Link to home
Start Free TrialLog in
Avatar of Derek_Indianapolis
Derek_Indianapolis

asked on

Windows Server 2003: Blocking Internet Access by User

Running windows XP SP2 on client computers, using microsoft server 2003 I would like to know the best practice to implement a change to block only internet access by user.
Avatar of imateyelectronics
imateyelectronics
Flag of United States of America image

You can go about this several ways, the best practice would be editing group policy.  Within Windows Server 2003 Group policy you can disallow certain clients from accessing programs such as internet explorer.  If you have a router you can also stop them from connecting to the internet period by their MAC address but I've never tried monitoring internet access this way.
Avatar of Derek_Indianapolis
Derek_Indianapolis

ASKER

So it is required to edit the entire group of users?  Currently we have group setup that will not make that an easy change.  Is it possible to do this at the individual user level rather than at the group level?
ASKER CERTIFIED SOLUTION
Avatar of imateyelectronics
imateyelectronics
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of Budi Santoso
Group Policy only work with Internet explorer. If user using other browser, they still freely access to the internet.
What about client messenger ? they still can using it.
Disabling DNS will stop Internet access with any browser. Your Lan services should be unaffected.
Dns still used to optimize the network traffic.
I think the best solution is using scripting to disable internet port from user's windows firewall.