Contact UsContact Us

Excluding Infrastructure from Filtering in School Manager

This article is intended for IT support and filtering administrators.

You can prevent conflicts between School Manager and your firewall, switches, routers, and devices like printers. Your content filtering policies can allow these devices to run on your network with unimpeded access to the internet. 

Adding a policy that allows Infrastructure to your School Manager filtering policy set is a simple process:

  1. Create an IP Range List Object Pool or MAC Address List Object Pool containing devices you want to exclude.
  2. Create a Content Filtering Allow policy that uses the IP Range List or MAC Address List.
  3. (Optional) Exempt the IP Range or MAC Addresses from Captive Portal or Walled Garden.

Warning

Schools with a Captive Portal or Walled Garden enabled on a physical appliance should use an IP Range List or MAC Address List to avoid unintentionally blocking Infrastructure.

Create an IP Range List or MAC Address List Object Pool

Before you start creating an Infrastructure filtering policy, ensure that you have either:

  • Created a list list of Infrastructure IP addresses, IP ranges or MAC addresses
  • Created an IP Range List or MAC Address List
  1. In School Manager, go to Configuration > Objects > Pools
  2.  Select Add Pool
  3.  For the Pool Name, enter Infrastructure, IP Bypass or MAC Address Bypass
  4.  Using the Type dropdown, select IP Range List or MAC Address List
  5.  Select Save
  6.  Using Import CSV or Add Entry, you can add in assigned IP ranges or MAC addresses of your school’s network infrastructure.

Create a Content Filter Policy

  1. In School Manager, select Filtering > Content Filtering
  2. You will see your current list of Content Filtering policies
  3. To add a new policy, select + Create Policy
  4. Configure the following settings

    For Name, enter Allow - Infrastructure - All, IP Bypass | All.
    Using the Website/Category dropdown, select All Traffic.
    Using the Criteria dropdown, select IP Address Object or MAC Address List, then select the list you created earlier.
    Select Accept from the Action dropdown.
    Select the Locked checkbox.
    Note:  The Locked Allowed policy prevents users from accidentally blocking network infrastructure and ensures devices included on the list can always be accessed.  
  5. Select Save Policy.
  6. Reorder the new policy to the top of the Content Filtering list.

Exempt IP Range or MAC Addresses from Captive Portal (Optional)

  1. In School Manager, select Configuration > Authentication > Captive Portal.
  2. Select the Captive Portal.
  3. Select Add Exception.
  4. For Name, enter Infrastructure or IP Bypass.
  5. Using the Criteria dropdown, select IP Address Object or MAC Address List, then select the list you created earlier.
  6. Select Add Exception.

Exempt IP Range from Walled Garden (Optional)

  1. In School Manager, select Configuration > Walled Garden.
  2. Select Add Exception.
  3. Using the Criteria dropdown, select IP Address Object or MAC Address List, then select the list you created earlier.
  4. Select Add Exception.