During downtime I didn’t really care about surfing on reddit, but it does feel a bit weirder to surf into some “random” Lemmy instance like lemmy.dbzer0.com on my work computer for some reason. Do you surf the fediverse at work?

  • kernelle@0d.gs
    link
    fedilink
    arrow-up
    46
    ·
    8 months ago

    Be careful browsing federated social media on work internet. You don’t know where requests will be made, I’ve seen a post of someone getting in trouble because lemmynsfw was pre-loaded by their browser.

    Use a VPN

    • m-p{3}@lemmy.ca
      link
      fedilink
      arrow-up
      6
      ·
      edit-2
      8 months ago

      Some instances at least will proxy the images requests, naking all traffic appears to be from your home instance but it’s not a guarantee. We had to turn it off because of some issues early during the rollout, we’ll look into turning it back on soon.

        • P1nkman@lemmy.world
          link
          fedilink
          arrow-up
          4
          ·
          8 months ago

          My work has blocked the use of VPN on their guest network, so I don’t use WiFi at all at work. Not turning off my VPN.

        • nutsack@lemmy.dbzer0.com
          link
          fedilink
          English
          arrow-up
          2
          ·
          8 months ago

          if they can see browser cache, which is what i assumed “pre-loaded into the browser” means there, then a VPN won’t help. you’re still making requests to pornhub

      • PM_Your_Nudes_Please@lemmy.world
        link
        fedilink
        arrow-up
        5
        arrow-down
        1
        ·
        edit-2
        8 months ago

        Http: Your employer can see every webpage you visit on the work WiFi. If you visit PornHub, they can see which specific videos you watched. If you were logged into your account, they can (depending on how the site is set up) likely even see account details if you visited your account page.

        Https: Your employer can see the base URLs you visited, but not specific content. They can see you visited PornHub, but can’t see which specific videos.

        VPN: You create an encrypted connection with a VPN server, so all of your traffic passes through that. Now your employer only sees the encrypted traffic to and from the VPN. If you visited PornHub, all the employer would see is the encrypted VPN traffic. The same rules about http and https still apply to the VPN server, (for instance, on https the VPN provider can see you visited PornHub, but can’t see which specific videos,) but your employer basically only sees encrypted white noise.

        Tor: VPN servers connected together in a chain, with an entry node, secondary node, and exit node. Since the VPN server can still follow the same rules about http and https, Tor takes it a step farther by obfuscating which user is connecting to which site. You connect to the entry node and establish an encrypted connection. It sees your traffic to/from an encrypted connection, and passes it to the secondary node. The secondary node only sees the encrypted traffic, which it passes to the exit node. The exit node establishes an encrypted connection with the site, which it uses to pass the site data to/from you. So no single node sees you, the unencrypted traffic, and the site. So (without owning at least the entry and exit nodes and performing a rather technically complicated timing attack) nobody has any way of figuring out which site you’re visiting. If you visited PornHub, the entry node would only see you, the secondary node would only see encrypted traffic, and the exit node would only see PornHub.

    • unalivejoy@lemm.ee
      link
      fedilink
      English
      arrow-up
      1
      arrow-down
      3
      ·
      8 months ago

      lemmynsfw is already blocked by corporate wifi. Nothing to worry about.