direct all network taffic to isa proxy sever
Is there a way to direct all http request from pc's in a network to go through the isa proxy server, without configuring any browser. Meanning that when ever a pc try to browse for example www.bing.com or any website. they get a message that they need to configure their proxy settings in their browser. i am trying to do that because i want to be able to track what website the pcs are browsing, without having to configure the browser for every pc and every browser. Our network is configured as follow 1 cable modem connected to a router 1 windows server 2003 configured as a domain with ISA 2004 standard installed as a edge firewall, one network card. 1 48 port switch with 40 pcs connected to it thank you
February 29th, 2012 2:01pm

WPAD with the DHCP option could make the job easilly done. See: http://technet.microsoft.com/en-us/library/cc713344.aspx For Firefox WPAD in the DNS; http://support.microsoft.com/kb/934864 But by default Firefox doesn't look for it I think To make that 100% correct, if your router allow it, you make a transparent proxy setting. The router will redirect all port 80 traffic to a proxy of our. (to show an exemple like on openwrt; http://wiki.openwrt.org/doc/uci/firewall#transparent.proxy.rule.external) MCP | MCTS 70-236: Exchange Server 2007, Configuring
Free Windows Admin Tool Kit Click here and download it now
February 29th, 2012 2:18pm

Thank you for the response After doing the WPAD configuration on the ISA server do i still have to go each station and setup auto detection proxy ? That would not be very efficient because users could easily bypass that by changing the browser settings to no firewall.
March 1st, 2012 10:22am

You can make a GPO to set that, but like I told you can make a rule on your firewall too, with such a rule nobody will be able to bypass. (If the firewall support it). Because you can control firefox or chrome only manually MCP | MCTS 70-236: Exchange Server 2007, Configuring
Free Windows Admin Tool Kit Click here and download it now
March 1st, 2012 10:56am

I set up with GPO. Working great for Internet explorer and Google chrome. i would like to have firefox as well but i dont think it will be a good idea to have a redirect from the router because i would not be able to log correctly what user browsed where. is that correct ?
March 6th, 2012 8:58am

Only traffic coming out by the port 80 is redirected if you did that on the router. It depend on what you need to connect/log to your server. RDP is 3389, etc.. But to make it easy, on firefox you need to change the DNS to point it to your server hosting the WPAD (A A record WPAD with the IP of your proxy) That should work good.MCP | MCTS 70-236: Exchange Server 2007, Configuring
Free Windows Admin Tool Kit Click here and download it now
March 6th, 2012 4:11pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics