Block all web traffic

Posted on 2007-10-01
Last Modified: 2010-04-09
We currently have a web filter in place and have users proxy through that. We need to be able to block all web traffic that does not come from the web filters IP address. We do have an cisco asa in place. Can avyone provide any insight.

Thank you
Question by:jimseiwert
    LVL 9

    Accepted Solution

    I did the same thing, pretty easy.  If all of your users point to the proxy, then when they pass through the proxy they should hit your firewall with the address from the proxy server.  So in the eyes of the firewall your proxy server is surfing the web and not your PCs.  So what i did was i created a rule in the firewall specifing that the proxy server could surf the web and then i block it for all other users.

    access-list outgoing permit any 80
    access-list outgoing deny any any 80

    If you want you can add more permit statements if you want your pc or say servers to bypass the proxy.
    LVL 2

    Author Comment

    We have added those statements but it is not blocking web traffic for any users. Everything is still as it was before those statements were added.

    Featured Post

    What Is Threat Intelligence?

    Threat intelligence is often discussed, but rarely understood. Starting with a precise definition, along with clear business goals, is essential.

    Join & Write a Comment

    Hi All,  Recently I have installed and configured a Sonicwall NS220 in the network as a firewall and Internet access gateway. All was working fine until users started reporting that they cannot use the Cisco VPN client to connect to the customer'…
    Quality of Service (QoS) options are nearly endless when it comes to networks today. This article is merely one example of how it can be handled in a hub-n-spoke design using a 3-tier configuration.
    After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
    Here's a very brief overview of the methods PRTG Network Monitor ( offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…

    729 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    19 Experts available now in Live!

    Get 1:1 Help Now