This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to replace Computer IP to AD User Name from Log Report?

Hi all,

I am a new Sophos Firewall user.

I need a detail information to trace who uses the computers (We have 5 computers to serve all staffs) and what websites are the user log in to.

I follow the article ( and finish the point 1,2,3,4.

At Point 5, I have a confuse. If meet the purpose, does I need to create a proxy server in the window server?

Sorry for my bad English.


This thread was automatically locked due to age.
  • Hi and welcome to the UTM Community!

    I have pinned the post to which DouglasFoster refers at the top of the Web Filtering forum.

    To answer your question, I will use an example.  Assuming that the IP of "Internal (Address)" is and that utm.domain.local resolves to in your local domain, use utm.domain.local in the 'Proxy Settings' in the clients' browsers.  This causes the UTM web proxy to query Active Directory using Kerberos.  Using in 'Proxy Settings' would cause the UTM to use NTLM with AD, and that is less reliable.

    Cheers - Bob

    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • HI Bob,

    Thanks for reply. 

    I don't know why it still not ok. 

    I will try and error!

Reply Children
No Data