Endian Knowledge Base
Search:     Advanced search
Browse by category:

Why do I get an "ACCESS DENIED" page when trying to browse a local web server using HTTP Proxy?

Add comment
Views: 6449
Votes: 2
Comments: 0
Posted: 06 Feb, 2007
by: Warasin P.
Updated: 15 Dec, 2008
by: Warasin P.
Endian Firewall denies access, to clients, using the HTTP proxy when accessing local web servers or web servers whose IP is defined in the Allowed Subnets of Proxy > HTTP > Network based access control. This is done for security reasons. If Endian Firewall did not enforce this, it will allow other zones to access ANY machine of ANY zone through the HTTP Proxy. For example if you have local clients wanting to browse a local web server, by using www.somedomain.com and you use HTTP Proxy then follow these steps:
  • Go to Network > Edit Hosts
  • Click on Add a host button   
  • Host IP Address: 192.168.0.253 (This is the private IP address of the web server)
  • Host Name: www 
  • Domain Name: somedomain.com 
  • Click the Add button
What we have essentially accomplished here is told Endian Firewall to resolve all requests for www.somedomain.com to the internal IP or private IP of the local web server. Browsers using the HTTP Proxy in Transparent Mode will directly connect to the IP of the local web server and not use the HTTP Proxy. If you are using the HTTP Proxy in Standard Mode or with Authentication then you will have to add the private IP address of the local web server into your browser's options to not use the configured proxy when connecting to that particular IP.
Others in this Category
document Does Endian Firewall support Harddisk mirroring (RAID-1)?
document Why won't the firewall boot after installation?
document My LAN does not work anymore if i connect Endian Firewall
document How to discover the MTU size to be set for having your uplink work correctly with your ISP.
document How to follow the boot process through serial console
document Why does my browser not use my AD login name / credentials when I browse the web using Vista with HTTP Proxy and Windows (AD) Authentication enabled?



RSS