I am testing Wingate as an alternative to MS IAS but have come up with a couple of issues.
Firstly the environment is as follows.
AD domain in main support office with IP range of 172.16.0.0 - 172.16.3.254
Some users in the AD will have restricted internet access (site specific allowed by Login ID)
Some users in the AD will be completly blocked from internet browsing. (By login id)
and there also will be some users who have unrestricted web access but will still need to go via the proxy.
We also have 80+ remote sites that each have a vpn tunnel back to this support office. All web traffic is directed down this tunnel to be proxied.
These 80+ sites have address ranges of 192.168.xxx.yyy where xxx is a store id. Each store is a stand alone windows work group environment. They have no AD connection.
What I need to do is restrict the websites the 80+ stores can go to by URL. They should not need to be asked for a username / password to browse the web and if they try to visit a restricted site (99.99% of all websites) they should be instantly blocked and not be asked for username etc.
Also I need to make sure that the 80+ store sites can access secure sites like https://www1.gotomeeting.com etc
Is this possible?
I only want to use the proxy option ie set Internet Explorer or firefox proxy settings to the Wingate server. The Wingate server then uses our main gateway to the web.
Can I restrict web access to certain sites using an ip range? eg 192.168.x.x without needing login credentials being used.
Thanks in advance
Richard.