Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


Filter this topic showing only the reply marked as answer View this topic in a long page with up to 500 replies per page Create new topic
1 | 2 | 3 | 4 
nunz
1421 posts

Uber Geek
+1 received by user: 314
Inactive user


  #2026268 31-May-2018 14:13
Send private message

Behodar:

 

raytaylor: If the website provider says "we had a hacker or someone sharing music that came in from 100.101.102.103:14291" we can instantly say well thats customer ip address 100.101.102.103 - john doe from york street.

 

As an ISP you can do that, but I was using the perspective of a site owner. If I understand correctly, the only information I can get out of a CG-NAT IP address is the ISP that it's allocated to. Without actually contacting the ISP (which would presumably involve its own privacy policy etc) I can't get any end-user details out of a CG-NAT IP address. Please do correct me if I'm wrong!

 

 

Many businesses and other organisations have fixed IP addresses. Doing  reverse ip lookups, dns lookups and traceroutes returns a lot of information about who is at the other end. end users leave traces too which can be tracked. We got one guy who was attacking a business with DOS type spam attacks via his ip address as we then linked it to a post made in an online chat / BBS which had enough information to tie two data sets together. We contacted his isp - who told us he wasn't with them as they had banned him, then had to retract and recorrect as he was back online with them.

 

On its own an ip address doesn't tell much but if you add enough information from other sources it starts to add up - sometimes. Jo average home user not so much - unless they have kids playing online games and then the wealth of possible material increases.  Clients daughter getting some pretty nasty bullying anonymously online. We could trace an ip address but no idea who it was - until we sent an email to a likely source, with return receipt attached, and when it came back to us was could link the two - and deal with the parents and principle to get things stopped.

 

Generally dealing with a problem from a person you have to talk to the isp who owns the block and trust they will do their job. They wont however confirm if there is a person or what they do - seems to be a breach of privacy.

 

 

 

 

 

 

 

 




nunz
1421 posts

Uber Geek
+1 received by user: 314
Inactive user


  #2026275 31-May-2018 14:21
Send private message

gnfb:

 

I just went to a service called Docular after downloading there a plugin for Wordpress that suggested they would provide the means free of charge to create a relevant privacy policy for ones website, to make it GDPR compliant.

 

All is true BUT when you get to the interactive template you are presented with a myriad of options, choices, selections etc. 

 

I estimate it would take a month of Sundays to figure it out and find out what xyz means and what you put where etc.

 

Forget it! I am sure the academics and professionals will salivate at all the work. Meanwhile, Joe Bloggs doesn't stand a chance!

 

So

 

If whoever is running this show over in the EU decides that they are going come down on that little Wordpress site, in little old kiwi land, apparently you get a few chances to fix it before they hit you with big fines. 

 

I'm thinking if that is the case lets wait till they bark before I jump?

 

Just a side thought I wonder if its possible to somehow ban block etc the eu from the site and if one did that would that be a avoiding the need to comply with all this BS , sorry consumer and individual protection.?

 

Ok have at me.

 

 

 

 

Yes you can. There are databases of ip blocks tied to country codes, isps etc. Also there are tools that will track an ip address, check the route it took and then report back likely location based on routing via major international gateways. If someone is connecting to you and you don't know where they are from checking the path back useually leads to international gateways and those are a much smaller dataset to work with.

 

 

 

https://wordpress.org/plugins/ip-geo-block/

 

https://wordpress.org/plugins/iq-block-country/

 

https://www.sourcewp.com/best-wordpress-plugin-to-block-countries/

 

 

 

also Antispam Bee Plugin

 

You can also kill connections using .htaccess and country codes e.g. block .cn to block china.

 

 

 

Lastly - tool here to produce routing tables etc - to block traffic from certain countries.   https://www.ip2location.com/blockvisitorsbycountry.aspx

 

 


freitasm
BDFL - Memuneh
80658 posts

Uber Geek
+1 received by user: 41071

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #2026350 31-May-2018 16:15
Send private message

Folks, this has gone completely off topic. Back to GDPR.





Referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies 

 

Support Geekzone by subscribing (browse ads-free), or making a one-off or recurring donation through PressPatron.

 




premiumtouring
357 posts

Ultimate Geek
+1 received by user: 143


  #2039653 18-Jun-2018 13:07
Send private message

Click to see full size

 

http://www.gitlab.com

 

GitLab's Cookie Management interface is very cool!





-


MikeAqua
8031 posts

Uber Geek
+1 received by user: 3820


  #2039698 18-Jun-2018 13:31
Send private message

Nothing.  Our clients and providers are wholly within NZ.

 

I can't see how we would infringe and if we do the EU has no jurisdiction.





Mike


outdoorsnz
694 posts

Ultimate Geek
+1 received by user: 303

ID Verified

  #2039891 18-Jun-2018 16:29
Send private message

Question I have on GDPR. I'm a website developer and maintain a website for a client. Advise client they need to add a privacy policy etc. Now if they do nothing, and the EU decided to fine. Who is liable?


 
 
 

Shop now on AliExpress (affiliate link).
nunz
1421 posts

Uber Geek
+1 received by user: 314
Inactive user


  #2040031 18-Jun-2018 20:59
Send private message

outdoorsnz:

 

Question I have on GDPR. I'm a website developer and maintain a website for a client. Advise client they need to add a privacy policy etc. Now if they do nothing, and the EU decided to fine. Who is liable?

 

 

Your client unless you contracted to add a gdpr policy and didn't do what you were contracted to do. Once the site is created - its all on them other than what you contract to do.

 

 

 

A good overview of what is required to be compliant is found here : https://www.hallaminternet.com/how-to-make-your-website-gdpr-compliant/

 

 

 

 

 

 


djtOtago
1181 posts

Uber Geek
+1 received by user: 605


  #2040104 18-Jun-2018 22:58
Send private message

If a user asks for their details to be deleted, do you also have to delete it from all data backups as well?

 

 


MurrayM
2502 posts

Uber Geek
+1 received by user: 742

ID Verified
Trusted
Lifetime subscriber

  #2040168 19-Jun-2018 08:19
Send private message

djtOtago:

 

If a user asks for their details to be deleted, do you also have to delete it from all data backups as well?

 

 

And do you have to provide any proof that you've deleted their data?


Behodar
11101 posts

Uber Geek
+1 received by user: 6092

Trusted
Lifetime subscriber

  #2040171 19-Jun-2018 08:24
Send private message

MurrayM: And do you have to provide any proof that you've deleted their data?

 

 

I hope not, because you can't contact them if you've deleted their contact details!


freitasm
BDFL - Memuneh
80658 posts

Uber Geek
+1 received by user: 41071

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #2040172 19-Jun-2018 08:26
Send private message

djtOtago:

 

If a user asks for their details to be deleted, do you also have to delete it from all data backups as well?

 

 

No, but you have to have assurances that there is a process in which at some point in the future these backups will disappear.





Referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies 

 

Support Geekzone by subscribing (browse ads-free), or making a one-off or recurring donation through PressPatron.

 


1 | 2 | 3 | 4 
Filter this topic showing only the reply marked as answer View this topic in a long page with up to 500 replies per page Create new topic








Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.