Switch to full style
Use this forum to post questions relating to WinGate, feature requests, technical or configuration problems
Post a reply

some issues with Wingate

Apr 07 08 6:21 pm

Hi there,

We have been testing Wingate for a week. So far so good. There are only a few problems need to be solved before we purchase it.

Environment: Server2003, AD, 20 client computers, setup scenario2
Method: WGIC.
Purpose: internet usage monitor and internet access restrict.
Problem:
1, how to prevent user from uninstalling WGIC software on client computer. Most user has Admin access.
2, how to disable internet access to the client computers that are without WGIC? So in case, they uninstall it, they won't be able to use internet at all. At the moment, we have 10 pc without WGIC, they can access internet. I can't find any log information, activities or guest account authentication. They can pass through the proxy server without any trace. How do I stop it?
3, Authentication is enabled for w ww proxy and winsock. However, some users are authenticated with client computer name rather than their user name. How do I fix it?
e.g. Computername[system] - (username - authenticated[NTLM])
Computername[system] - (Computername - authenticated[NTLM])
Also notice the client computer status are all different, why is that?
e.g. Computername[system]
Computername[local service]
Computername[network service]
Computername[Username]

Thank you for your help!

Re: some issues with Wingate

Apr 07 08 10:07 pm

Hi, on point 2.

What you could do is to enable Intercepts in the WWW proxy service.

From the Sessions entry enable the Transparent Proxy for the port of the WWW service.

Probably the users' are accessing the Internet via Wingate's NAT.

With the user uninstalling WGIC you could set a GPO for Control Panel to Disable the option 'Remove Add or Remove Programs' could help.

Also remove any start menu entries for WGIC.

Apr 08 08 5:14 pm

Hi

If users are accessing the Internet without anything showing up in GateKeeper activity screen or WinGate logs, then either

a) those users aren't even connecting through WinGate (most likely); or
b) those users are routed through WinGate to another gateway (routing doesn't show up in activity).

b is unlikely because in general the network environment that would get NAT working for anyone would apply to all clients, so my money is on (a).

Is the WinGate machine the only way to get to your internet connection, or is there another router accessible to client machines that provides internet access?

Adrien
Post a reply