Smoothwall Filter (On Premise)

Any and all ideas and feedback for Smoothwall

You've used all your votes and won't be able to post a new idea, but you can still search and comment on existing ideas.

There are two ways to get more votes:

  • When an admin closes an idea you've voted on, you'll get your votes back from that idea.
  • You can remove your votes from an open idea you support.
  • To see ideas you have already voted on, select the "My feedback" filter and select "My open ideas".
(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Ability to schedule a Guardian restart

    Especially useful in a cluster setup. It would be useful to be able to schedule a Guardian restart when for example additional web proxy ports have been configured and a Guardian restart is required for the change to be implemented on all Smoothwall nodes in a cluster.

    22 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  2. Schedule updates to automatically take place at set times of the day?

    I'd like the ability to have system updates automatically carried out in the very early hours of the morning. Sometimes when an update is done the system forces a disk check. This results is the system being down for some time. If updates could be scheduled for 3am and the system restsrted afterwards then the effect of the update to the working enviroment would be kept to a minimum

    2 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Guardian Filtering  ·  Flag idea as inappropriate…  ·  Admin →
  3. A way to record which users add the site to allow list or block list

    A way to record which users add the site to allow list or block list. Therefore if two users are log in at the sametime we can see who add the sites to the allow list.

    19 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  4. Automatic Line rate detection (speed test) and failover

    We have two connections at our school. One is an FTTC line (Primary), used for web traffic (going thru Guardian), and the other is a Bonded SDSL line (secondary) used for server traffic. At times, the bandwidth on our FTTC can get throttled, and since the line is still up, SW will not fail over to the Secondary line.

    Is it possible to implement a feature in Advanced Firewall, that regularly checks the line rate (say at 5 or 10 min intervals - customisable) on the currently active connection. If this speed test results in a line rate below a…

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  5. Auth Diagnostics to drop checks for trusted domains

    Add a check box under the authentication server configuration to disable checking trusted domains under the "Active directory" authentication method.

    This has been seen as an issue where there are a large number of domains in a forest e.g. School Academy Trusts and where open routing is not allowed across the trust network for seucrity reasons the Authentication Diagnostics currently takes a long time to return.

    The recent update has reduced the reboot and auth service restart timescales, but the diagnostics still include this functionality.

    4 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  6. Require authentication based on when

    we share our campus and network with our church. After school hours, we have many users on campus that do not have credentials that they can use to authenticate against. Being able to not require authentication at certain times would allow those people access, while allowing me to continue monitoring student traffic.

    7 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  7. Allow squid error pages to be customised.

    The requested URL could not be retrieved

    While trying to retrieve the URL: http://dsdsdsdsasadsschee.com/

    The following error was encountered:

    Unable to determine IP address from host name for dsdsdsdsasadsschee.com

    The dnsserver returned:

    Name Error: The domain name does not exist.

    This means that:

    The cache was not able to resolve the hostname presented in the URL.

    Check if the address is correct.

    Your cache administrator is $foo.

    --------

    This breaks their minds and they ask for the random website to be unblocked because "the proxy said something".

    Suggestions:

    1) Allow Squid to serve custom error pages, either locally or from…

    33 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    under review  ·  1 comment  ·  Guardian Filtering  ·  Flag idea as inappropriate…  ·  Admin →
  8. Different Login Timeouts for different groups

    Be nice to be able to set (for example) staff to all day login timeout (especially if they're on their own PC) and have students set the length of a lesson.

    39 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    4 comments  ·  Flag idea as inappropriate…  ·  Admin →
  9. Add blocked username to Recent blocks dashboard.

    This would make the section meaningful and save me having to perform constant searches to identify rogue users.

    9 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  10. Ability to have DHCP Server running on a smoothwall update DNS records

    Currently DHCP server running on the smoothwall does not have the capability to update DNS servers records. Exstending this functionality would be useful to help keep DHCP and DNS records in sync.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  11. Ability to limit access to Facebook.com to selected Facebook accounts

    Allow certain accounts eg. Organisation Facebook accounts access to Facebook but no others.

    4 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Guardian Filtering  ·  Flag idea as inappropriate…  ·  Admin →
  12. Kerberos Auth: hide computer accounts on active users

    Since switching to Kerberos auth, the active users page (under Services > Auth) lists all the computers that have connected to the internet whilst idling.,This makes the list massively long, so it would be handy to have a checkbox (or w/e) to hide any result with a $ in the username.

    4 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  13. Option to disable ICMP redirects from Smoothwall

    When using a Smoothwall alongside an existing default gateway/firewall on the same local network the Smoothwall will send ICMP redirects to the clients informing them the to use the alternative route.

    This could be unhelpful when using the Smoothwall as the client gateway with transparent filtering for example.

    6 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
  14. Options to configure interface speed and duplex

    Some devices (in particular some older Cisco routers) seems to struggle with auto negotiation and require ethernet interface speed and duplex to be manually configured.

    7 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  15. Make guardian listen to x-forwarded headers for authentication/filtering

    Make guardian lissen to x-forwarded headers for authentication/filtering. This will give the guardian the ablility to know the true IP of a user if the device that is NATTING the user has the ability to send the x-forwarded header

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    5 comments  ·  Guardian Filtering  ·  Flag idea as inappropriate…  ·  Admin →
  16. Incorporate wireless access point functionality into UTM devices

    For small offices where a UTM-100 or 300 is in use, incorporate an access point so that remote branches can be centrally managed for wireless access as well as filtering.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
  17. Require a username and password to uninstall Mobile Guardian from a users machine

    Users who have requested Admin access on their laptops and have been granted the access are currently able to remove mobile guardian from their laptops.
    It should require another username and password (preferably the mgclient username and password which was used on setup) to stop the user from being able to uninstall mobile guardian.
    If by some how, they have removed mobile guardian, there should be a way which stops the user from browsing what so ever until they bring it back to the mobile guardians home location and ask a sysadmin to reinstall it for them.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Guardian Filtering  ·  Flag idea as inappropriate…  ·  Admin →
  18. Searching the IDS/IPS rules is absolutely necessary

    In the IDS and IPS policies it would be really nice if you could search the policies for a text string, because there are SO many rules and it takes forever to find the one you are looking for.

    5 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  19. Documentation or web GUI to show further details as to what is in each section for replication

    Linked in with: http://smoothwall.uservoice.com/forums/145832-general/suggestions/3166354-separate-authentication-archive-settings

    But to have better documentation about what is and isn't in each setting that can be backed up - for example a definitive table.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  20. Internal/External Primary and Secondary DNS with resiliance

    Query from customer: "My question to smoothwall is under the bonnet can we set dns to use twin internal primary dns ip's and twin external dns ip's ? to bring back the resilience."

    In essence, a Primary Primary / Primary Secondary and Secondary Primary / Secondary Secondary DNS server setup

    0 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: facebook google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Smoothwall Filter (On Premise)

Feedback and Knowledge Base