Gatt Posted May 10, 2006 Posted May 10, 2006 1) How do you setup ISA 2004 to use MS SQL Server 2000 for the web proxy logs? 2) How do you change the "Error Code: 502 Proxy Error. The ISA Server denied the specified Uniform Resource Locator (URL). (12202) " page to a custom one - in our case - bright red background with big bold white lettering saying "WEBSITE HAS BEEN BLOCKED - WHO'S A NAUGHTY PUPILL THEN?"
Ric_ Posted May 10, 2006 Posted May 10, 2006 Can't remember off the top of my head... something about destination sets and redirect to a page. You can also add sound... watch them squeel when they have headphones on and a siren goes off :twisted:
Gatt Posted May 10, 2006 Author Posted May 10, 2006 :mrgreen: Lol, we were talking about that today - though we were gonna see if we could use the PC Speaker! This is the page we want them to see... blocked page
Ric_ Posted May 10, 2006 Posted May 10, 2006 @Gatt: BROKEN LINK! I hope you can decipher my vague instructions
Gatt Posted May 11, 2006 Author Posted May 11, 2006 Yeah - im hearing 2 sides - one is as you talk about - which i thnk you need to set up an explicit deny rule for so will prob need to reverse the rule i have at the moment... Re link: was working last night - got a feeling my folks may have been messing with stuff again (they keep getting "booted" offline - so reset the router! night before last they switch off my Linux Box! didn't shut it down - just killed the power! )
Ric_ Posted May 11, 2006 Posted May 11, 2006 @Gatt: It sounds like you deny everything barr a whitelist. If you simply change your default rule from 'deny access' to 'redirect to URL' you should be able to do it with ease
MrDylan Posted May 11, 2006 Posted May 11, 2006 Mine just redirects to a page saying 'Sorry, pupil access to this site is banned' It used to also say 'I'll make this page prettier when I get the time, I'm sure some of you will see a lot of it! ' But I got tired of them asking me when I would make it look better, as I never got round to it lol.
Gatt Posted May 11, 2006 Author Posted May 11, 2006 ok its not quite working - i get the new blocked.htm page when a banned url is hit - but now i cant get allowed sites to open up.. my rule is .. Deny Protocols: FTP/HTTP/HTTPS from: Internal To: blocklist.xml condition: All Pupils I have tried with a sep rule allowing external, which gets the errror above Do i add the External as an exclusion to the above rule?
MrDylan Posted May 11, 2006 Posted May 11, 2006 So is it blocking all sites now, even those you want to allow?
Gatt Posted May 11, 2006 Author Posted May 11, 2006 no its working now dunno what was wrong tho.. Now need to figure out how to integrate with SQL for the proxy logs :-S Last timei tried it kept killing the firewall service!!
Gatt Posted May 11, 2006 Author Posted May 11, 2006 Argh - followed instructions from Microsoft to the letter and still the firewall service falls over after about 5 mins. Created the database in SQL using the sql script, added the user, created the DSN in ODBC. Only thing i can think of is the system policy - i did enable the remote logging (NetBIOS and SQL) and reboot but still no joy
Ric_ Posted May 11, 2006 Posted May 11, 2006 Never actually done this myself. It doesn't work like IAS does it, where if a write to the database fails, it borks? Do the event logs indicate anything and is anything written to the database before the firewall service dies?
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now