4 ms·
I'm guessing from other comments that it checks logins on a wide variety of sites, some of which may be NSFW. Some employers might not like you accessing NSFW s
by maket 10y ago
I'm guessing from other comments that it checks logins on a wide variety of sites, some of which may be NSFW. Some employers might not like you accessing NSFW sites.
- frederikvs 10y agocorrect, among others it checks youporn. For this check it needs send a request to that domain, which may get flagged in certain corporate IT systems.
- jacquesm 10y agoThat would be a pretty crappy check then. After all any webpage could embed that favicon.
- ghurtado 10y agoAny page could also embed anything else NSFW, such as actual porn videos. The assumption is that these sites are generally NSFW by association. What would you propose instead?
- jacquesm 10y agoIf a filter is set up to not just block access to but also flag based on something as trivial to embed as a URL one would hope the technology would be a little bit more involved than a single hit on a .ico file for a flag.
- ghurtado 10y agoA web filter / proxy does not have any way to tell whether any individual HTTP request was requested as a result of HTML embedding, bookmarking, user entry or clicking on a link.
- jacquesm 10y agoExactly. So it shouldn't be used to 'flag' any employees.
- ghurtado 10y agoIf your position is that monitoring HTTP traffic is useless because favicons can be embedded into webpages, what method would you propose to monitor employees browsing habits then? Furthermore, how would you monitor the HTTP traffic of suspected terrorists? After all, anyone can embed an image to "www.isis.com/blackflag.jpg" into any webpage, so shouldn't we stop monitoring all such traffic? Your original assertion was that "it's a pretty crappy check", but I think what you are missing here is that it's the only possible check, minor irrelevant flaws and all.
- jacquesm 10y agoNo, it isn't the only possible check, but besides that the 'HTTP traffic of suspected terrorists' will be nicely encrypted in a way that you won't be able to intercept the URLS. Lots of fearmongering here, if you want to monitor your employees browsing behavior then you're going to have to supply them with the hardware they do the browsing on, lock that hardware down and install some nannyware to do the monitoring. That way you won't have to MITM each and every connection and you'll have a more secure setup overall.