Jprez, for the first question you can create a Policy rule where you allow all web contents where no authentication is required for all you internal networks; second create a Policy rule where blocked categories are only allowed for certain users. For the second question, you can create clientless users and create a Policy rule where this "users" can bypass any filter. On clientless you can map only IP otherwise you can create a MAC host and create policy rule where the source host is the MAC host you created previously. Luk
↧