Smoothwall

Any and all ideas and feedback for Smoothwall

You've used all your votes and won't be able to post a new idea, but you can still search and comment on existing ideas.

There are two ways to get more votes:

  • When an admin closes an idea you've voted on, you'll get your votes back from that idea.
  • You can remove your votes from an open idea you support.
  • To see ideas you have already voted on, select the "My feedback" filter and select "My open ideas".
(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. LCD failover status

    Whe you buy a UTM, there is an LCD screen on it.

    Is it possible to show the status of the failover on it?
    Now I'm guessing which one (or when something is broken: 2) of the smoothwalls is active.
    When you have it on the display, it should be clear which one is active.

    7 votes
    Vote
    Sign in
    Check!
    (thinking…)
    Reset
    or sign in with
    • facebook
    • google
      Password icon
      I agree to the terms of service
      Signed in as (Sign out)
      You have left! (?) (thinking…)
      0 comments  ·  Flag idea as inappropriate…  ·  Admin →
    • Link on block page to login page

      With Core Auth set as the auth policy, a user can still browse unidentified if no other methods are being used to update the Smoothwall with the user's identity (e.g. Kerberos script/BYOD/SSL login page). In this case, most browsing would still succeed (as they'd get the default policy), but when blocked browsing to a site, users would benefit from a link available on the blockpage to the login page.

      3 votes
      Vote
      Sign in
      Check!
      (thinking…)
      Reset
      or sign in with
      • facebook
      • google
        Password icon
        I agree to the terms of service
        Signed in as (Sign out)
        You have left! (?) (thinking…)
        planned  ·  0 comments  ·  Flag idea as inappropriate…  ·  Admin →
      • Synchronise knowledge of authenticated users

        Currently, most methods that update the Smoothwall about a user’s identity (such as the Kerberos Scripts) must be configured to update all Smoothwalls in a cluster. This is because there is currently no way to synchronise the knowledge of user=IP across the cluster. Without ensuring all are updated, there is a good chance that the client will be load balanced to a Smoothwall that is not aware of their login.
        Having to configure the scripts to update each and every Smoothwall adds to the load on the Smoothwalls, and also increases the likelihood of issues.
        This idea is for a…

        7 votes
        Vote
        Sign in
        Check!
        (thinking…)
        Reset
        or sign in with
        • facebook
        • google
          Password icon
          I agree to the terms of service
          Signed in as (Sign out)
          You have left! (?) (thinking…)
          0 comments  ·  Central Management, Clustering & HA  ·  Flag idea as inappropriate…  ·  Admin →
        • Bandwidth graph instead of hits

          I would rather see a scrolling Bandwidth monitor than the hits monitor.

          1 vote
          Vote
          Sign in
          Check!
          (thinking…)
          Reset
          or sign in with
          • facebook
          • google
            Password icon
            I agree to the terms of service
            Signed in as (Sign out)
            You have left! (?) (thinking…)
            0 comments  ·  User Experience  ·  Flag idea as inappropriate…  ·  Admin →
          • Option to set custom port in Logs and reports > output settings

            In the Output settings page there is no where to set the SMTP server port, Google Mail doesn't use the standard port so is unable to send any notifications.

            1 vote
            Vote
            Sign in
            Check!
            (thinking…)
            Reset
            or sign in with
            • facebook
            • google
              Password icon
              I agree to the terms of service
              Signed in as (Sign out)
              You have left! (?) (thinking…)
              0 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
            • Firewall - Ability allow ports based on DNS Names

              Hi Guys,
              This may be some what only applicable to schools, but we only allow our staff and Students to Access a single mail system (Office 365). We have a few systems that use IMAP or POP3 so instead of allowing All Ports from a Server to the External World or to a Specified IP Address it would be good if we could just put in the DNS Name;

              Example;

              Allow port 993 to imap-mail.outlook.com

              Instead of having to find the IP Addresses used by the Server after it redirects to a new URL.

              1 vote
              Vote
              Sign in
              Check!
              (thinking…)
              Reset
              or sign in with
              • facebook
              • google
                Password icon
                I agree to the terms of service
                Signed in as (Sign out)
                You have left! (?) (thinking…)
                2 comments  ·  Flag idea as inappropriate…  ·  Admin →
              • Radicalisation

                Have just received a concerned call from a Senior Manager about the fact that we should be blocking "Radicalisation" as a specific category on the internet filtering. (Other products, "Websense" advertise that they do this, which is what I got quoted) I couldn't see this term used specifically despite seeing terrorism. So she was still concerned about this category. If it does it, it might be worth changing the name on the category terrorism to terrorism / radicalisation if that is what it does or something equivalent. I wouldn't have had to raise a call if it did.

                1 vote
                Vote
                Sign in
                Check!
                (thinking…)
                Reset
                or sign in with
                • facebook
                • google
                  Password icon
                  I agree to the terms of service
                  Signed in as (Sign out)
                  You have left! (?) (thinking…)
                  0 comments  ·  Guardian Filtering  ·  Flag idea as inappropriate…  ·  Admin →
                • Read only admin

                  Having a admin login that is read only. Some of our customers want to login, but are not allowed to make any change. So they need a read only login.

                  11 votes
                  Vote
                  Sign in
                  Check!
                  (thinking…)
                  Reset
                  or sign in with
                  • facebook
                  • google
                    Password icon
                    I agree to the terms of service
                    Signed in as (Sign out)
                    You have left! (?) (thinking…)
                    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
                  • Lack of Graphs

                    This page is lacking graphs. It would be much nicer if we had graphs on the overview page.

                    3 votes
                    Vote
                    Sign in
                    Check!
                    (thinking…)
                    Reset
                    or sign in with
                    • facebook
                    • google
                      Password icon
                      I agree to the terms of service
                      Signed in as (Sign out)
                      You have left! (?) (thinking…)
                      0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                    • Change Tracking / Auditing

                      Change tracking or auditing of changes applied would be useful. The addition of adding a note would serve as a reminder of why/who/when a change was made. Would be specially useful where multiple admins maintain a single Smoothwall or a cluser.

                      67 votes
                      Vote
                      Sign in
                      Check!
                      (thinking…)
                      Reset
                      or sign in with
                      • facebook
                      • google
                        Password icon
                        I agree to the terms of service
                        Signed in as (Sign out)
                        You have left! (?) (thinking…)
                        1 comment  ·  Flag idea as inappropriate…  ·  Admin →
                      • Landing page when accessing auth'd wifi (Like the cloud)

                        Hi there - At the moment my users are authing every day automatically via 802.11x - This is brilliant but.... It would be nice if I could offer up a landing page daily with news & links as offer a lot of services on our BYOD network that students might not be aware of.

                        If you've ever used "the cloud" wifi in pubs with fastconnect you'll know what I mean - It automatically auth's you for that pub's wifi (so no logon) but it will throw you to a landing page with that pubs menu or infomation on to, you…

                        7 votes
                        Vote
                        Sign in
                        Check!
                        (thinking…)
                        Reset
                        or sign in with
                        • facebook
                        • google
                          Password icon
                          I agree to the terms of service
                          Signed in as (Sign out)
                          You have left! (?) (thinking…)
                          1 comment  ·  Flag idea as inappropriate…  ·  Admin →
                        • Firewall rules sync

                          We have some customers with multiple smoothwalls running behind a loadbalancer. Now we have 1 smoothwall as master in hardware failover that do the firewall. the other smoothwall's are only for filtering.

                          The best solution is to sync the firewall rules. if the firewall rules are in sync, there is no need for a expensive 2e smoothwall that is in failover, cause the others will be the failover.

                          As far as I can see: there is nothing machine specific in the config for the firewall...

                          8 votes
                          Vote
                          Sign in
                          Check!
                          (thinking…)
                          Reset
                          or sign in with
                          • facebook
                          • google
                            Password icon
                            I agree to the terms of service
                            Signed in as (Sign out)
                            You have left! (?) (thinking…)
                            1 comment  ·  Flag idea as inappropriate…  ·  Admin →
                          • Comments in Port Forwards Page

                            Once you have selected Show Comments in the Port Forwards page, that selection should remain in effect until I either (a) logout or (b) switch to hide comments and not revert back to hidden comments each time I add or edit a port forward rule

                            2 votes
                            Vote
                            Sign in
                            Check!
                            (thinking…)
                            Reset
                            or sign in with
                            • facebook
                            • google
                              Password icon
                              I agree to the terms of service
                              Signed in as (Sign out)
                              You have left! (?) (thinking…)
                              1 comment  ·  Flag idea as inappropriate…  ·  Admin →
                            • Wget under IP tools

                              Under System » Diagnostics » IP tools we have 'ping' and 'traceroute' It would be nice if we could have a way of checking a connection out on port 80/443.

                              Not sure if it would be best to go via squid/guardian or directly out.

                              1 vote
                              Vote
                              Sign in
                              Check!
                              (thinking…)
                              Reset
                              or sign in with
                              • facebook
                              • google
                                Password icon
                                I agree to the terms of service
                                Signed in as (Sign out)
                                You have left! (?) (thinking…)
                                0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                              • Remove Local Hostname From Reports

                                The local hostname of the smoothwall is showing in reports due to our kerberos script reporting user information. It skews our top hits reports because it is the server with the most hits on the server, far above its next competitor.

                                1 vote
                                Vote
                                Sign in
                                Check!
                                (thinking…)
                                Reset
                                or sign in with
                                • facebook
                                • google
                                  Password icon
                                  I agree to the terms of service
                                  Signed in as (Sign out)
                                  You have left! (?) (thinking…)
                                  0 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
                                • Copy a category / category group

                                  Isn't it good to be able to clone a category group ? this way you can make a copy modify and apply to a policy as a test. If it goes wrong at least you have the original to go back to.

                                  14 votes
                                  Vote
                                  Sign in
                                  Check!
                                  (thinking…)
                                  Reset
                                  or sign in with
                                  • facebook
                                  • google
                                    Password icon
                                    I agree to the terms of service
                                    Signed in as (Sign out)
                                    You have left! (?) (thinking…)
                                    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
                                  • unblock news site homepage, not subpages

                                    The homepage of newsite, contains most of the time all kind of links to newsitems. Those news items contains sometimes unwanted words.

                                    At the moment the dutch news site www.nu.nl is blocked by content filtering in the category Pornography. Why, cause there is a news item about sex-toys, and another about Pussy Galore. (and maybe some other news that is totaly not related to each other)...

                                    Is it posible to have everything of a newssite with content filter, except the root? by example: http://www.nu.nl/werk-en-prive/4057439/helft-nederlandse-mannen-gebruikt-seksspeeltjes.html should be blocked by content filtering (or URL filter), but http://www.nu.nl/ should never be blocked by…

                                    3 votes
                                    Vote
                                    Sign in
                                    Check!
                                    (thinking…)
                                    Reset
                                    or sign in with
                                    • facebook
                                    • google
                                      Password icon
                                      I agree to the terms of service
                                      Signed in as (Sign out)
                                      You have left! (?) (thinking…)
                                      0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                                    • firewall without reject all or allow all

                                      If you now create a port rule, there is always one line (not visible): reject all, or allow all.

                                      If you now want to create a rule that allows port 3389, for everyone. Block port 25 for everyone. No problem: default rule, Allow only listed ports: 3389, so port 25 is blocked, port 3389 is available. But then you want of course that the mailserver is able to send mail out, so you create a port rule: allow only listed port: 25. So the mail server is able to mail, but at that moment: port 3389 is not available anymore.

                                      7 votes
                                      Vote
                                      Sign in
                                      Check!
                                      (thinking…)
                                      Reset
                                      or sign in with
                                      • facebook
                                      • google
                                        Password icon
                                        I agree to the terms of service
                                        Signed in as (Sign out)
                                        You have left! (?) (thinking…)
                                        1 comment  ·  Flag idea as inappropriate…  ·  Admin →
                                      • Whitelist specific attachments from certain domains

                                        We receive a lot of zip files. These are the number one source of viruses we get in email. Viruses are hidden in zip format. I've blocked compressed formats in our email set-up.

                                        Trouble is, we have customers that have automated systems that send us reports in zip format which we no longer get.

                                        The ability to whitelist attachments from certain domains would be extremely useful.

                                        3 votes
                                        Vote
                                        Sign in
                                        Check!
                                        (thinking…)
                                        Reset
                                        or sign in with
                                        • facebook
                                        • google
                                          Password icon
                                          I agree to the terms of service
                                          Signed in as (Sign out)
                                          You have left! (?) (thinking…)
                                          0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                                        • The Web Filter logs contain powerful data - we need better methods to search it

                                          I'd like to see a way to export the entire log, as well as subsets of the log, determined by search criteria in the user interface.

                                          We recently had a night shift custodian surfing the web when he was supposed to be cleaning. We knew which computer (IP Address) he was using, but needed to gather data on when he was using it, over the last few weeks.

                                          I had to search the Web Filter logs, 2 hours at a time, 200 hits at a time, for each day, and write down when activity started and stopped.

                                          There NEEDS to…

                                          4 votes
                                          Vote
                                          Sign in
                                          Check!
                                          (thinking…)
                                          Reset
                                          or sign in with
                                          • facebook
                                          • google
                                            Password icon
                                            I agree to the terms of service
                                            Signed in as (Sign out)
                                            You have left! (?) (thinking…)
                                            3 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
                                          ← Previous 1 3 4 5 28 29
                                          • Don't see your idea?

                                          Feedback and Knowledge Base