Welcome to ISAserver.org

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

Firewall client & http authentication

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [ISA Server 2000 Firewall] >> Firewall Client >> Firewall client & http authentication Page: [1]
Login
Message << Older Topic   Newer Topic >>
Firewall client & http authentication - 23.May2001 1:35:00 PM   
Jimbod

 

Posts: 8
Joined: 23.May2001
Status: offline
I may be missing something here, but....

I can't get the firewall client to do authenticated CACHED browsing.

It's the old chestnut about the firewall client not passing it's authentication onto the Web proxy service (for hhtp & ftp).

I understood, that it should be possible to get the Web proxy service to pop up a box requesting authentication. I can't get this to work with an 'allow' protocol rule that only allows members of a AD group to use http.

All I can do, is change the properties of the 'http redirector filter' so that http requests are sent to the requested web server (ie out of the firewall service) - obviously preventing any caching. This allows the protocol rule to apply, as it used the 'integrated' authentication of the web proxy client.

Am I missing something, or isn't it possible to use caching in combination with authentication rules and the web proxy client ?

Thanks in advance

Post #: 1
RE: Firewall client & http authentication - 23.May2001 8:47:00 PM   
tshinder

 

Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
Hi Jim,

If you want the Web Proxy client to authenticate even when you have anonymous access rules in place, you can force authentciation by checking the box for "ask unauthenticated clients to authenticate" checkbox in the outbound web requests listener.

HTH,
Tom

------------------
Tom Shinder
http://www.isaserver.org/shinder/

Get It Here


(in reply to Jimbod)
Post #: 2
RE: Firewall client & http authentication - 24.May2001 9:50:00 AM   
Jimbod

 

Posts: 8
Joined: 23.May2001
Status: offline
Thanks for that. I can get that to work, but doesn't this tick box apply when the request is passed to the web proxy service from a firewall client?

What I want is to be able to use the firewall client (as opposed to the web-proxy client) with authentication and making use of the caching service (ie not going directly out of the firewall service). Is this possible?



(in reply to Jimbod)
Post #: 3
RE: Firewall client & http authentication - 24.May2001 8:43:00 PM   
tshinder

 

Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
Hi Jim,

That is not possible. You must have the request go through the Web Proxy service in order for it to be cached.

Why don't you want to configure the browsers as web proxy clients? There are a lot advantages to doing so, and no disadvantages.

HTH,
Tom

------------------
Tom Shinder
http://www.isaserver.org/shinder/

Get It Here


(in reply to Jimbod)
Post #: 4

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [ISA Server 2000 Firewall] >> Firewall Client >> Firewall client & http authentication Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts