RE: policy to access down level file shares

  • From: "Thor \(Hammer of God\)" <thor@xxxxxxxxxxxxxxx>
  • To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx>
  • Date: Thu, 22 Dec 2005 00:44:48 -0800

Create a destination set for just the computer you want, and allow NetBIOS/CIFS FROM "VPN Clients" TO that "Computer." You should monitor your log to see what protocols are denied when they try to access the share to see if you can get away with just CIFS or if you have to allow the entire NetBIOS suite.

t

-----
"I may disapprove of what you say,
but I will defend to the death your
right to say it."


----- Original Message ----- From: "Ara Avvali" <ara.avvali@xxxxxxxxxxxxx>
To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx>
Sent: Thursday, December 22, 2005 12:28 AM
Subject: [isalist] RE: policy to access down level file shares



http://www.ISAserver.org


This is a multi-part message in MIME format.



--------------------------------------------------------------------------------


As my example, for some reason (!) I should lock the vpn access to file share only to some sub folder. If I allow to do file sharing access from vpn, they can access everything but I want to be able to create some sort of destination set like \\servername\files\forms\2006


________________________________

From: Jim Harrison [mailto:Jim@xxxxxxxxxxxx]
Sent: Wed 12/21/2005 9:49 PM
To: [ISAserver.org Discussion List]
Subject: [isalist] RE: policy to access down level file shares



http://www.ISAserver.org

What exactly do you mean "down level"?
This term normally refers to "older OS"...

--------------------------------------------
Jim Harrison
MCP(NT4, W2K), A+, Network+, PCG
http://isaserver.org/Jim_Harrison/
http://isatools.org
Read the help / books / articles!
--------------------------------------------

-----Original Message-----
From: Ara Avvali [mailto:ara.avvali@xxxxxxxxxxxxx]
Sent: Wednesday, December 21, 2005 5:40 PM
To: [ISAserver.org Discussion List]
Subject: [isalist] policy to access down level file shares

http://www.ISAserver.org

Hello
Is it possible to crate a policy that allows access to a down level
shared folder to vpn clients? Let's say access to
\\servername\files\froms
Maybe I am blind not be able to find it
Appreciated

------------------------------------------------------
List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
------------------------------------------------------
Visit TechGenix.com for more information about our other sites:
http://www.techgenix.com
------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as:
jim@xxxxxxxxxxxx
To unsubscribe visit http://www.webelists.com/cgi/lyris.pl?enter=isalist
Report abuse to listadmin@xxxxxxxxxxxxx

All mail to and from this domain is GFI-scanned.


------------------------------------------------------
List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
------------------------------------------------------
Visit TechGenix.com for more information about our other sites:
http://www.techgenix.com
------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as: ara.avvali@xxxxxxxxxxxxx
To unsubscribe visit http://www.webelists.com/cgi/lyris.pl?enter=isalist
Report abuse to listadmin@xxxxxxxxxxxxx






--------------------------------------------------------------------------------


------------------------------------------------------
List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
------------------------------------------------------
Visit TechGenix.com for more information about our other sites:
http://www.techgenix.com
------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as: thor@xxxxxxxxxxxxxxx
To unsubscribe visit http://www.webelists.com/cgi/lyris.pl?enter=isalist
Report abuse to listadmin@xxxxxxxxxxxxx





Other related posts: