cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

Welcome to the Cisco Small Business Community

Have a question? Click on a topic board below to get started in the community.

1323
Views
0
Helpful
2
Replies
massimo.capra
Beginner

ISA500 Web Filter

Hi All,

would be possible to create a specific web filter profile for a given IP address (or user) of a zone?

Eg. the LAN zone [192.168.75.0 /24] has the "Restaurants" category blocked, but only the IP address 192.168.75.123 /32 (the boss with his PC in LAN zone) has the "Restaurants" category permitted?

Thanks.

Massimo

1 ACCEPTED SOLUTION

Accepted Solutions
jonatrod
Rising star

Good morning

Hi  Massimo, as far as we know there is still no exact date for the new release, this answer is for this question

https://supportforums.cisco.com/message/3865304#3865304

I hope you find this answer useful,

*Please mark the question as Answered or rate it so other users can benefit from it"

Greetings,

Johnnatan Rodriguez Miranda.

Cisco Network Support Engineer.

“Please rate useful posts so other users can benefit from it” Greetings, Johnnatan Rodriguez Miranda. Cisco Network Support Engineer.

View solution in original post

2 REPLIES 2
jonatrod
Rising star

Good morning

Hi  Massimo, as far as we know there is still no exact date for the new release, this answer is for this question

https://supportforums.cisco.com/message/3865304#3865304

I hope you find this answer useful,

*Please mark the question as Answered or rate it so other users can benefit from it"

Greetings,

Johnnatan Rodriguez Miranda.

Cisco Network Support Engineer.

“Please rate useful posts so other users can benefit from it” Greetings, Johnnatan Rodriguez Miranda. Cisco Network Support Engineer.

View solution in original post

ISA500 is a zone based firewall.  While the ability of "creating an exception for Web URL filtering within a zone" is in a roadmap, one can consider to use ISA500's zone based firewall to achieve the need of having different Web URL filtering policies for different user groups.

For example, an admin wants to allow "manager" user group to access everything but prevents employee" user group from accessing "game" category.  The admin can create two zones - one "manager" zone and the other "employee" zone.  Each zone then has its own Web URL filtering policy. 

To place a user group to a specific zone, admin put the target users to the VLAN associating with the target zone.

In the case of wireless, admin can take advantages of multiple SSIDs ability of ISA500.  For example, admin can create two SSIDs - one SSID is "manager" and the other is "employee".  Each of the SSID is then associated to a VLAN beloing to the target zone.

While this approach has scalability limitation, it should easily support 2 or 3 different Web URL policies (or more if wired is used).

Hopefully this helps.

Richard