HTTP Redirector

  • From: "Bob Wolff" <bobw@xxxxxxxxxxxxxxxxxxxxxx>
  • To: <isalist@xxxxxxxxxxxxx>
  • Date: Thu, 10 Apr 2003 10:04:43 -0500

Hello!

Does anyone out there know how I should attempt to tackle this one?
I have a user that needs to use Persona Thin Term client.  It uses port
1916 TCP.  If I disable the HTTP redirector it works correctly.  If I
enable it, it stops working.  I need to enable this because I want all
firewall and secure nat clients to be redirected to the web proxy
service so that their browsing data gets logged by superscout web
filter.  Also for some reason when I disable it people are able to
bypass the proxy server and get right out to the internet.  I have a
protocol rule allowing HTTP and HTTPS only to user groups only.  That
should be stopping them from getting out shouldn't it?  There is no
other default gateway out and when I disable the external int on the ISA
server then they of course cannot get out.  So what am I missing?  Why
can they get out with out using the proxy service when the HTTP
redirector is disabled?  The protocol rule that only allows user groups
should be stopping them correct?  If you can explain this to me it would
be greatly appreciated.  I don't know of a way to allow only persona
client traffic from being redirected?  Let me know if you can help me
with this!

Thanks,
Bob



Other related posts: