ISA only deals in user names, so that isn't going to be possible without some added code. Jim Harrison MCP(NT4, W2K), A+, Network+, PCG http://isaserver.org/authors/harrison/ Read the books! ----- Original Message ----- From: "Carson Tu" <ctu@xxxxxxxxxxxx> To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx> Sent: Wednesday, January 23, 2002 14:33 Subject: [isalist] How to implementAccess control for internal client base on host name http://www.ISAserver.org Hi, All: I need to block some internal clients from access internet. I can setup packet filter for those workstations base on their IP. But the problem is, those internal client are DHCP clients. So that block them by their DNS name is a better idea. But I could not find a way to block them by using DNS name (or NetBIOS name). Another problem is, I need to block 6 internal client. These 6 desktop cannot be descript by a IP arrange without affect the others. (For example: If I block 192.168.2.111 - 192.168.2.150, 40 machines affected instead of 6) Is there anyway I can setup a client set by each individual IP or hostname? I don't want to setup client set for each machine. Need help. Thanks in advance. Carson Tu Network Administrator Marketrx.com ------------------------------------------------------ You are currently subscribed to this ISAserver.org Discussion List as: jim@xxxxxxxxxxxx To unsubscribe send a blank email to $subst('Email.Unsub')