Idle Banter For non SV and non bike related chat (and the odd bit of humour - but if any post isn't suitable it'll get deleted real quick).![]() |
![]() |
|
Thread Tools |
![]() |
#1 |
Guest
Posts: n/a
|
![]()
I have been instructed to look into internet access abuse in our workplace. I know there are a few .orgers that may have some pointers on this. So please give me some feedback on what I can take to my MD to prevent the facebook/ebay/twitter brigade between 9am to 5pm. When its outside these hours he is happy for staff to use the internet, but not during working hours.
|
![]() |
![]() |
#2 | |
Member
Mega Poster
Join Date: Jul 2006
Location: Sunny Croydonia
Posts: 6,124
|
![]() Quote:
1) Proxy server on a non-standard proxy-server port, and your firewall/router set up to block all port 80/443 (web and secure-web) traffic that does not originate from the proxy, this will mean you can see what sites are bieing used AND then redirect them to a "page not available" message - if done on a Linux box you can have a CRON job to load a restricted config @ 9am and then a more permissive one @ 5pm. Should cost a couple of hundred for the server and take a day or so to set up. If you dont have a hardware firewall (the best solution for blocking the traffic out rather than the router) then add a couple of hundred for one of those too.
__________________
Sent from my PC NOT using any Tapatalk type rubbish!! █╬╬╬╬(•)i¯i▀▀▀▀▀█Ξ███████████████████████████████) |
|
![]() |
![]() |
![]() |
#3 | |
Guest
Posts: n/a
|
![]() Quote:
![]() |
|
![]() |
![]() |
#4 |
Member
Mega Poster
Join Date: Jan 2004
Location: Whyteleafe
Posts: 3,395
|
![]()
hardware firewall... pfft. You're funny SK
![]()
__________________
Silver SV650SK3, Fuel exhaust |
![]() |
![]() |
![]() |
#5 |
Member
Mega Poster
Join Date: Mar 2004
Location: Not in Yorkshire. (Thank God)
Posts: 4,116
|
![]()
I am with SK. However, I would advice to block all out going traffic except that through a proxy, not just the named protocols above. Obviously allow outgoing SMTP from your mail server etc.
Then get some analysis done of usage through the proxy. Look at the use of published black lists etc.
__________________
Not Grumpy, opinionated. |
![]() |
![]() |
![]() |
#6 |
Member
Mega Poster
Join Date: Jan 2004
Location: Whyteleafe
Posts: 3,395
|
![]()
I agree with SK too. I just don't like the description "hardware firewall". All firewalls run in software, even if you have a dedicated box for it.
Just me being pedantic. ![]()
__________________
Silver SV650SK3, Fuel exhaust |
![]() |
![]() |
![]() |
#7 |
Member
Mega Poster
Join Date: Mar 2004
Location: Not in Yorkshire. (Thank God)
Posts: 4,116
|
![]()
And don't listen to arguments between techys. A bastion firewall is a necessity. depending upon your business use on the net, you may need to have at least a fail over pair with state database sharing to ensure smooth fail over.
We use Nokia hardware with Checkpoint NG firewall. Expensive but worth it. you then probably need devices for prioritising certain traffic etc. (packet shaping, profiling whatever)
__________________
Not Grumpy, opinionated. |
![]() |
![]() |
![]() |
#8 | |
Member
Mega Poster
Join Date: Jul 2006
Location: Sunny Croydonia
Posts: 6,124
|
![]() Quote:
![]()
__________________
Sent from my PC NOT using any Tapatalk type rubbish!! █╬╬╬╬(•)i¯i▀▀▀▀▀█Ξ███████████████████████████████) |
|
![]() |
![]() |
![]() |
#9 |
Member
Mega Poster
Join Date: Jan 2004
Location: Whyteleafe
Posts: 3,395
|
![]()
its a pet hate. I'll pull my head in now.
__________________
Silver SV650SK3, Fuel exhaust |
![]() |
![]() |
![]() |
#10 |
Guest
Posts: n/a
|
![]()
We require to allow certain access due to being a mail order department in the warehouse they need to raise, track and view deliveries which are all web based applications. There are no email requirements at all. Just looking to give a name of some applications to investigate for this purpose.
For the record we do have a dedicated area for internet access which all staff have use of. We decided to put two internet workstations in so that people would have complete freedom during break and lunch times. In the hope it would be used in break times and therefore they would (we hoped) not want to be doing it while working. But nah, nah just got to be looking all the time eh! |
![]() |
![]() |
|
|
![]() |
||||
Thread | Thread Starter | Forum | Replies | Last Post |
Porn that is safe to view at the workplace | Zombie Jesus | Idle Banter | 43 | 28-09-08 10:53 AM |
Apparently It's not abuse if it's your Birthday ? | rictus01 | Photos | 14 | 14-08-08 07:43 AM |
Normal Internet Access through AOL? | Reckless Rat | Idle Banter | 9 | 25-07-07 12:50 PM |
Got new internet security, and now internet is sooo slow | neio79 | Idle Banter | 9 | 19-07-07 10:54 AM |