Skip to content Skip to sidebar Skip to footer

Can I White List Sites in Vast for Uploading

Web Content Filtering

DrayTek'southward Spider web Content Filtering (WCF) facilities enable yous to protect your network and your users from web content co-ordinate to your preferences. There are many reasons for doing this, for instance:

Reason to Block Instance
Unsuitable Adult material for children
Undesirable Time wasting sites for employees
Dangerous Malware or virus-ridden spider web sites
Fraudulent Confidiential data leaving your network

Every bit DrayTek WCF is performed by your router - your point of entry to the Cyberspace - it is far more difficult to circumvent than software solutions installed on each customer/PC or Tablet and applies to guests too.

DrayTek'southward Web Content Filtering can be applied to any device capable of accessing the Internet, such as Smart TVs, Tablets and Mobile Phones, which may not otherwise take filtering solutions available.

Blocking/filtering tin can be selective for certain computers, users or groups besides, so that, for case, managers can have less filtering imposed than other users and time schedules tin can apply content filtering for specific time periods only (the facilities and granularity of this depends on the specific model of router selected).

Net Command for familes and children

Whilst the Cyberspace tin can exist hugely benign to whatsoever family users, both for adults and children, in that location is too the opportunity for it to become distractive, over-consuming as well as risky. For children, a common apply of control command is to block inappropriate content, such as web sites with sexual, fierce or other developed-oriented content in schools or anywhere else that children might use the Net. That's the inappropriate content, but even age-appropriate content can be undesirable. Facebook might be great for your teens, and CBeebies for your younger children, but non if they are supposed to be doing something else.

Many parents want to control admission to the Internet, for example allowing access to adequate web sites for specified times of 24-hour interval simply. For your developed users in the home, you may want to block access to sites which have a loftier probability of being infected with malware. Yous may also wish to block your ain computers from sending emails in case of trojan/zombie infection. At that place are infinite combinations of content filtering and firewalling you might want to impose in your home.


Staff Internet Corruption - A existent toll to your business organisation

The Net provides your business with an effective, useful and often essential facility. Your staff can use information technology to observe quick answers, liaise with customers, transport and receive emails and many other productive tasks. Unfortunately, the Cyberspace too provides the opportunity for mis-employ. DrayTek products can assistance you restrict, control and monitor staff Cyberspace usage.

Staff using your Internet facility for time-wasteful activities are costing you. Even more importantly these activities tin can put your businesses computers and network at risk. A recent survey of 10,000 employees indicated that 44% admitted to spending time on the Internet for personal apply, for up to two.1 hours per day.

Well-nigh staff are responsible and prudent with their Net use and we always recommend a suitable AUP (Adequate Utilise Policy) to be in identify so that staff or whatever users of your systems know what they are and aren't permitted to use the computers for. This AUP can be re-inforced by DrayTek routers which tin block specific content (either at certain times but or all times) and as well block potentially harmful file/code types from being installed by rogue web sites. At that place are some staff who will brand severe abuse of the Internet facilities - spending literally hours on personal matters or social networking sites.


Top 5 Personal Cyberspace Uses for Employees

  • Personal Email: Hotmail, Gmail, Yahoo etc.
  • Intant Messaging: Skype, AOL, Yahoo etc.
  • Social Networking: Facebook, Twitter etc.
  • Buying: Using Amazon, Ebay etc.
  • Multimedia : YouTube, iPlayer etc.

It's like shooting fish in a barrel to let a 'quick visit' go a prolonged stay without realising and losing track of time. All of the in a higher place activities can be immensely time consuming and addictive.

What doesn't quite make the listing just could be fifty-fifty more serious in its consequences is adult or illegal material existence accessed in the workplace, every bit well as the higher likelihood that such sites are infected with malware which will then become onto your business concern network. There is also the potential to 'innocently' download software and install it on local PCs, unwittingly introducing spyware or trojans onto your network.

Introducing DrayTek Web Content Filtering

DrayTek Web Filtering allows you to block web content in six main ways:

ane - Past matching keyword / specific sites
2 - By web site category (Subject to Subscription)
3 - By digital content type
4 - IP Filtering (Actually part of the firewall, forth with many other security features.)
5 - Filtering HTTPS with DNS
6 - Network Level SafeSearch

Features 1, 3, 4, v and 6 of the above are included with the router. Characteristic 2 is included but requires an annual subscription to the external server, which keeps a real-time constantly updated database of web sites. More details of that later.

Features supported varies with router model; please check on specification for confirmation of Web Content Filter capabilities.

one. Keyword Matching URL Content Filter

In Keyword Matching yous can specify a list of either banned (blacklist)) or permitted sites (whitelist). The DrayTek method is 'object' oriented, which means that you create lists of keywords or sites, can so grouping them and then employ them into specific user groups or fourth dimension periods

Using a blacklist, all sites would exist attainable by your users except those that match the keywords you specify. This would be useful, for example where there are specific sites known to be causing disruption or timewasting in your organization such as social networking or webmail. The case below would allow access to all sites except the ones listed:

Web URL blacklist

A whitelist, on the other paw, is much more restrictive on what your users tin can access equally information technology blocks all web sites by default then only allows access to web sites which match your keywords. This is useful when you actually want to lock down your Net access to but permit very specific web site admission. The example beneath would block access to all spider web sites except those listed:

Web URL Whitelist

The URL blacklist and whitelist feature back up varies with router model; Please check the specification of each product for details of keyword matching back up.

2. Web Site Category (DrayTek GlobalView, powered past Cyren)

DrayTek's GlobalView is built into most of our routers and allows you to select specific categories of web site which your router volition allow access to. For example, an office may wish to block access to social networking or other visitor time-wasting sites or a dwelling user might want to block developed sites from their children. In public Internet access facilities, you might desire to block various unsuitable categories.

WCF Categories

GlobalView covers 64 divide categories which yous can select as blocked or permitted. Every fourth dimension one of your users attempts to access a site, the router automatically queries the central GlobalView server to ascertain its nomenclature. This takes only milliseconds. If a site is blocked by GlobalView, according to the categories you have selected, instead of the requested spider web page, a alert bulletin is displayed to the user (y'all can customise the message).

The GlobalView central database is continuously updated with new sites and changes to sites but also records normally legitimate sites which have become compromised or contain malware (a unique characteristic to GlobalView). Admission to the GlobalView server requires an almanac subscription. A costless 30-day trial is included with all new routers so that you tin can endeavour the characteristic out before subscribing. Gyre down the box below to run across the 64 different categories which tin exist blocked past GlobalView, either permanently or at sure times of twenty-four hour period/week co-ordinate to your chosen schedule and for the PCs you lot cull.

GlobalView Categories

GlobalView requires a subscription to the GlobalView server. This is a 12-month subscription available from your dealer. There is no additional licensing for the number of users y'all accept; information technology is a flat fee based on your router model:

Subscription Type Supported Serial EAN
Group A
WCFA

Vigor 2820, 2830, 2832, 2850, 2860, 2862, 2865, 2866 serial

Vigor 2920, 2925, 2926, 2927, 3200, PBX2820, BX-2000 series

4719853553767
Group B
WCFB
Vigor 2110, 2130, 2620, 2710, 2750, 2760, 2762, 2765, 2766 serial 4719853553828
Group S
WCFS

Vigor 2930, 2950, 2955, 2952, 2960, 2962 series

Vigor 3220, 3300V+, 3510, 3900, 3910, 5510

4719853554306

Why GlobalView?

GlobalView, powered by Cyren, uses a unique method of categorisation to ensure the most accurate, relevant and upwardly to date database of web sites. In particular compared to other services, these are some important advantages of GlobalView:

  1. GlobalView is built into the hardware
    In that location are software solutions for category blocking or parental control but they have to be installed on each PC, tablet or device and maintained on each. Someone with the right skills (a skilled employee or smart child!) can often find a mode to bypass or disable the software. DrayTek's GlobalView operates at your Internet point of entry so examines all spider web site URLs requested and cannot be turned off without administrative rights to the router.
  2. GlobalView is a commercial/professional Service
    Different some other services, GlobalView does not rely on volunteers to submit suggestions for sites to include or rely on volunteers to categorise each site submitted (and multiple users to then concur with the category proposal). Relying on community-driven categorisation can lead to inaccuracies, delays, mischief and an incomplete database which omits many sites, particularly those which are more obscure or unknown (which are also more likely to exist undesirable). The GlobalView WCF service has been available for many years, and continuously evolves to meliorate performance and accuracy.
  3. GlobalView is non a Domain Resolution Service
    Therefore it is not possible to featherbed it only by changing the DNS settings on your PC, or by browsing by IP address instead of URL. GlobalView intercepts and examines all web requests for their specific destination, in add-on to intercepting DNS requests and blocking requests in that style.
  4. Categorisation uses an automated mechanism
    GlobalView URL filtering is based on a hugely scalable cloud-based architecture that uses the all-encompassing cloud computing resources available for categorization. GlobalView URLF uses a dynamically built, relevant local database with real-time connectivity to a hugely scalable cloud-based repository. GlobalView URLF therefore provides more complete, relevant categorization of the Internet. GlobalView's main benefit is the highly intelligent and authentic categorisation algorithms which are used to build its database.
  5. Zero-Hour Protection
    The Internet is a living, continuously growing and evolving arrangement. Every bit GlobalView operates in real-time, it can categorise a site from the moment it becomes available from the first fourth dimension it is requested, and re-categorise it if it changes at a later date without requiring community-driven or user intervention. Users do not have to manually submit sites for categorisation.
  6. Categorise IP Addresses
    Some other content filtering services can be bypassed simply by the user browsing to an IP address so that the URL is never considered/checked. GlobalView will categorise sites based on their IP address if a user tries to access via that method. i.eastward. Both world wide web.facebook.com and 69.63.190.xviii would be blocked by GlobalView if you have prohibited social networking. This is also particularly useful in combating phishing emails which unremarkably use IP addresses instead of URLs. The DrayTek router can, in addition, cake browsing past IP address altogether.
  7. Multiple Categories Per Site
    GlobalView can identify a single web site or page every bit falling into several categories, for case a site might provide both 'dating' and 'adult' content so if you cull to block either of those, GlobalView will correctly place it as both.
  8. Site granularity
    Whereas other services consider but the elevation level domain (TLD) i.e. the URL upwardly until the start "/", GlobalView will parse/consider the whole URL. This is particularly a trouble for Web ii.0 sites such as blog sites (members.tripod.com/sitename) where one user's weblog might be for kids and other user's contain developed-suited material. Another example is commercial sites which contain unlike materials types. For example, GlobalView volition distinguish between "sportsillustrated.cnn.com" (Sports pages) and "sportsillustrated.cnn.com/swimsuit/" (Swimwear models/nudity).
  9. Embedded Links are examined
    Another mutual methods that users might use to featherbed spider web controls is using parsing or translation web sites.
    For example, if y'all try to visit: "http://translate.google.com/translate?tl=it&u=http%3A%2F%2F www.swimwearplace.com %2F"
    and so GlobalView will correctly place that yous have asked Google to display 'www.swimwear.com' and block it if that is a category you accept prohibited, whereas other services volition simply see 'Google'' and permit admission based on the categorisation of Google (search engine).

3. Digital Content Type

DrayTek's Content filtering allows you lot to specify particular data types or web content to be blocked by the router. The Vigor is pre-gear up with many dissimilar content types or protocols. You tin can select whatever or all of them for blocking. There are infinite combinations merely some examples of ordinarily blocked content are:

  • Block download of executable (EXE) or compressed (Goose egg) files to reduce the chance or virus infection or installation of untested software.
  • Block Peer-to-Peer (P2P) software such as BitTorrent, to avert users using vast amounts of your bandwidth or engaging in media piracy.
  • Block HTTP/FTP upload or webmail to preclude theft/espionage of your company data
  • At Home, block Instant Messaging protocols to prevent your children from unsupervised chat with strangers.
  • Block SMTP from all devices other than your mail service server to stop Trojan Zombies

For a detailed list of the protocols and content types which tin can exist blocked, Click Here.

4. IP Filtering

This is a more than technically complex method. All data sent across the Cyberspace is sent as a 'information packet' between devices (for instance between your PC and a web site) Each device has its own IP address (such as '203.0.113.86'). In addition, each data bundle can exist 1 of several information types (TCP, UDP, ICMP etc.) and may also take additional information such as TCP port numbers. Don't worry if this all sounds a bit complicated; the useful factor here is that these packets can be distinguished and therefore rules tin can be set up on the router to block or laissez passer packets which match parameters you choose.

Examples of useful IP filters might be to block incoming postal service from all but known mail servers, or to allow access to your internal web server from all addresses except known remote locations. IP Filters can be nested then that a chain of filters can all be tied together and information passed only if i of, or all of the dominion criteria are met. Every bit we said, it's a technically complex characteristic but immensely powerful.

Note : Although we include IP filtering here, near users actually consider that to be function of the main firewall features as it's not filtering 'by content' as such.

v. Filtering HTTPS with DrayTek DNS Filter

Concerns regarding privacy and security have increasingly lead to web sites moving their services to web servers that offer SSL/TLS connections as standard. SSL/TLS connections are those prefixed with https:// or commonly shown with a 'padlock' symbol in your browser.

SSL/TLS is a protocol that allows communication to exist secured with encryption so that it can't be read by a tertiary party - anyone in between y'all and the server. This security also extends to the bodily URL (spider web address) that the user enters, which has an impact on web content filtering methods that categorise websites based on the URL that is beingness accessed.

DrayTek Vigor routers can command access to web sites accessed over SSL/TLS with the DNS Filter, which builds upon the router'due south Content Security Management functionality. When a PC tries to access a spider web site, it has to always convert that web address into an IP address (due east.g. 203.0.113.67). That IP accost itself cannot be encrypted past SSL/TLS because your router has to know where to send the data to!

DrayTek'south DNS Filter examines all DNS lookups from your PCs, Tablets and other devices and and then makes categorisation or content filtering decisions. DNS Filter can be used with both the Keyword matching URL filter (whitelists/blacklists) and the GlobalView Web Content filter.

This cannot exist bypassed by irresolute the DNS servers used to ane that does non employ filtering; the router intercepts and inspects all DNS queries, applying filtering to each one.

The DNS Filter links to the Vigor router'due south IP Filtering Firewall which gives full control of whom the Content Filtering is applied to. For case, the DNS Filter could apply a restrictive profile to a child's Tablet or a wireless network for guests, with a less restrictive profile for other devices on your network.

More details on DrayTek'due south DNS Filter can be found here:

DrayTek DNS Filter

6. Network Level SafeSearch

Filtering developed content on large web sites or search engines can evidence hard; blocking access to popular sites such as YouTube, Google or Bing is not a desirable option just applying content filtering to these sites, which force HTTPS connections instead of unencrypted HTTP, is often not possible.

Access to these web sites is secured with TLS encryption, which limits what a router'south URL Content Filter or Web Content Filter can achieve considering the URL cannot be inspected and additionally may not exist indicative of the actual content beingness displayed.

DrayTek Vigor routers that back up LAN DNS can enforce SafeSearch for web sites that offer this facility to network administrators.

YouTube, Google search and Bing search each provide a network level method to control SafeSearch through the employ of a special hostname.

Many popular sites at present offer this form of SafeSearch that doesn't rely on enforcing settings on individual computers and devices, which can be potentially bypassed and is time consuming to configure.

With DrayTek's LAN DNS characteristic, accessing "world wide web.google.com" tin be redirected to "forcesafesearch.google.com", which enforces SafeSearch for all devices accessing Google search through the DrayTek Vigor router'southward network.

This can be practical to Google for all countries (or Top-Level-Domains) using wildcards, such every bit "www.google.*", which avoids the limitation of this being bypassed simply by accessing some other country's Google site i.e. "www.google.co.jp" or needing to manually enter every TLD when configuring this facility.

Similarly to the DNS Filter, the LAN DNS feature takes effect on all DNS Lookups passing through the router, so configuring a PC to use another DNS server will not avoid the enforcement of SafeSearch.

DrayTek Accessories

  • Web Content Filtering

    Web Content Filtering

  • Vigorcare

    VigorCare

  • Wireless LAN Aerials

    Wireless LAN Aerials

  • USB Thermometer

    USB Thermometer

  • SFP Direct Adhere Cablevision

    SFP Direct Attach Cable

  • Magnetic Base of operations & Extension

    Magnetic Base & Extension

  • Outdoor 4G Antenna

    Outdoor 4G Antenna

  • High Ability PoE Injector

    DrayTek High Power PoE Injector

  • Rack Mountain Bracket

    Rack Mount Bracket

  • VigorConnect

    VigorConnect

windsorhatic1946.blogspot.com

Source: https://www.draytek.co.uk/products/accessories/web-content-filtering

Post a Comment for "Can I White List Sites in Vast for Uploading"