How to restrict Internet access to all sites but a couple?

  • Thread starter Thread starter Squish
  • Start date Start date
S

Squish

Like the subject says, for certain PCs I want to restrict Internet access to
all sites but a couple, so they can still do Windows updates and AV updates.
So far I have not been able to find any solutions but I was thinking it
should not be all that hard. I was hoping for a solution which exists on
server PC so I do not have to install this software on all clients I wish to
control. I would then change the DHCP records for these clients to point to
a different gateway (the server PC running this gateway) and this gateway
would only allow Internet access to specified sites.

Does this make any sense? Any better ideas? If necessary I could build a
linux box for this purpose but a Windows software solution which I would
install on the server is preferred.

Please reply to this post, e-mail not valid. TIA.
 
Use a router wiht an access list that allows traffic to the sites you want,
and denys everything else.

....kurt
 
Well, my router (D-Link DI-624) provides a similar function (I imagine most
others do as well), in fact, here's the blurb from the router's Help system:

Filters - Domain Blocking
Domain Blocking is used to deny or allow computers within the LAN (Local
Area Network) from accessing specific domains on the Internet. Domain
blocking will deny or allow all requests such as http and ftp to a specific
domain.
Select Allow users to access all domains except "Blocked Domains" if you
allow users to access all domains except the domains in the Blocked Domains
list.
Select Deny users to access all domains except "Permitted Domains" if you
only want users to access Permitted Domains.
Example: If you want your children to only access particular sites, you
would then choose Deny users to access all domains except "Permitted
Domains". Then enter in the domains you want your children to have access
to.

Disney.com
Cartoons.com
DiscoveryChannel.com


Seems fairly straight forward to me.

Jim
 
Exarctly! This is probably a blanket policy for all users. If you use a
high-end router like a Cisco, Foundry, Juniper, etc., you can create
(extended) access lists that apply to source and destination. So you can
allow one IP address access to all websites, another to just one, and
another to a selected bunch, etc.

....kurt
 
Squish said:
Like the subject says, for certain PCs I want to restrict Internet access
to
all sites but a couple, so they can still do Windows updates and AV
updates.
So far I have not been able to find any solutions but I was thinking it
should not be all that hard. I was hoping for a solution which exists on
server PC so I do not have to install this software on all clients I wish
to
control. I would then change the DHCP records for these clients to point
to
a different gateway (the server PC running this gateway) and this gateway
would only allow Internet access to specified sites.

Does this make any sense? Any better ideas? If necessary I could build a
linux box for this purpose but a Windows software solution which I would
install on the server is preferred.

Please reply to this post, e-mail not valid. TIA.
CCproxy will do what you want http://www.youngzsoft.net/ccproxy/ . It is
free for up to 3 (or maybe 5, can't quite remember) users. Over that you
have to pay. Will allow access to specified sites for specified PC's (using
MAC, IP and or username filtering). You can also restrict access to
certain time periods, restrict bandwidth usage and give different access to
different groups of users.
 
Back
Top