Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Cache traffic

    Scheduled Pinned Locked Moved Firewalling
    11 Posts 5 Posters 1.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • H Offline
      Harvy66
      last edited by

      Depending on where you live and the context of what you're doing, intercepting personal email or general communications can be illegal. The first step to intercepting modern traffic would be to make sure no one is using encrypted traffic or doing a man-in-the-middle and decrypting the traffic. Again, possibly illegal depending on intent, local laws, etc.

      Tracking websites could fall under a few areas. You could potentially log all DNS requests, but not to say all of those will result in a website being hit, but you'll get a general idea of what kinds of sites are being hit. The other way to track websites being hit would be to monitor the HTTP traffic, but HTTPS traffic is encrypted, so you'd need to man-in-the-middle to decrpyt the traffic in order to monitor it.

      If you live in the USA, accessing other people's email without consent, even if they're on your network, can result in prison time, even if that person is your spouse.

      1 Reply Last reply Reply Quote 0
      • T Offline
        thaint
        last edited by

        I do not worry about that issue because leadership is required. if anyone knows only help with
        Thanks !

        1 Reply Last reply Reply Quote 0
        • D Offline
          doktornotor Banned
          last edited by

          (Illegally) spying on others == leadership?

          1 Reply Last reply Reply Quote 0
          • H Offline
            Harvy66
            last edited by

            I guess I'm confused if you're actually just trying to "cache" data to speed up web access or attempting to "save" data, like emails and log IM chats.

            1 Reply Last reply Reply Quote 0
            • KOMK Offline
              KOM
              last edited by

              He's trying to log everything from the looks of it.

              Kim Jong Un, is that you?

              1 Reply Last reply Reply Quote 0
              • T Offline
                thaint
                last edited by

                because I need evidence for internal processing
                one has configured this feature, help me with
                thanks !

                1 Reply Last reply Reply Quote 0
                • H Offline
                  Harvy66
                  last edited by

                  You're probably better off handling this kind of stuff on the computers instead of breaking the security of your network.

                  1 Reply Last reply Reply Quote 0
                  • T Offline
                    thaint
                    last edited by

                    @thaint:

                    Hi all
                    I want to save the configuration of all the traffic on the pfsense firewall, for example, email content, yahoo chat, skype,visit website….generally all data
                    please people help !
                    thanks !

                    No one helped me or nobody configuration issues

                    1 Reply Last reply Reply Quote 0
                    • johnpozJ Offline
                      johnpoz LAYER 8 Global Moderator
                      last edited by

                      How exactly would pfsense log the conversations in skype/yahoo chat that is inside an encrypted tunnel?  You want to record the video of a skype call as well?

                      Maybe you should do a bit of research on how internet works before you go thinking you can click a button and log everything..

                      Pretty sure yahoo went https for their chat back end of 2014 or so..  As to skype
                      https://support.skype.com/en/faq/FA31/does-skype-use-encryption

                      All Skype-to-Skype voice, video, file transfers and instant messages are encrypted. This protects you from potential eavesdropping by malicious users.

                      Maybe you want help in how to setup a MITM so you can log your users chat messages?  Email is going to be sent over an encrypted connection as well..  Either via https webpage like gmail or yahoo, etc.  Or via tls connection (starttls) while yes is quite easy to trick that system into having email sent to your server, etc. etc.. You really need to understand the nature of internet traffic before you think you can just log it all and see what your users are actually doing.

                      If you want a history of what they are doing vs work, then just use a proxy.. While this does not log the actual data, it would log connections and even be setup to require auth to get through it so you know what user went where..

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 25.07 | Lab VMs 2.8, 25.07

                      1 Reply Last reply Reply Quote 0
                      • H Offline
                        Harvy66
                        last edited by

                        @thaint:

                        @thaint:

                        Hi all
                        I want to save the configuration of all the traffic on the pfsense firewall, for example, email content, yahoo chat, skype,visit website….generally all data
                        please people help !
                        thanks !

                        No one helped me or nobody configuration issues

                        It's also illegal to willingly assist someone in committing a crime. No one here wants to go to prison to help someone on the internet get some help with some ethically messed up version of "leadership".

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.