Avatar of letotad
letotadFlag for United States of America

asked on 

Setup Acceptable Use Policy for Internet

I am currently tasked with setting up a AUP for when outside clients come into the office to access the internet. I have the VLAN setup to be configured with only wireless internet access and no network access. I want either a popup or for users to be redirected to a webpage that contains our AUP and obviously that they must accept or deny and if they deny they cannot access the internet.
SecurityWeb Browsers

Avatar of undefined
Last Comment
Rich Rumble
Avatar of jojuez
jojuez
Flag of United States of America image

My way is old school, but I simply do not allow connections until they read and signoff on a AUP. We do not use wireless and there are ethernet jacks setup for access, but they are not active until I change the configuration. But I do not have many vendors or visitors in my corp. You may have several. What method do they connect to the network you have setup and what type of network hardware are you using?
Avatar of letotad
letotad
Flag of United States of America image

ASKER

We currently have three corporations on the same floor, I am the IT company in charge of maintaining the networks for all three. It is pretty much not feesible to have contractors/vendors sign it everytime they come in and need to use the internet. We are haveing probably 10-15 different vendors/individuals that need access to the internet per week. We are currently having to make ip configurations to every vendor that needs access to the internet. The hardware that I'm using is a Sonicwall TZ 190 Wireless.
SOLUTION
Avatar of ecrutch
ecrutch

Blurred text
THIS SOLUTION IS ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
Avatar of Rich Rumble
Rich Rumble
Flag of United States of America image

Your looking for what is termed a "captive portal" There are many out there, but cost money, and depending on your AP you might be able to buy one or use an opensource one. Or... you could use MAC address filtering (802.1x) and force folks that want to use the WIFI to submit a ticket, or something like that, to give you their mac address, and you could allow them to the AP manually... but that's not easy to keep up with.
We use our wifi DHCP settings to hand out a proxy server address (squid) and it looks at urls against a blacklist and some content rules to help enforce our AUP. Which is basically taken directly from:
http://www.sans.org/resources/policies/#template
-rich
ASKER CERTIFIED SOLUTION
Avatar of letotad
letotad
Flag of United States of America image

Blurred text
THIS SOLUTION IS ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
Avatar of Rich Rumble
Rich Rumble
Flag of United States of America image

That's a long call... you'd think they'd know their product better... There are better/easier setups for captive portals available, just takes a bit of searching, glad you found something though.
-rich
Web Browsers
Web Browsers

Web browsers are applications used primarily to display documents, files and media from the Internet, identified by a Uniform Resource Identifier (URI) that can be a page, image, video or other file. Some browsers require the use of add-ons or extensions to safely render the information they receive; others have systems built into them to perform the same functions.

42K
Questions
--
Followers
--
Top Experts
Get a personalized solution from industry experts
Ask the experts
Read over 600 more reviews

TRUSTED BY

IBM logoIntel logoMicrosoft logoUbisoft logoSAP logo
Qualcomm logoCitrix Systems logoWorkday logoErnst & Young logo
High performer badgeUsers love us badge
LinkedIn logoFacebook logoX logoInstagram logoTikTok logoYouTube logo