Re: [squid-users] OT: software to force the client to use the proxy

2009-05-14 Thread Nathan Eady
On 12/05/2009, Adam Carter  wrote:

> BOFH solution is to filter outbound connections to port 80 and 443 from all
> hosts except the proxy.

Just as effective, but slightly more user-friendly, is to
transparently route all outbound port-80 connections to the proxy,
rather than dropping or rejecting them outright.

-- 
$\=$/;$=+=$^F**$^F;$:=chr$=;s;;
###
Visit: http://galionlibrary.com
;;($_)=map{$_}reverse split/\//
;s!(?=[.])!$:gmail!;print if$=;


Re: [squid-users] OT: software to force the client to use the proxy

2009-05-13 Thread Marcello Romani

Al - Image Hosting Services ha scritto:

Hi,

I am using squid with a block list. It works great for everyone on the 
LAN, but the issue that I am not able to effectively filter the internet 
for anyone who is not on the LAN without putting in some proxy settings. 
Is there software that could automatically set this up and lock the 
settings when not on the LAN?


Best Regards,
Al



What do you mean by "not on the lan" ? Do you have mobile users that you 
want to force into using your proxy when they are out of office ? (Sorry 
if this is a stupid question...)


--
Marcello Romani


Re: [squid-users] OT: software to force the client to use the proxy

2009-05-13 Thread Amos Jeffries

Adam Carter wrote:

I am using squid with a block list. It works great for

everyone on the

LAN, but the issue that I am not able to effectively filter

the internet

for anyone who is not on the LAN without putting in some

proxy settings.

Is there software that could automatically set this up and lock the
settings when not on the LAN?


BOFH solution is to filter outbound connections to port 80 and 443 from all 
hosts except the proxy.

Also look at;
- Group Policy for windows domain machines
- Consider interception (but it cant be used with authentication)



Key words here being "when not on the LAN".

AFAIK setting the domain permissions to lock the user out of networking 
controls is what you want.


Someone who knows how to use your network domain controller to set that 
and push it out to the machine will have to help you with the finer details.


Amos
--
Please be using
  Current Stable Squid 2.7.STABLE6 or 3.0.STABLE15
  Current Beta Squid 3.1.0.7


RE: [squid-users] OT: software to force the client to use the proxy

2009-05-12 Thread Adam Carter
> > I am using squid with a block list. It works great for
> everyone on the
> > LAN, but the issue that I am not able to effectively filter
> the internet
> > for anyone who is not on the LAN without putting in some
> proxy settings.
> > Is there software that could automatically set this up and lock the
> > settings when not on the LAN?

BOFH solution is to filter outbound connections to port 80 and 443 from all 
hosts except the proxy.

Also look at;
- Group Policy for windows domain machines
- Consider interception (but it cant be used with authentication)



Re: [squid-users] OT: software to force the client to use the proxy

2009-05-12 Thread Jeff Pang

Al - Image Hosting Services:

Hi,

I am using squid with a block list. It works great for everyone on the 
LAN, but the issue that I am not able to effectively filter the internet 
for anyone who is not on the LAN without putting in some proxy settings. 
Is there software that could automatically set this up and lock the 
settings when not on the LAN?




Totally be confused. Do you mean part of the users don't use squid as 
proxy, but you want to filter them? Some network management software 
could be, but that most probably will break users' privacy heavily. In 
this (crazy) country there are some commercial software which can be 
used to monitor and intercept user's all internet transfer like 
email/MSN/webpage etc.



--
Jeff Pang
DingTong Technology
www.dtonenetworks.com