Solved

Is there any way that we can give internet access on machine basis instead of users.We use ISA 2006.

Posted on 2007-12-04
12
264 Views
Last Modified: 2010-03-17
Hi,

Is there any way that we can give internet access on machine basis instead of users.We use ISA 2006.
So that any user who loggs in to the machine will have internet access
Regards
Sharath
0
Comment
Question by:bsharath
  • 5
  • 4
  • 2
  • +1
12 Comments
 
LVL 23

Expert Comment

by:Malli Boppe
ID: 20401965
Sharath

Move all the workstations to seperate OU and create group policy.with a dummpy proxy address.
move the all the other workstations to a different OU configure a group policy with a real time proxy address.

0
 
LVL 5

Expert Comment

by:balmasri
ID: 20402202
If your enviroment uses DHCP to distribute IP addresses, Then ON DHCP console reserve an IP address to the computer you want to allow to access the computer then
ON ISA Console
go to Firewall policy>toolbox>new>computer>Create a computer there.
Create an access rule in Firewall plolicy that allow this computer to access external.
0
 
LVL 11

Author Comment

by:bsharath
ID: 20402732
mboppe
Sorry could not follow your method...

balmasri
I need to do this for all the 3000+ computers?
0
Are your AD admin tools letting you down?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

 
LVL 12

Expert Comment

by:chandru_sol
ID: 20404000
What is the need for doing this on computers rather than users?

regards
Chandru
0
 
LVL 11

Author Comment

by:bsharath
ID: 20404136
USers are using internet through Run as and i cannot remove run as as it is used for different applications.So though to plan of a way to give access to machines rather than users.
0
 
LVL 12

Expert Comment

by:chandru_sol
ID: 20404198
what is the credentials they are using for run as?
0
 
LVL 11

Author Comment

by:bsharath
ID: 20404256
They use there friends credentials that has internet permissions.
Say A has internet.
B uses A's credentials to access internet in his machine where in B should not use internet.
We have provided A internet access as he has to look for some materials for the project.

I know that disabling Run as may reduce the risk but need some other way.Monitoring and warning them is not too good as they repeat it again and again.
0
 
LVL 23

Expert Comment

by:Malli Boppe
ID: 20408690
Sharath
you didn't understand my method or you do not want to implement in your case
0
 
LVL 11

Author Comment

by:bsharath
ID: 20408700
mboppe
I did not understand your method...
0
 
LVL 23

Expert Comment

by:Malli Boppe
ID: 20408811
Move all the computers which neeed internet access and write a group policy
USer COnfig-Win Settings->IE Maintenance->Connection->Proxy Settings put a real proxy address( I assume that your are using the proxy address)

Move all the computers which doesn't need internet access and write a group policy with a dummy proxy address.
0
 
LVL 11

Author Comment

by:bsharath
ID: 20408830
mboppe

Users who have dummy proxy can always change the proxy matching othere and again start using Run As right?
0
 
LVL 23

Accepted Solution

by:
Malli Boppe earned 500 total points
ID: 20408937
you need to disbale with the group policy so that users cann't change the proxy address
COMP COnfig->aDMIN tEM->Wind Comp->IE->IE control Panel->Disbale connections Page
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I will show you HOW TO: Perform a Physical to Virtual (P2V) Conversion the easy way from a computer backup (image).
An article on effective troubleshooting
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.

773 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question