Deweirt Steven - CSware
2004-07-14 12:48:43 UTC
Block the changing of proxy trough GPO in AD,
create a deny rule to all destinations execpt .... the one's you want.
based for that client set
24/05/2004 14:40:23
create a deny rule to all destinations execpt .... the one's you want.
based for that client set
24/05/2004 14:40:23
Hey,
Al geprobeerd proxy.pandora.be te blocken via een rule??
anders poort 8080 naar buiten (of op 2e firewall)
dichtzetten! heeft geholpen bij mij..
JP
veronderstel dat dat geen probleem zal vormen :-).
Al geprobeerd proxy.pandora.be te blocken via een rule??
anders poort 8080 naar buiten (of op 2e firewall)
dichtzetten! heeft geholpen bij mij..
JP
-----Original Message-----
Hallo,
De post is in het engels, aangezien ik het op
verschillende forums reeds gepost heb, maar ikHallo,
De post is in het engels, aangezien ik het op
veronderstel dat dat geen probleem zal vormen :-).
--------------------------------
I have 2 NIC's installed. One connected directly to the
router (and the internet),I have 2 NIC's installed. One connected directly to the
one to a hub, connecting to the internal LAN.
If I explicitly DENY internet access to a classroom,
through Protocol RulesIf I explicitly DENY internet access to a classroom,
based on Client Address Sets, the clients cannot access
the internet, even ifthey change the proxy. So far so good.
If I ALLOW internet access to a classroom through
Protocol Rules based onIf I ALLOW internet access to a classroom through
Client Address Sets, the clients can access the internet,
and if they change theirproxy to the proxy of my ISP (in my
case "proxy.pandora.be:8080"), theycan bybass my Site And Content Rules.
So even if I have a rule that says they cannot view
http://www.nukezone.nu,So even if I have a rule that says they cannot view
they still can, if they change their proxy
from "PHHISA:8080" to "proxy.pandora.be:8080".--------------------------------
Iemand een verklaring/oplossing?
grtz
.
Iemand een verklaring/oplossing?
grtz
.