On Thu, Jan 26, 2012 at 1:57 PM, Ray Soucy <[log in to unmask]> wrote:
Question:

Is the requirement of having to install a custom root CA a show stopper?  If so, for what reasons (too much work to deploy; privacy or ethical concerns; etc)

It is for us; we simply have too many non-school-owned machines (we rely heavily on BYOD) on our network.
 
If you don't think you could deploy custom root CA's in your environment, would using OpenDNS instead of MECguard be an acceptable alternative?

As in "getting rid of MECguard completely and switching entirely to OpenDNS filtering at all sites?"