Views:
Use Active Directory GPO (Group Policy Object) to enforce the use of a PAC file for traffic forwarding.

Windows Server 2012 GPO Creation

Create an Active Directory GPO (Group Policy Object) in Windows Server 2012 to enforce the use of the PAC file.

Procedure

  1. Log on to the Active Directory server as an administrator.
  2. Go to Start > Server Manager > Tools > Group Policy Management.
    The Group Policy Management window appears.
    pac-gpo-1.jpg
  3. From the left navigation tree, go to Forest: [your forest] > Domains > [your domain], right-click [your domain], and then select Create a GPO in this domain, and Link it here....
    pac-gpo-2.jpg
    The New GPO window appears.
    pac-gpo-3.jpg
  4. Type a name for the new Group Policy Object in the Name text box and click OK.
    The newly created GPO displays under Group Policy Objects.
    pac-gpo-4.jpg
  5. Right-click the GPO and select Edit.
    The Group Policy Management Editor window appears.
    pac-gpo-6.jpg
  6. From the left navigation tree, go to User Configuration > Preferences > Control Panel Settings > Internet Settings, right-click Internet Settings, and then select New > Internet Explorer 10.
    pac-gpo-7.jpg
    The New Internet Explorer 10 Properties window appears.
    pac-gpo-8.jpg
  7. Click the Connections tab, and then click LAN Settings.
    The Local Area Network (LAN) Settings window appears.
    pac-gpo-9.jpg
  8. Type the PAC file address as necessary, for example, http://pac.iws-hybrid.trendmicro.com/proxy.pac, in the Address text box under Use automatic configuration script, and then press F5 to enable the setting (The red dotted line turns to a green solid line.).
    pac-gpo-11.jpg
  9. Click OK.
  10. Click Apply, and then click OK.

Windows Server 2016 GPO Creation

Create an Active Directory GPO (Group Policy Object) in Windows Server 2016 to enforce the use of the PAC file.
Note
Note
This procedure also applies to Windows Server 2019 and Windows Server 2022.

Procedure

  1. Log on to the Active Directory server as an administrator.
  2. Go to Start > Server Manager > Tools > Group Policy Management.
    The Group Policy Management window appears.
    win2016-gpo-1.jpg
  3. From the left navigation tree, go to Forest: [your forest] > Domains > [your domain], right-click [your domain], and then select Create a GPO in this domain, and Link it here....
    win2016-gpo-2.jpg
    The New GPO window appears.
    win2016-gpo-3.jpg
  4. Type a name for the new Group Policy Object in the Name text box and click OK.
    The newly created GPO displays under Group Policy Objects.
    win2016-gpo-4.jpg
  5. Right-click the GPO and select Edit.
    The Group Policy Management Editor window appears.
    win2016-gpo-5.jpg
  6. From the left navigation tree, go to User Configuration > Preferences > Control Panel Settings > Internet Settings, right-click Internet Settings, and then select New > Internet Explorer 10.
    win2016-gpo-6.jpg
    The New Internet Explorer 10 Properties window appears.
    win2016-gpo-7.jpg
  7. Click the Connections tab, and then click LAN Settings.
    The Local Area Network (LAN) Settings window appears.
    win2016-gpo-8.jpg
  8. Type the PAC file address as necessary, for example, http://pac.iws-hybrid.trendmicro.com/proxy.pac, in the Address text box under Use automatic configuration script, and then press F5 to enable the setting (The red dotted line turns to a green solid line.).
    win2016-gpo-9.jpg
  9. Click OK.
  10. Click Apply, and then click OK.