Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Blocked site get the "Network Authentication"

Hi,
I configured just now Web Filtering but when I have hit on a blocked policy, I'm redirected to the Captive Portal and I get the Network Authentication to login.
But I want to get the " Blocked Request" page and not the Network Authentication page and the I think it's not a good solution.

Anyone fix this problem?



This thread was automatically locked due to age.
  • Ramy,

    have a look at the answers in this thread. Anyway under Sytem> Authentication > Autentication Services you should be able to change Captive Portal to Blocked Page under Captive Portal settings.

  • lferrara,

    The only option I have is custom message there is no option to select Blocked Page. 

  • Correct. Is not working? You do not get the Blocked page with custom message?

    Is the XG your DNS server on your Computer behind it?

  • the custom message its working but Im looking to show the this block page 

    My XG its not my DNS server

    this is what Im looking for

  • I finally decided to give XG a try and have been fighting this issue for a couple of hours.

    I'm on MR2.

    XG is not my DNS server, it's on the LAN.

    I'm in bridge mode.

    The only way I have been able to avoid the login page is to place the entire LAN IP range in Clientless Users and toggle them to active.  Outright silly solution.

  • Unfortunately your solution didn't work for us. Whatever we do we always get an authentication window.

  • This has also been the only way we can bypass the auth page and at least get the block page to display (add IP's or a range to clientless users).

    We have even just disabled captive portal and client authentication for specified zones until Sophos fixes this or a better solution (outside of clientless users) is presented.

  • As of this date, the issue is still open.  Sorry, I don't have a fix but I'm working on it.  In the meantime, why don't you all just configure the Custom Message under Auth Serv./Cap. Port. Settings to read similar to a blocked request message.  You can even include a fancy red X mark if you wish :)

  • I had the same issue here, we were seeing the "block" message from the captive portal settings, not from the Web Content Filter > General configuration settings, which is where I want to have it come from, just makes sense...

    Anyway, I added a few IP addresses of PCs, that were getting the wrong blocked message, to my Clientless Users list and boom, those started getting the correct blocked message.  How did you add all of your IPs in there?   I tried the range options, but it did not seem work work correctly.  I would hate to have to add each IP address for all 450+ users...

    Also, since you did add them to this Clientless list, did it have any other bad fallout in other areas?  Tracking web usage?  Rules based on Usernames? etc.