Re: User authenticate before accessing network.

From: Walter Roberson (roberson@ibd.nrc.ca)
Date: 06/25/02


From: roberson@ibd.nrc.ca (Walter Roberson)
Date: 25 Jun 2002 05:23:55 GMT

In article <6a247296.0206241932.4ccbc00d@posting.google.com>,
luke.my <luqmannor@hotmail.com> wrote:
:I am currently working on a small closed network. And I've decided to
:broaden the network connectivity into global, the internet.

:One that I've experience was as soon as I plug in the network cable,
:my notebook grab an IP from their DHCP server. Later, when I start my
:browser (IE), it automatically opened thier Terms & Condition page,
:and I must agreed before I can further with my browsing. Without
:accepting the Term & Condition, not only I cannot browse, but,
:virtually I'm locked in their local network only. Now, this is the
:solution I am looking for.

Redirect all outgoing WWW through a proxy. The proxy passes through
if the user is authenticated, and otherwise redirects to the
T&C page.

Redirection of outgoing WWW requests to a proxy can be done in
various ways. One way: if you are using a Cisco router, set up
an ip policy route-map that refers to an access list that matches
on destination port.



Relevant Pages

  • RE: bypassing employers proxy to surf anonymously
    ... The proxy box) ... If he is on a company network and I'm ... from monitoring your traffic over that network. ... You have an option to go with a managed service (Cenzic ...
    (Pen-Test)
  • Rogue activity methodology (was: Tool to find hidden web proxy server)
    ... Suspects one or more of these IPs have setup a rogue proxy ... No indication if the internal network is switched or repeated ... So if he's running a class B, nmap is going to spend a whole lot of time ...
    (Pen-Test)
  • RE: 504 Proxy timeout only with SSL traffic
    ... Hi I setup an access rule as you requested and tried it with web proxy off on ... the DMZ network is considered External to the ... And can access all other HTTPS sites on the internet? ... that there may be something wrong with the proxy engine on the ISA, ...
    (microsoft.public.isa)
  • Re: Update: UDP 770 Potential Worm
    ... > the network immediately after the 'attack', ... were no packets indicating some form of replication. ... I noticed that the UDP ... > of the UDP datagrams is the IP address of the proxy? ...
    (Incidents)
  • Re: Proof that firewalls can be circumvented
    ... > You obviously have no idea about proxy filtering, ... > your friend is probably just using Bouncer or another similar program ... just boggled my mind how many people were surfing that chat site ... network, and you would never detect it. ...
    (comp.security.firewalls)