Started By
Message

re: Web Traffic Monitoring

Posted on 2/7/17 at 1:04 pm to
Posted by skrayper
21-0 Asterisk Drive
Member since Nov 2012
30878 posts
Posted on 2/7/17 at 1:04 pm to
quote:

Hello All
I'm looking for a device that can be used to monitor all web traffic for a small business. I believe some people are spending too much time shopping and such. Does anyone have any experience with an Untangled Firewall or have any ideas that would work for us?

TIA


Depending on the size and usage, you may want to consider a Meraki device - that said, that might be a bit much for you.
Posted by GeauxingtoGA
Columbia, SC
Member since Jan 2016
78 posts
Posted on 2/7/17 at 1:20 pm to
The current proposal I have is for a web filtering device that is $1100. Is the meraki in that price range or below?
Posted by jcole4lsu
The Kwisatz Haderach
Member since Nov 2007
30922 posts
Posted on 2/7/17 at 1:20 pm to
OP needs to figure out what he really wants.
At first it sounded like you wanted to block a few websites at your office. Now it sounds like you want real time monitoring of lots of users in multiple locations.

The more you want to do, the more its going to cost. No one is going to be able to give you a decent answer without better info.
Posted by gmrkr5
NC
Member since Jul 2009
14891 posts
Posted on 2/7/17 at 1:29 pm to
quote:

The current proposal I have is for a web filtering device that is $1100. Is the meraki in that price range or below?


what vendor is quoting you $1100 for an appliance?
Posted by jcole4lsu
The Kwisatz Haderach
Member since Nov 2007
30922 posts
Posted on 2/7/17 at 1:32 pm to
an Untangle u50 with complete software package will run about $1000 for the appliance and $1000/yr for the software
Posted by GeauxingtoGA
Columbia, SC
Member since Jan 2016
78 posts
Posted on 2/7/17 at 1:40 pm to
Not interested in blocking websites as much as seeing what's being looked at in real-time. I understand there's a cost associated with this as with everything but I'm trying to get an idea of what to look at. This has never come up before and I don't know what products or services I need that would be able to accomplish this


The vendor is a local IT company here in GA.
Posted by Bard
Definitely NOT an admin
Member since Oct 2008
51609 posts
Posted on 2/7/17 at 1:49 pm to
quote:

and that VNC suggestion isnt really feasible and introduces a pretty nasty security risk on every PC you install it on.



There's nothing wrong with VNC within a LAN as long as the company is running at least a half-assed firewall. If someone is really worried they can run it on a different port or through SSH tunneling. We have hundreds of PCs spread across the state an have used it for at least a decade and a half with no security issues.


quote:

he wants to proxy internet traffic. wireshark is a packet analyzer bro


Maybe I read it wrong but I thought he was wanting to see who was going where with little to no $.
This post was edited on 2/7/17 at 1:49 pm
Posted by gmrkr5
NC
Member since Jul 2009
14891 posts
Posted on 2/7/17 at 1:50 pm to
I'd still look into OpenDNS which is now owned by Cisco and called Umbrella

LINK
Posted by gmrkr5
NC
Member since Jul 2009
14891 posts
Posted on 2/7/17 at 1:55 pm to
quote:

There's nothing wrong with VNC within a LAN as long as the company is running at least a half-assed firewall. If someone is really worried they can run it on a different port or through SSH tunneling. We have hundreds of PCs spread across the state an have used it for at least a decade and a half with no security issues.


i respectfully disagree that a widespread deployment of VNC is a good idea and applicable here.

quote:

Maybe I read it wrong but I thought he was wanting to see who was going where with little to no $.


because doing packet analysis on all your egress traffic to see where users are browsing on the internet is totally scalable.
Posted by TigerinATL
Member since Feb 2005
61496 posts
Posted on 2/7/17 at 2:11 pm to
quote:

Not interested in blocking websites as much as seeing what's being looked at in real-time.


Why do you want real time data? I think most packages probably give you access to it, but if you plan to be able to walk in on somebody so you can say "Caught you red handed! You're FIRED!!!!" you've already lost.

Set some rules on acceptable internet behavior, make sure employees are aware of rules. Look through logs/reports for violation of policy. Take agreed upon action with employees that violate policy, be it official reprimands, blocking sites, or if an extreme enough violation, termination.

Posted by gmrkr5
NC
Member since Jul 2009
14891 posts
Posted on 2/7/17 at 2:20 pm to
quote:

Set some rules on acceptable internet behavior, make sure employees are aware of rules. Look through logs/reports for violation of policy. Take agreed upon action with employees that violate policy, be it official reprimands, blocking sites, or if an extreme enough violation, termination.


what he said^^^

but you could still do this if you really really wanted to

quote:

Why do you want real time data? I think most packages probably give you access to it, but if you plan to be able to walk in on somebody so you can say "Caught you red handed! You're FIRED!!!!" you've already lost.
This post was edited on 2/7/17 at 2:21 pm
Posted by GeauxingtoGA
Columbia, SC
Member since Jan 2016
78 posts
Posted on 2/7/17 at 3:19 pm to
quote:

Why do you want real time data? 



Need this to tell if people are in the office or working from home.
Posted by TigerinATL
Member since Feb 2005
61496 posts
Posted on 2/7/17 at 3:27 pm to
quote:

Need this to tell if people are in the office or working from home.


Do they remote in to the office when they work from home? It seems like your VPN server/appliance should be able to tell you that, no?
This post was edited on 2/7/17 at 3:28 pm
Posted by Box Geauxrilla
Member since Jun 2013
19118 posts
Posted on 2/7/17 at 3:56 pm to
Are your employees hourly? If not, does it matter?

If you think they're fricking off, set shorter deadlines.

I feel really fortunate to work for a company that only cares if my work gets done.
Posted by GeauxingtoGA
Columbia, SC
Member since Jan 2016
78 posts
Posted on 2/7/17 at 4:02 pm to
quote:

Do they remote in to the office when they work from home? It seems like your VPN server/appliance should be able to tell you that, no?


No, we use Google drives and such. so the work can be done virtually anywhere.

Posted by GeauxingtoGA
Columbia, SC
Member since Jan 2016
78 posts
Posted on 2/7/17 at 4:03 pm to
Yes they are. But we have store front that needs to have someone there during business hours.
Posted by Vlad
North AL
Member since May 2012
2605 posts
Posted on 2/7/17 at 4:10 pm to
quote:

Why do you want real time data?
This would be a full time position looking at all that shite. Just get an appliance and block it all.
Posted by GeauxingtoGA
Columbia, SC
Member since Jan 2016
78 posts
Posted on 2/7/17 at 4:11 pm to
Thank you I'll look into this
Posted by Sir Drinksalot
Member since Aug 2005
16742 posts
Posted on 2/7/17 at 4:29 pm to
quote:

meraki


I have seen this one in action and its pretty impressive. I know of a few high schools that use it.
Posted by DisplacedBuckeye
Member since Dec 2013
71662 posts
Posted on 2/7/17 at 8:40 pm to
quote:

packet analysis


Wireshark does a lot more than packet analysis, and could easily be setup to do what OP is asking, and then some.
first pageprev pagePage 2 of 4Next pagelast page

Back to top
logoFollow TigerDroppings for LSU Football News
Follow us on Twitter, Facebook and Instagram to get the latest updates on LSU Football and Recruiting.

FacebookTwitterInstagram