Create an Access Rule Limiting Protocols and Sites Users Can Access

The first Access Rule will limit users access to only the HTTP and HTTPS protocols. In addition, the users will only be able to use these protocols when accessing Microsoft operated Web properties. A custom firewall group, Limited Access Web Users, will be created and user2, located in the Active Directory, will be placed into that Active Directory group.

The Access Rule can be characterized by the entries in the following table:

Rule Element

Value

Order (priority)

3 (after all rules are created)

 

 

Name

Limited Access Web Users

 

 

Action

Allow

 

 

Protocols

HTTP and HTTPS.

 

 

From/Listener

Internal

 

 

To

Microsoft (Domain Name Set)

 

 

Condition

Limited Web Users (Group).

 

 

The rule will look like this in the Firewall Policy Details pane:

Perform the following steps to create the limit user Access Rule:

1.At the ISA Server 2004 firewall computer, open the Microsoft Internet Security and Acceleration Server 2004 management console and expand the server name in the left pane of the console. Click on the Firewall Policy node. In the Task pane, click the Tasks tab. Click Create New Access Rule.

ISA Server 2004 Configuration Guide

137

Page 139
Image 139
Microsoft manual ISA Server 2004 Configuration Guide 137