

                RojoLocoR 1 Reply Last reply Reply Quote 0
                • RojoLocoR
                  RojoLoco @DustinB3403
                  last edited by

                  @dustinb3403 said in Content filtering options:

                  @rojoloco said in Content filtering options:

                  @dustinb3403 said in Content filtering options:

                  @rojoloco said in Content filtering options:

                  We just need to lock down approx. 20 folks at our India office. 9,000 miles and no local HR department means we have to treat them like children I suppose.

                  What makes you think they simply won't bypass whatever you install?

                  The fact that they've already signed an AUP and we will fire the shit out of them.

                  So then why do you need an CF on top of the AUP. . . or are you just really wanting to monitor if they break the AUP and then fire them?

                  That's what the bosses want. Only 1 person on that side to keep them inline, and he's been interviewing and hiring lately. They've been warned, but in order for that office to be cost effective, we have to block them from shopping online and watching cricket matches.

                  1 Reply Last reply Reply Quote 1
                  • DustinB3403D
                    DustinB3403
                    last edited by

                    So doing HR's job because there is no HR onsite. Well that sucks.

                    RojoLocoR 1 Reply Last reply Reply Quote 1
                    • DustinB3403D
                      DustinB3403
                      last edited by

                      I've not used this but Privoxy might work well enough.

                      https://www.privoxy.org/
                      https://www.pcmech.com/article/build-web-content-filter-using-linux-privoxy/

                      RojoLocoR 1 Reply Last reply Reply Quote 0
                      • RojoLocoR
                        RojoLoco @DustinB3403
                        last edited by

                        @dustinb3403 meh. I've had way more stupid assignments in other "IT" jobs before. Should be basically set-and-forget after whitelisting customer websites. One thing our overseas workers do not do is whine about stuff like filtered internet... that's a huge positive.

                        1 Reply Last reply Reply Quote 0
                        • RojoLocoR
                          RojoLoco @DustinB3403
                          last edited by

                          @dustinb3403 said in Content filtering options:

                          I've not used this but Privoxy might work well enough.

                          https://www.privoxy.org/
                          https://www.pcmech.com/article/build-web-content-filter-using-linux-privoxy/

                          Way too much complexity. They want simplicity (so do I, since I'll be managing it). A hosted DNS service is ideal.

                          1 Reply Last reply Reply Quote 0
                          • momurdaM
                            momurda
                            last edited by

                            What do you have at the site already?
                            Many firewall devices have this stuff built in now.
                            I could block anything by category or even strings 'cricket' 'viagra' stuff like that. Any traffic passing through the interface out to the web gets inspected.
                            Any requests that use these words get blocked with a warning in the browser and logged.
                            Not quite the same as a dns filtering though.

                            JaredBuschJ RojoLocoR 2 Replies Last reply Reply Quote 0
                            • jmooreJ
                              jmoore
                              last edited by

                              You might look at Clouflare. They have a free option and are hosted. I use them on my websites so been a while since I set them up but I think you can do some filtering and white listing.

                              1 Reply Last reply Reply Quote 1
                              • JaredBuschJ
                                JaredBusch @momurda
                                last edited by

                                @momurda said in Content filtering options:

                                What do you have at the site already?
                                Many firewall devices have this stuff built in now.
                                I could block anything by category or even strings 'cricket' 'viagra' stuff like that. Any traffic passing through the interface out to the web gets inspected.
                                Any requests that use these words get blocked with a warning in the browser and logged.
                                Not quite the same as a dns filtering though.

                                No, firewalls do not have that. Those are UTM devices. But that is a totally different discussion.

                                Also there is no way for most of those devices to block anything HTTPS unless you let the UTM perform MitM on your SSL. This generally causes more problems than it solves.

                                1 Reply Last reply Reply Quote 1
                                • RojoLocoR
                                  RojoLoco @momurda
                                  last edited by

                                  @momurda said in Content filtering options:

                                  What do you have at the site already?
                                  Many firewall devices have this stuff built in now.
                                  I could block anything by category or even strings 'cricket' 'viagra' stuff like that. Any traffic passing through the interface out to the web gets inspected.
                                  Any requests that use these words get blocked with a warning in the browser and logged.
                                  Not quite the same as a dns filtering though.

                                  There is a crappy Cisco ASA firewall there. Yuck.

                                  1 Reply Last reply Reply Quote 0
                                  • momurdaM
                                    momurda
                                    last edited by

                                    Oh that is too bad.

                                    1 Reply Last reply Reply Quote 0
                                    • scottalanmillerS
                                      scottalanmiller
                                      last edited by

                                      We use PiHole. Not as comprehensive, but it's low cost and we can control it.

                                      JaredBuschJ 1 Reply Last reply Reply Quote 1
                                      • JaredBuschJ
                                        JaredBusch @scottalanmiller
                                        last edited by

                                        @scottalanmiller said in Content filtering options:

                                        We use PiHole. Not as comprehensive, but it's low cost and we can control it.

                                        But PiHole is not designed to block all domains and only allow a whitelist.

                                        scottalanmillerS 1 Reply Last reply Reply Quote 0
                                        • scottalanmillerS
                                          scottalanmiller @JaredBusch
                                          last edited by

                                          @jaredbusch said in Content filtering options:

                                          @scottalanmiller said in Content filtering options:

                                          We use PiHole. Not as comprehensive, but it's low cost and we can control it.

                                          But PiHole is not designed to block all domains and only allow a whitelist.

                                          For ONLY Whitelist, DansGuardian, then.

                                          JaredBuschJ 1 Reply Last reply Reply Quote 0
                                          • JaredBuschJ
                                            JaredBusch @scottalanmiller
                                            last edited by

                                            @scottalanmiller said in Content filtering options:

                                            @jaredbusch said in Content filtering options:

                                            @scottalanmiller said in Content filtering options:

                                            We use PiHole. Not as comprehensive, but it's low cost and we can control it.

                                            But PiHole is not designed to block all domains and only allow a whitelist.

                                            For ONLY Whitelist, DansGuardian, then.

                                            Does that do DNS filtering now?

                                            scottalanmillerS 1 Reply Last reply Reply Quote 0
                                            • 1
                                            • 2
                                            • 3
                                            • 1 / 3
                                            • First post
                                              Last post