Solved

How can I force users to use proxy server, but still have them be able to a home internet connection on their laptop?

Posted on 2008-10-13
2
594 Views
Last Modified: 2012-05-05
Hello,

We are using ISA server 2006 as a proxy server for our network.  We need to force our users to use the proxy server, however we also need them to be able to connect to the internet using their home internet connections as well.  When we lock the setting in the GPO, they cant change it at home, when we unlock it they can choose to bypass the proxy on the local computer.

I know there has to be a way to enforce the use of the proxy.
0
Comment
Question by:caw01
2 Comments
 
LVL 51

Accepted Solution

by:
Keith Alabaster earned 500 total points
ID: 22708802
You need a business-class device on the outside of ISA that can be configured with access control lists. You would set the acl's to only accept outbound http/https traffic from the ISA server IP address (and other selected source ip's).

If the users then remove the proxy settings then they would access the gateway using their own source IP and the external device would reject the request.

This is quite a common requirement

Keith
0
 

Author Comment

by:caw01
ID: 22961670
We found other ways to do this such as auto discovery, but applications that are not auto dioscovery aware bypass the proxy.  At the end of the day, we ended up supernetting our network, moving DHCP to the new range and configured out Cisco ASA not to allow HTTP traffic from that range.
0

Featured Post

Complete VMware vSphere® ESX(i) & Hyper-V Backup

Capture your entire system, including the host, with patented disk imaging integrated with VMware VADP / Microsoft VSS and RCT. RTOs is as low as 15 seconds with Acronis Active Restore™. You can enjoy unlimited P2V/V2V migrations from any source (even from a different hypervisor)

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I have been asked to explain on many, many occasions the correct way to setup network cards and DNS settings on ISA Server 2004, 2006 and forefront Threat management gateway (FTMG) and have willing done so. I have also promised my self everytime tha…
ADCs have gained traction within the last decade, largely due to increased demand for legacy load balancing appliances to handle more advanced application delivery requirements and improve application performance.
Along with being a a promotional video for my three-day Annielytics Dashboard Seminor, this Micro Tutorial is an intro to Google Analytics API data.
Windows 10 is mostly good. However the one thing that annoys me is how many clicks you have to do to dial a VPN connection. You have to go to settings from the start menu, (2 clicks), Network and Internet (1 click), Click VPN (another click) then fi…

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question