by jamesc » Sep 04 07 3:42 pm
In the future it is always a good idea to explain your setup in a forum post - such as:
What user database are you using?
What connection methods are available to those users?
What authentication method are you using?
Is it really only a selected few that needs to pass through WinGate; i.e. can you confirm you have no internet clients e.g. ports exposed to the internet?
So without knowing that information - here is one scenario.
User database: WinGate
Authentication method: Assumed by ip
Connection method: NAT only.
No internet clients will connect to WinGate.
All services and servers you do not need are disabled in WinGate.
All services and servers you do need have no policies in them and the default rights drop down menu is set to "May be used instead"
In the System Policies add only your group that needs internet access and set the required authentication level.
*If you are using the Windows User Database to move users between these groups then you will need to make sure WinGate synchronises with the Windows Database so to get the changes you made.