Disable port 80(http) but anable smtp and pop3 (port 25/110)

Use this forum to post questions relating to WinGate, feature requests, technical or configuration problems

Moderator: Qbik Staff

Disable port 80(http) but anable smtp and pop3 (port 25/110)

Postby leesoo » Oct 02 07 1:12 pm

Hi

How to disable port 80 (http) while allow access smtp & pop3 (port 25 & 110).
These setting not apply for all but for certain clients only. Can someone show me the details how to do it ? Client connection as below,

client -> login to our sambaserver (linux slackware) -> wingate (to get out)

- By creating new user in wingate and assumed them (so that able to access internet).

Thanks.
leesoo
 
Posts: 18
Joined: Oct 02 07 1:06 pm

Postby jamesc » Oct 02 07 2:13 pm

Scenario:

All user assumed by ip address.
NAT connection method (LAN Clients Default Gateway pointing to WinGate).
LAN Network ID 192.168.0
Internet Users (Guests) need to be able to access port mappings.
No Users from 192.168.0 can have Guest access i.e. assumed access only

Organise your users into three groups:
Full NAT
HTTP NAT
Email NAT


GateKeeper --> Extended Networking Service --> Policies
Default Rights (System Policies) = Are ignored.

Add --> Full NAT, User may be assumed.
Ok back to Policies.

Add --> HTTP NAT, User may be assumed
Advanced tab:
Filter 1
This criterion is met if Server Port equals 80
Filter 2
This criterion is met if Server Port equals 443
Ok back to Policies.

Add --> Email NAT, User may be assumed
Advanced tab:
Filter 1
This criterion is met if Server Port equals 25
Filter 2
This criterion is met if Server Port equals 110
Ok back to Policies.

Add Guest, User may be unknown
Advanced tab:
Filter 1
This criterion is NOT met if Client IP Address begins with 192.168.0
Ok back to GateKeeper and test
Last edited by jamesc on Oct 02 07 4:44 pm, edited 1 time in total.
The changes between version 6.x releases can be reviewed here:
http://www.wingate.com/showfaq.php?faqid=2

Skype: wingatejames
jamesc
Qbik Staff
 
Posts: 928
Joined: Apr 04 05 2:04 pm
Location: Auckland, New Zealand

Postby leesoo » Oct 02 07 4:40 pm

I have tested for Email NAT and followed steps that given but clients still able to access internet.
leesoo
 
Posts: 18
Joined: Oct 02 07 1:06 pm

Postby jamesc » Oct 02 07 4:46 pm

I made a mistake - look at the bottom of my last post and see the NOT - I had missed that out when I first posted - please add the NOT to your Guest policy.
The changes between version 6.x releases can be reviewed here:
http://www.wingate.com/showfaq.php?faqid=2

Skype: wingatejames
jamesc
Qbik Staff
 
Posts: 928
Joined: Apr 04 05 2:04 pm
Location: Auckland, New Zealand

Postby jamesc » Oct 02 07 4:48 pm

I also presume you did the following step shown in bold:

GateKeeper --> Extended Networking Service --> Policies
Default Rights (System Policies) = Are ignored.


And you are using the NAT connection method only.
The changes between version 6.x releases can be reviewed here:
http://www.wingate.com/showfaq.php?faqid=2

Skype: wingatejames
jamesc
Qbik Staff
 
Posts: 928
Joined: Apr 04 05 2:04 pm
Location: Auckland, New Zealand


Return to WinGate

Who is online

Users browsing this forum: No registered users and 3 guests