Jump to content

Recommended Posts

Posted

Does anyone have any experience on how to set this up? have been using a system like this for a while but have never actually set it up myself...

 

Thanks in advance!

Posted
You could use Group Policy to direct them to a proxy IP that doesn't exist and so hits nothing. Policy applied only to %group% you could add and remove membership. Disadvantage is it only applies/is removed after they log off and on.
Posted
Have you got an edge firewall? Create a rule that requests for port 80/443 etc. only come from your proxy server.

Nope, any free/open source ones out there that you would recommend?

 

@Miscbrah - I want this to be applicable at the gateway level not just users.

Posted
You could not set the default gateway settings in DHCP, so that only manually set static IP servers like the proxy can reach the Internet. Cheap option:)
Posted
I set my firewall to not allow any IP's through that are in my dhcp range ... Therefore anything that gets its ip from the dhcp server wont access the internet. As the proxy server is a fixed ip outside of the range it can get to the outside world. My servers are also fixed ip's and can access outside ....
Posted

All depends on your current infrastructure. What hardware do you have available, is your core switch layer 3? If it is a ACL on there would do the job nicely.

Failing that a linux box with IPtables as transparent bridge.

 

 

Andrew Turner

Tel: 01621 859384 | [email protected]

http://staticc3.cdngeek.net/images/edugeek/cablersbanner_330_1.gif

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...