jmair Posted March 7, 2012 Posted March 7, 2012 All our student traffic goes through our filtering system. But when I remotely connect to the Terminal Server as a student and search for something inappropriate, the return is the server IP and not the student’s client machine. Any suggestions on how to solve this? Note: The proxy filter still does its job, but any return of bad behavior doesn’t show from the originated location, and that is very helpful.
jamesfed Posted March 7, 2012 Posted March 7, 2012 If you use something like TMG to act as your edge firewall it would log the IP addy of the endpoint device + the time and you could then use that to lookup the IP where it came from. However for all intensive purposes I don't think what you are asking is possible but then again if you have the user and can prove it was then why does it matter about the device?
PiqueABoo Posted March 7, 2012 Posted March 7, 2012 What's the filtering system? Something that does Windows integrated authentication (ISA did, TMG likely does) in order to let a user's traffic out should be able to log and thus tell you which user etc.
jmair Posted March 7, 2012 Author Posted March 7, 2012 I use a Sophos Web Appliance as our filtering tool. Knowing the ip (or device name) helps me identify where to find the kid without having to first look up the user in the Student Information System to find what class they were in at what time etc.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now