Is there a way to use Active Directory to prevent certain user groups from within the LAN from FTP'i

Is there a way to use Active Directory to prevent certain user groups from within the LAN from FTP'ing (nothing gets FTP'd!) data outside to the WAN - say by closing FTP ports or otherwise. Implementing a Group Policy rule would be easiest.

    Requires Free Membership to View

If you are using Microsoft ISA server, you can. MS ISA comes with some built in application level filters which provide you the ability to block or allow a service based traffic such as FTP, HTTP, SMPT etc. This is all done by the ISA server's Filtering engine. ISA can be easily integrated with Active Directory for user authentication and access policy.

This was first published in October 2003

Join the conversationComment

Share
Comments

    Results

    Contribute to the conversation

    All fields are required. Comments will appear at the bottom of the article.