<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>NetSentron &#187; admin</title>
	<atom:link href="http://www.netsentron.com/author/admin/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.netsentron.com</link>
	<description>Securing All the Bits.</description>
	<lastBuildDate>Fri, 15 Apr 2011 15:59:59 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=abc</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Update 3.3.6</title>
		<link>http://www.netsentron.com/update-336/</link>
		<comments>http://www.netsentron.com/update-336/#comments</comments>
		<pubDate>Fri, 15 Apr 2011 15:59:33 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Updates]]></category>

		<guid isPermaLink="false">http://www.netsentron.com/?p=2270</guid>
		<description><![CDATA[Released:April 15th, 2011
The long awaited iTunes Store fix! This now allows you to go to the iTunes Store.
The original problem was caused by a malformed URL from Apple.
For the record, apple seems to thing that itunes.apple.com. is a valid URL (note the period on the end of .com?)
Anyways, the NetSentron has been adjusted to deal [...]]]></description>
			<content:encoded><![CDATA[<p>Released:April 15th, 2011</p>
<p>The long awaited iTunes Store fix! This now allows you to go to the iTunes Store.</p>
<p>The original problem was caused by a malformed URL from Apple.</p>
<p>For the record, apple seems to thing that <strong>itunes.apple.com.</strong> is a valid URL (note the period on the end of .com?)</p>
<p>Anyways, the NetSentron has been adjusted to deal with malformed URL&#8217;s now.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.netsentron.com/update-336/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Update 3.3.5</title>
		<link>http://www.netsentron.com/update-335/</link>
		<comments>http://www.netsentron.com/update-335/#comments</comments>
		<pubDate>Thu, 10 Feb 2011 20:03:41 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Updates]]></category>

		<guid isPermaLink="false">http://www.netsentron.com/?p=2267</guid>
		<description><![CDATA[Released:February 10th, 2011
This patch fixes an issue with the web log analyzer only going to the year 2010.
]]></description>
			<content:encoded><![CDATA[<p>Released:February 10th, 2011</p>
<p>This patch fixes an issue with the web log analyzer only going to the year 2010.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.netsentron.com/update-335/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Update 3.3.4</title>
		<link>http://www.netsentron.com/update-334/</link>
		<comments>http://www.netsentron.com/update-334/#comments</comments>
		<pubDate>Tue, 19 Oct 2010 15:35:09 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Updates]]></category>

		<guid isPermaLink="false">http://www.netsentron.com/?p=2260</guid>
		<description><![CDATA[Released: October 19th, 2010
This update adds 62,337  new entries to the blacklists of the NetSentron.
NOTE:  This patch takes a long time to install! Several minutes in fact.  The  patch is modifying the Content Filter blacklist files and so it takes a  while to go through all the files and update them. [...]]]></description>
			<content:encoded><![CDATA[<p>Released: October 19th, 2010</p>
<p>This update adds 62,337  new entries to the blacklists of the NetSentron.</p>
<p><span style="color: #ff0000;"><strong>NOTE</strong></span>:  This patch takes a long time to install! Several minutes in fact.  The  patch is modifying the Content Filter blacklist files and so it takes a  while to go through all the files and update them. Please be patient  when installing this update.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.netsentron.com/update-334/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Update 3.3.3</title>
		<link>http://www.netsentron.com/update-333/</link>
		<comments>http://www.netsentron.com/update-333/#comments</comments>
		<pubDate>Fri, 15 Oct 2010 17:33:38 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Updates]]></category>

		<guid isPermaLink="false">http://www.netsentron.com/?p=2250</guid>
		<description><![CDATA[Released: October 15th, 2010
This update adds new drivers for the VIA-Rhine Chipset (network cards) and several other small updates.
NOTE: This update needs a reboot.
 
]]></description>
			<content:encoded><![CDATA[<p>Released: October 15th, 2010</p>
<p>This update adds new drivers for the VIA-Rhine Chipset (network cards) and several other small updates.</p>
<p><span style="color: #ff0000;"><strong>NOTE</strong></span>: This update needs a reboot.</p>
<p><span style="color: #ff0000;"><strong> </strong></span></p>
]]></content:encoded>
			<wfw:commentRss>http://www.netsentron.com/update-333/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Block Facebook</title>
		<link>http://www.netsentron.com/block-facebook/</link>
		<comments>http://www.netsentron.com/block-facebook/#comments</comments>
		<pubDate>Mon, 13 Sep 2010 17:30:16 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Information]]></category>
		<category><![CDATA[block facebook]]></category>

		<guid isPermaLink="false">http://www.netsentron.com/block-facebook/</guid>
		<description><![CDATA[There is lots of news about Facebook. Everything from how it generated new sales and leads to the amount of time people waste at work and how it one of the latest tools for school bullies.
A recent posting on baseline magazine will give you some of the recent facebook numbers as it relates to business.
The [...]]]></description>
			<content:encoded><![CDATA[<p>There is lots of news about Facebook. Everything from how it generated new sales and leads to the amount of time people waste at work and how it one of the latest tools for school bullies.</p>
<p>A recent posting on baseline magazine will give you some of the recent facebook numbers as it relates to business.<br />
The link to the article is here:</p>
<p><a href="http://www.baselinemag.com/c/a/Business-Intelligence/30-Fast-Facts-on-Facebook-at-Work-406941/?kc=EWWHNEMNL09132010STR1">http://www.baselinemag.com/c/a/Business-Intelligence/30-Fast-Facts-on-Facebook-at-Work-406941/?kc=EWWHNEMNL09132010STR1</a></p>
<p>We are not here to debate the merits of facebook; however, if you need to block it, I have included the instructions on how to block it using the NetSentron below. If you need a teacher, marketing department or the HR department to have access to facebook, while closing it to the rest of your network you would exempt that person or workstation from the filter.</p>
<p>The specific instructions on how to block facebook came from the following request:</p>
<p>The kids have discovered that if they go to https://www.facebook.com they can<br />
bypasss the filter. From that point on even http://www.facebook.com and<br />
facebook.ca is accessible. I need your help to block this.</p>
<p>First thing to do to block facebook is to blacklist the domains.<br />
That would include facebook.com and facebook.ca.<br />
That alone is not enough since kids will do all of the following:<br />
1) Try a proxy server &#8211; they would go to another server that is not in the black list and then facebook from the proxy server.<br />
The solution here is to block all the proxy servers. Netsentron administrators know how to do that.  There is a checkbox to block all known proxy servers.</p>
<p>2) They could go to another facebook site. The students could try facebook in Germany or France or??.<br />
Now we have to block all facebook domains.<br />
Latest exploit the kids discovered to bypass the NetSentron filter:<br />
Go to babelfish.yahoo.com enter in www.facebook.com and choose Greek to English,<br />
voila you have access to facebook even though it is blocked.<br />
The fix:<br />
Go to Filters-&gt;Content Filter<br />
Then click on &#8220;Edit Banned URL Expressions&#8221;<br />
Scroll down the window to the very bottom (you should probably see #(proxy) as the last<br />
line)<br />
Add the following line<br />
(facebook)<br />
Click on &#8220;Update Banned URL Expressions&#8221;<br />
Now, anytime that facebook shows up in the URL (which it does when you do a<br />
translation on yahoo), the site should be blocked. This works even if YAHOO.COM is in<br />
the exception list.</p>
<p>3) The students in the above case used https.  It is a secure connection (like online banking) where we should not break into the middle of the online conversation. One way to fix that is to take control the proxy server.   If we break into the middle it basically creates a &#8216;man in the middle attack&#8217;. We don&#8217;t want to look like a hacker &#8211; our job is to stop them!</p>
<p>The quick way to stop all traffic to facebook servers is to stop at the source. The final resolution was generated by Darren in our office:</p>
<p>Go to Firewall-&gt;IP Block</p>
<p>Add the two following entries:</p>
<p>TCP 69.63.176.0/20 1:65535 DROP BOTH<br />
TCP 66.220.144.0/20 1:65535 DROP BOTH</p>
<p>This will block all current IP&#8217;s owned by Facebook.</p>
<p>Darren</p>
]]></content:encoded>
			<wfw:commentRss>http://www.netsentron.com/block-facebook/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Shut down the NetSentron Bypass</title>
		<link>http://www.netsentron.com/shut-down-the-netsentron-bypass/</link>
		<comments>http://www.netsentron.com/shut-down-the-netsentron-bypass/#comments</comments>
		<pubDate>Tue, 13 Apr 2010 19:46:14 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Information]]></category>

		<guid isPermaLink="false">http://www.netsentron.com/?p=2237</guid>
		<description><![CDATA[This allows anyone anywhere to bypass their content filter since the traffic in now through a VPN (A safe and secure tunnel).
This is part of an internal post by Darren Crithley to the KDI techinican support team which I think if of real value to general public.
The kids at one of the schools are circumventing [...]]]></description>
			<content:encoded><![CDATA[<p>This allows anyone anywhere to bypass their content filter since the traffic in now through a VPN (A safe and secure tunnel).</p>
<p>This is part of an internal post by Darren Crithley to the KDI techinican support team which I think if of real value to general public.</p>
<p>The kids at one of the schools are circumventing the NetSentron using this:<br />
<a href="http://www.hotspotshield.com/">http://www.hotspotshield.com/</a></p>
<p>It is an installable program that becomes a proxy on their own PC and allows them to get past the NetSentron.</p>
<p>It is actually a VPN endpoint with a proxy that runs on your localhost (127.0.0.1)</p>
<p>It is using OpenVPN as a VPN client and they have set up some websites that are the endpoints. So far 68.68.108.3 and 68.68.108.4</p>
<p>There have been a lot of these VPN bypasses showing up of late and this one is pretty slick.</p>
<p>But I am able to block it, so here are the instructions for you to block it:<br />
&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;<br />
Go to Firewall-&gt;IP Block<br />
Choose Protocol:udp<br />
Source IP or network: 68.68.108.0/24<br />
port: *<br />
Drop Packet<br />
Direction: In and Out bound packets<br />
Enabled (yes)</p>
<p>Do the same for TCP<br />
Choose Protocol:tcp<br />
Source IP or network: 68.68.108.0/24<br />
port: *<br />
Drop Packet<br />
Direction: In and Out bound packets<br />
Enabled (yes)</p>
<p>I have probably blocked off more than I should have with the /24, but I figured that they may have a block of IP&#8217;s. You can try just the 68.68.108.3 and 68.68.108.4 (udp/tcp)<br />
&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</p>
<p>Now here is the tech part on how to figure this out if the kids are using a different product to bypass:</p>
<p>These bypasses are VPN&#8217;s and therefore they need to connect to &#8220;somewhere&#8221; so they can surf the net. That &#8220;somewhere&#8221; is what we will block.</p>
<p>If someone is not already using the bypass product, then install it on your laptop or computer.</p>
<p>Next, run it and connect to what should be a banned site.</p>
<p>Then look at the connections analysis on the NetSentron, I suspect you will see a connection to a weird port (either tcp or udp)</p>
<p>Stop the bypass product on the PC or laptop</p>
<p>Add the IP address and ALL ports to IP Block, set in and out packets.</p>
<p>Run bypass product again and see what shows up.</p>
<p>Keep doing this until you get all the IP&#8217;s</p>
<p>This hotspot shield was pretty slick, when I blocked all the UDP ports for it, it switched over to TCP and connected again. Once I had the tcp and udp blocked, that was the end of it (until they get another block of ip addresses)</p>
<p>Darren</p>
]]></content:encoded>
			<wfw:commentRss>http://www.netsentron.com/shut-down-the-netsentron-bypass/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Update 3.3.2</title>
		<link>http://www.netsentron.com/update-332/</link>
		<comments>http://www.netsentron.com/update-332/#comments</comments>
		<pubDate>Mon, 12 Apr 2010 19:51:10 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Updates]]></category>

		<guid isPermaLink="false">http://www.netsentron.com/?p=2233</guid>
		<description><![CDATA[Released: April 12th, 2010
This update adds 265,651 new entries to the blacklists of the NetSentron.
NOTE: This patch takes a long time to install! Several minutes in fact.  The patch is modifying the Content Filter blacklist files and so it takes a while to go through all the files and update them. Please be patient when [...]]]></description>
			<content:encoded><![CDATA[<p>Released: April 12th, 2010</p>
<p>This update adds 265,651 new entries to the blacklists of the NetSentron.</p>
<p><span style="color: #ff0000;"><strong>NOTE</strong></span>: This patch takes a long time to install! Several minutes in fact.  The patch is modifying the Content Filter blacklist files and so it takes a while to go through all the files and update them. Please be patient when installing this update.</p>
<p><span style="color: #ff0000;"><strong> </strong></span></p>
]]></content:encoded>
			<wfw:commentRss>http://www.netsentron.com/update-332/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Update 3.3.1</title>
		<link>http://www.netsentron.com/update-331/</link>
		<comments>http://www.netsentron.com/update-331/#comments</comments>
		<pubDate>Wed, 18 Mar 2009 18:36:53 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Updates]]></category>

		<guid isPermaLink="false">http://www.netsentron.com/?p=1491</guid>
		<description><![CDATA[Released: March 5, 2009
This update adds the Advanced Firewall option to the NetSentron. This option will allow you to block all outgoing traffic unless expressly allowed by you. As it is an advanced option, we ask you to make sure you have read the instructions, also an understanding of Network Ports and Protocols is required [...]]]></description>
			<content:encoded><![CDATA[<p>Released: March 5, 2009</p>
<p>This update adds the Advanced Firewall option to the NetSentron. This option will allow you to block all outgoing traffic unless expressly allowed by you. As it is an advanced option, we ask you to make sure you have read the instructions, also an understanding of Network Ports and Protocols is required to manage the advanced firewall.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.netsentron.com/update-331/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Update 3.3.0</title>
		<link>http://www.netsentron.com/update-330/</link>
		<comments>http://www.netsentron.com/update-330/#comments</comments>
		<pubDate>Thu, 12 Feb 2009 22:10:25 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Updates]]></category>

		<guid isPermaLink="false">http://www.netsentron.com/?p=1345</guid>
		<description><![CDATA[Released: March 18th, 2009
This update adds to the blacklists of the NetSentron and updates the content filter engine.
NOTE: This patch takes a long time to install! Several minutes in fact. It is also a large patch at about 12 megs, so please try to only install it from your desktop and not across the internet. [...]]]></description>
			<content:encoded><![CDATA[<p>Released: March 18th, 2009</p>
<p>This update adds to the blacklists of the NetSentron and updates the content filter engine.</p>
<p><span style="color: #ff0000;"><strong>NOTE</strong></span>: This patch takes a long time to install! Several minutes in fact. It is also a large patch at about 12 megs, so please try to only install it from your desktop and not across the internet. The patch is modifying the Content Filter configuration files and so it takes a while to go through all the files and update them. Please be patient when installing this update.</p>
<p>The following new categories are added to the blacklists:</p>
<p>astrology &#8211; Astrology websites<br />
blog &#8211; Journal/Diary websites<br />
books &#8211; Various books<br />
celebrity &#8211; Websites about celebrities<br />
desktopsillies &#8211; Wallpapers and other timewasting items<br />
filehosting &#8211; Sites to do with filehosting<br />
filesharing &#8211; Sites to do with filesharing<br />
financial &#8211; Sites to do with finance and banking<br />
guns &#8211; Sites to do with guns and fighting<br />
humor &#8211; Sites to do with humor<br />
magazines &#8211; Sites to do with Magazines and Ezines<br />
malware &#8211; Sites known to contain Malware<br />
manga &#8211; Sites containing Manga (Japanese cartoons)<br />
marketingware &#8211; Sites containing internet marketing<br />
sect &#8211; Sites containing information in sects<br />
shopping &#8211; Sites that allow you to shop</p>
<p>You can examine the contents of each category by going to the Filter-&gt;Blacklists page and clicking on the link for each category.</p>
<p><span style="color: #ff0000;"><strong>NOTE</strong></span>: all new blacklists are set to disabled by default. You must choose Banned, Filtered or Exception for the new categories to take effect.<br />
<span style="color: #ff0000;"><strong></strong></span></p>
]]></content:encoded>
			<wfw:commentRss>http://www.netsentron.com/update-330/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Update 3.2.9</title>
		<link>http://www.netsentron.com/update-329/</link>
		<comments>http://www.netsentron.com/update-329/#comments</comments>
		<pubDate>Thu, 12 Feb 2009 22:04:32 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Updates]]></category>

		<guid isPermaLink="false">http://www.netsentron.com/?p=1342</guid>
		<description><![CDATA[Released: January 5th, 2009
Added new auto back up feature that allows the NetSentron to automatically generate a back up file each Friday night at 11PM. (Note, on Internet Explorer, the check box will not stay checked, this is fixed in Update 3.3.0)
Fixed some other minor bugs in the NetSentron
]]></description>
			<content:encoded><![CDATA[<p>Released: January 5th, 2009</p>
<p>Added new auto back up feature that allows the NetSentron to automatically generate a back up file each Friday night at 11PM. (Note, on Internet Explorer, the check box will not stay checked, this is fixed in Update 3.3.0)</p>
<p>Fixed some other minor bugs in the NetSentron</p>
]]></content:encoded>
			<wfw:commentRss>http://www.netsentron.com/update-329/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

