Is there any way I can statically map an IP Address (or preferably a range of IP Addresses) to a particular Active Directory user for web filtering?
Current setup:
On one Interface, I have Standard mode proxy with several different access profiles set up for different groups of AD Users. This works very nicely (and transparently) for users logged onto a domain joined machine.
There are a few devices, which I want to be subject to the same profiles, but aren't joined to the active directory domain (smartphones, tablets, a server running a Java based app which doesn't seem to support proxy authentication).
Is is possible to configure the UTM so that all connections from a particular IP Address (e.g. a smartphone's DHCP reservation) are assumed to be a particular user account, and have web filters apply accordingly?
At present, I have set up an additional interface on the UTM for the Server running a Java app using transparent proxy, and I'm in the process of doing this for the devices which can't authenticate against AD. However, there are different rules for different devices, and I'd rather not have to make a new Interface for each different policy.
Many thanks
This thread was automatically locked due to age.