YSK: Browsing "ALL" at work might get you pulled into an office, even with NSFW off.

RCMaehl [Any]@lemmy.world to You Should Know@lemmy.world – 908 points –

Why YSK: It appears several Lemmy Instances are flagged as suspicious and at least 1 instance intentionally using the name of ransomware. A couple of the big enterprise monitoring suites (Fortiguard, ZScaler) will flag your account and may end up with you being pulled into an office for an explanation, or worse.

TL;DR: Keep browsing to your local instance at work for now.

251

You are viewing a single comment

You guys aren't using DoT (DNS-over-TLS) or DoH (DNS-over-HTTPS) ??

That won't hide the IP and really doesn't hide the domain name either if your company actually has any decent monitoring on the network.

General rule: if you're on the company hardware or network just assume your IT department knows where you're browsing.

There's a good chance that SSL inspection is being used if it's picking up the names of instances.

I use DoH. What's DoT? What are the differences?

DoT uses the TLS protocol as far as I know while DoH uses the general HTTPS (443) protocol. But both of them are encrypted so you shouldn't worry about security with any of them. Just use the one that is supported with your device/app