Results 1 to 5 of 5
  1. #1
    Untangler
    Join Date
    Sep 2008
    Posts
    35

    Default MSE & Captive Portal

    The Captive Portal is enabled for our network environment. Soon after starting to encounter updating issue for the Microsoft Security Essential.

    Would like to know whether there is other methods on to allow the updating without adding these terminals to the 'Pass Listed Client Addresses'. Tried the 'Pass Listed Server Addresses'. It worked but requires the adding of all IP addresses ever contacted by the program. Any advice please.

  2. #2
    Untangle Ninja sky-knight's Avatar
    Join Date
    Apr 2008
    Location
    Phoenix, AZ
    Posts
    26,497

    Default

    All network access through the portal is terminated without authentication based on what you configured. There is no magic way to allow some connections vs others. You must white list each thing. Windows Updates, and AV updates are the first thing on the list.
    Rob Sandling, BS:SWE, MCP
    NexgenAppliances.com
    Phone: 866-794-8879 x201
    Email: support@nexgenappliances.com

  3. #3
    Untangler
    Join Date
    Sep 2008
    Posts
    35

    Default

    Hi Sky-night, pardon my lack of information on the captive portal; any idea why was IP addresses used instead of url. Wouldn't url be better, as similar to the web filter module?

  4. #4
    Untangler
    Join Date
    Jul 2009
    Location
    Huntington Beach, CA
    Posts
    82

    Default

    It would be nice to be able to use either method - ip or url.

  5. #5
    Untangle Junkie dmorris's Avatar
    Join Date
    Nov 2006
    Location
    San Carlos, CA
    Posts
    17,486

    Default

    Quote Originally Posted by mydurian View Post
    Hi Sky-night, pardon my lack of information on the captive portal; any idea why was IP addresses used instead of url. Wouldn't url be better, as similar to the web filter module?
    The URL isn't known till well after the connection is allowed, so if you aren't authenticated all Untangle is gonna see is a connection to "1.2.3.4" - it has no idea what the URL is.

    my suggestion would be to add a rule such that the hosts are not captive from 2am-3am or something like that.
    Then set everyone to do updates at that time.
    Attention: Support and help on the Untangle Forums is provided by volunteers and community members like yourself.
    If you need Untangle support please call or email support@untangle.com

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

SEO by vBSEO 3.6.0 PL2