Articles Articles Most Popular Articles Most Popular Articles Most Helpful Articles Most Helpful Articles
DrillDown Icon Table of Contents Back
 . . . . . . . . . . . . .
DrillDown Icon What's New
DrillDown Icon Knowledge Base Information
DrillDown Icon Cyberoam UTM
DrillDown Icon Product Literature
DrillDown Icon Best Practices & Policies
DrillDown Icon Protect Your Cyberoam Appliances from Power Fluctuations
DrillDown Icon Version 10.x
DrillDown Icon Cyberoam Maintenance
DrillDown Icon FAQ's
DrillDown Icon How To
DrillDown Icon Anti Spam
DrillDown Icon Anti Virus
DrillDown Icon Authentication
DrillDown Icon Configure Guest User Authentication
DrillDown Icon Configure Windows Server 2008 as a RADIUS Server with MS-CHAP v2 Authentication
DrillDown Icon Push NTLM Settings in Internet Explorer Through GPO in Windows Server 2008
DrillDown Icon Install Novell eDirectory Compatible CTAS
DrillDown Icon Integrate Cyberoam with RSA SecurID as a RADIUS Client
DrillDown Icon Allow Specific Websites without Authentication
DrillDown Icon Configure NTLM Support in Web Browsers
DrillDown Icon Configure NTLM in Cyberoam
DrillDown Icon Configure Cyberoam to use RADIUS Server for Authentication
DrillDown Icon Customize a Denied Message on Cyberoam Appliance
DrillDown Icon Integrate Cyberoam with LDAP
DrillDown Icon Serve a Denied page instead of Captive Portal for unauthenticated users
DrillDown Icon Implement Clientless SSO Authentication in Multiple Active Directory Domain Controller
DrillDown Icon Assign Group Membership to Users in case of Tight Integration with Active Directory
DrillDown Icon Integrate with Active Directory
DrillDown Icon Implement Clientless SSO Authentication in Single AD Domain Controller Environment
DrillDown Icon Implement SSO Authentication with AD
DrillDown Icon Import AD Groups
DrillDown Icon Implement Single Sign on Authentication with Active Directory Integration with Non-English version of Windows
DrillDown Icon Serve a Denied Page with Captive Portal Link for Unauthenticated Users
DrillDown Icon Clients
DrillDown Icon Content Filtering
DrillDown Icon Firewall
DrillDown Icon Identity-based Policies
DrillDown Icon IPS
DrillDown Icon Logs & Reports
DrillDown Icon Multiple Gateway - Load Balancing and Failover
DrillDown Icon Quality of Service (QoS)
DrillDown Icon Registration
DrillDown Icon Routing
DrillDown Icon SSL VPN
DrillDown Icon System
DrillDown Icon Users and Groups
DrillDown Icon Virtual LANs
DrillDown Icon VPN
DrillDown Icon Web Application Firewall (WAF)
DrillDown Icon Wireless LAN
DrillDown Icon Configure Wireless WAN
DrillDown Icon TroubleShooting
DrillDown Icon Visio Stencils
DrillDown Icon Glossary
DrillDown Icon Product Technical Support
DrillDown Icon Compatibility
DrillDown Icon Cyberoam Virtual UTM
DrillDown Icon Endpoint Data Protection
DrillDown Icon Cyberoam SSL VPN
DrillDown Icon Cyberoam iView
DrillDown Icon Cyberoam Central Console
DrillDown Icon Cyberoam's On-Cloud Management Service
  Email This ArticlePrintPrint Current Article and All Sub-Articles
 
Allow Specific Websites without Authentication

Applicable Version: 10.00 onwards
 
 
This article describes how we can allow users to access specific websites even though they are not authenticated.
 

Requirement

Allow unauthenticated users access to specific websites, namely, www.cyberoam.com and www.elitecore.com. The user should not be able to access anything else apart from the mentioned websites without getting authenticated.
 

Solution

You can allow unauthenticated users to access only the websites mentioned above by following the steps given below.

Step 1: Create Custom Web Category

Go to Web Filter à Category à Category and click Add to create a new Web Category using the parameters given below.
 
 
 
  
Parameter Description
 
 

Parameter

Value

Description

Name

AllowedWebsites

Name to identify the Category.

Classification

Productive

Specify how the category is classified.

Available options:

-       Productive
-       Non-Working
-       Neutral
-       Unhealthy

QoS Policy

None

Specify QoS policy to be applied on the category

Domain/Keyword

www.elitecore.com,

www.cyberoam.com

Domain: Mention the domain(s) which are to be blocked/allowed.

Keyword: You can also mention keywords. Any URL containing those keywords is blocked/allowed.

 
 
 

Click OK to create the web category.


Step 2: Create Web Filter Policy

Go to Web Filter à Policy à Policy and click Add to create a policy using following parameters.
 
 
 
 
Parameter Description
 
 
Parameter
Value
Description
Name
Allow_Websites
Name to identify the Policy.
Template
Deny All
Download File Size Restriction
0
 
 
  
 
Click OK to create the web filter policy.
 
 
Step 3: Add Web Filter Policy Rule
 
Select the policy Allow_Websites to create rule for the policy.
 
 
 
 
Click Add to add a new rule using the parameters given below.
 
 
  
 
Parameter Description
 
 
Parameter
Value
Description
Category Type
Web Category
 
Available options:
-   Web Category
-   File Type Category
-   URL Group
-   Dynamic Category
Category
AllowedWebsites
HTTP Action
HTTPS Action
Allow
Select HTTP and HTTPS action.
All the time

 
 
 
Click OK to add the rule.

Step 4: Configure LAN_WAN_AnyTraffic Rule

Since the LAN_WAN_AnyTraffic Rule is set to drop all unauthenticated traffic, you have to configure it to allow specifically the two mentioned sites.

To configure the rule, follow the steps below.

Go to Firewall à Rule à Rule and select LAN_WAN_AnyTraffic to configure it.
 
 
 
 
Under the Security Policies section, select Web Filter as Allow_Websites.
 
 
 

Click OK to apply the changes.

The above configuration allows unauthenticated users to access only www.elitecore.com and www.cyberoam.com. All the rest requires authentication.
 
 
                                                                                                                                                                              Document Version: 1.0 – 28/04/2012
Attachments
Article ID: 2281