Restricted Internet Access

My Company has 80 Users. There is a ADS in place and all the users log in to the domain. All the users have acess to internet. I need to restrict 30 users internet access. They should be able to access only three sites and nothing else. these 30 users can use any pc avialable in the network.  sugest me any group policy modification or login script for these users..
crlpntAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

simsjrgCommented:
You are going to have A LOT fun trying to get this working with GPOs and/or logon scripts. You may want to change your approach and look at something like this: http://www.untangle.com/

http://www.untangle.com/video_overview/
0
Erik BjersPrincipal Systems AdministratorCommented:
You need a proxy server that can limit internet access then assign the proxy to those users via group policy assigned to an OU with those users in it.

Sorry I can't tell you what proxy to use (I don't use them) but you can look at this link http://www.experts-exchange.com/Operating_Systems/Win2000/Q_21725470.html to find out how to set proxy settings in GPO.

eb
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
crlpntAuthor Commented:
Is there any other solution other than Proxy server..
0
Erik BjersPrincipal Systems AdministratorCommented:
Proxy would be the best and easiest to manage, there are many types of proxy out there some are even free

eb
0
gothicbloodyCommented:
as ebjers said The best way to do this is by firewall (like isa server from microsoft) not
by gpo. Anyway, if you want to do it, you could use a "fake proxy server":
create a group policy that enforce proxy setting of 127.0.0.1 for example. In
this way the users won't have acces to the internet. For the sites on which
you want to grant access, you must put them on proxy exceptions.

Regards
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Windows Networking

From novice to tech pro — start learning today.