Creating ISA Server access policy rules
Creating an Access Rule policy on ISA Server 2000
1. Launch ISA Server 2000 Management console.
Screenshot 31 - ISA Server 2000: Access Policy node
2. Expand the Access Policy node.
3. Right click on the Site and Content Rules } New... } Rule...This will bring up the New Site and Content Rule Wizard.
4. Give the rule the name " Block Adult Sites - Based on URLs in Adult Destination Set". Click on Next to continue.
5. In the Rule Action page, set the permission to `Deny' and click on Next to continue.
6. In the Rule configuration page, select the option "Deny access based on destination". Click on Next to continue.
Screenshot 32 - Specify the Destination Set to which this rule applies
7. In the Destination Sets page, set the option to "Specified destination set" and select the 'Adult' Destination Set from the list provided. Click on Next to continue.
Screenshot 33 - Site and Content Rule Wizard: Final dialog showing the configured rule details
8. Click on Finish. The new Access Rule policy is now set up on your ISA Server 2000 to block all users from accessing the sites listed in the 'Adult' Destination Set.
NOTE: The adult Destination/URL Set was created on the ISA Server during GFI WebMonitor installation.
Creating an Access Rule policy on ISA Server 2004
1. Launch ISA Server 2004 Management console
Screenshot 34 - ISA Server 2004: Firewall Policy Node
2. Right click on the `Firewall Policy' node and select New } Access Rule...This will bring up the New Access Rule Wizard.
3. Give the rule the name "Block Adult Sites - Based on URLs in Adult Destination Set". Click on Next to continue.
4. In the Rule Action page set the permission to `Deny' and click on Next to continue.
Screenshot 35 - Select the protocols to which this rule applies
5. In the Protocols configuration page, select the option "All outbound traffic". Click on Next to continue.
Screenshot 36 - Select the traffic sources to which this rule applies
6. In the Access Rule Sources configuration page, click on Add. Expand the Networks node and select `Internal'. Click on Add followed by Close. Click on Next to continue.
Screenshot 37 - Specify the Destination Set to which this rule applies
7. In the Access Rule Destinations page, click on Add. Expand the URL Sets node and select the `Adult' Destination Set. Click on Add followed by Close. Click on Next to continue.
8. In the User Sets page, click on Next to continue (the required parameter is already set by default to `All Users').
Screenshot 38 - Site and Content Rule Wizard: Final dialog showing the configured rule details
9. Click on Finish. The new Access Rule policy is now set up on your ISA Server 2004 to block all users from accessing the sites listed in the 'Adult' Destination Set.
NOTE: The adult Destination/URL Set was created on the ISA Server by GFI WebMonitor installation.