RE: An Alternative Solution VS SBS on one Physical Server

  • From: "Roy Tsao" <roy_tsao@xxxxxxxxxxxx>
  • To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx>
  • Date: Mon, 10 Jan 2005 12:29:33 +0800

Hi Andrew,

For your reference, my network frame is
   Guest Server 1) & 2) and other local LAN PC are
   within the same network segment protected by Guest
   Server 1) as firewall.
   It is not a network within Host & Guest Server itself.
So I need two NICs and have a setting of 2) to host internet
access for whole LAN.

The physical server's hardware configuration is:
  CPU: 2.8G Intel Xeon (1MT cache & HT) X 1
  RAM: DDRII PC3200 1G
  HD:  73G SCSI X 1
       80G SATA 150 X 1 (for backup usage)
Vitual PC's setting & service is:
  Guest 1): 512RAM/16G HD capacity
            DC
  Guest 2): 384RAM/10G HD capacity
            ISA with web access filter plug-in

Is that a good solution VS SBS?

Thanks,

Roy Tsao

----- Original Message ----- From: "Andrew English" <andrew@xxxxxxxxxxxxxxxxxxxxxx>
To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx>
Sent: Monday, January 10, 2005 12:12 AM
Subject: [isalist] RE: An Alternative Solution VS SBS on one Physical Server



http://www.ISAserver.org

Hi Roy,

I currently run my two DC's, Exchange and Web Server on a dual P3-1Ghz,
2GB of RAM, and 4 x 40GB IDE hard drives (8meg cache) in 2 x RAID 1
configuration. My host runs on one mirrored drive while my VM's run on
the other.

To do what you want there is no need to have two physical network
adaptors in your computer. I have my ISA 2004 running in another GSX
Server on another box which the HOST only has 1 NIC enabled, my ISA 2004
VM has 2 NICs one for External and one for Internal.

I would think you could run your VM's on a P3-800 or higher, with 1GB of
RAM, and a 40GB hard drive (since they don't come smaller today)..

"1) Windows Server 2003 running as DC (one vitual NIC)
               IP: 192.168.0.3/255.255.255.0
               (bridged to Host Internal NIC)
    as DC/DNS/DHCP server"

This only requires 256MB of RAM, 4GB HD, and 1 NIC under a VM session.

"2) Windows Server 2003 running as ISA2K4 (one vitual NIC)
               IP: 192.168.0.1/255.255.255.0
               (bridged to Host Internal NIC)
              Network frame:
              Wan connection: ADSL PPOE connection through Guest Server
2)
                   Host Server and other Lan PC's connection to
                   Wan through Gateway 192.168.0.1 like a physical
                   ISA2K4 Box"

Not sure what you are trying to do here. But you can certainly host your
internet connection through this ISA box by adding another NIC to it
(WAN/LAN) even if you do the one NIC in your host machine scenario. ISA
should ideally have 512MB of RAM, 4GB HD, and 2 NIC's under a VM
session. Or in your case if you want to do something different 1 NIC.

Andrew


-----Original Message----- From: Roy Tsao [mailto:roy_tsao@xxxxxxxxxxxx] Sent: Sunday, January 09, 2005 10:49 AM To: [ISAserver.org Discussion List] Cc: Jim@xxxxxxxxxxxx Subject: [isalist] An Alternative Solution VS SBS on one Physical Server

http://www.ISAserver.org


In my past post, I want to implement a more wider service Like ISA/SQL/DC etc. on one phsical server. For security Concern, so far the recommendation from ISAServer forum Is to use SBS. However we could have one more idea by utilizing Vmware GSX server like below for my network: - Host OS: Windows Server 2003 (two NICs) External NIC: any but no DG IP Internal NIC: 192.168.0.2/255.255.255.0 - two Guest Server (Through Vmware GSX): 1) Windows Server 2003 running as DC (one vitual NIC) IP: 192.168.0.3/255.255.255.0 (bridged to Host Internal NIC)

            2) Windows Server 2003 running as ISA2K4 (one vitual
NIC)
               IP: 192.168.0.1/255.255.255.0
               (bridged to Host Internal NIC)
 Network frame:
   Wan connection: ADSL PPOE connection through Guest Server 2)
                   Host Server and other Lan PC's connection to
                   Wan through Gateway 192.168.0.1 like a physical
                   ISA2K4 Box

   Lan connection: Guest Server 1) as DC/DNS/DHCP server

   Firewall protectiont o Host Server from External NIC:
     enable firewall protection, close up all communication port
through
     TCP/IP

Dear Jim and other cool guys, is that a good idea suppose the host
server
Has engouth CPU capacity and RAM?

Thanks for your suggestion in advance!

Roy Tsao



------------------------------------------------------
List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
------------------------------------------------------
Other Internet Software Marketing Sites:
World of Windows Networking: http://www.windowsnetworking.com
Leading Network Software Directory: http://www.serverfiles.com
No.1 Exchange Server Resource Site: http://www.msexchange.org
Windows Security Resource Site: http://www.windowsecurity.com/
Network Security Library: http://www.secinf.net/
Windows 2000/NT Fax Solutions: http://www.ntfaxfaq.com
------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as:
andrew@xxxxxxxxxxxxxxxxxxxxxx
To unsubscribe visit http://www.webelists.com/cgi/lyris.pl?enter=isalist
Report abuse to listadmin@xxxxxxxxxxxxx

------------------------------------------------------
List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
------------------------------------------------------
Other Internet Software Marketing Sites:
World of Windows Networking: http://www.windowsnetworking.com
Leading Network Software Directory: http://www.serverfiles.com
No.1 Exchange Server Resource Site: http://www.msexchange.org
Windows Security Resource Site: http://www.windowsecurity.com/
Network Security Library: http://www.secinf.net/
Windows 2000/NT Fax Solutions: http://www.ntfaxfaq.com
------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as: roy_tsao@xxxxxxxxxxxx
To unsubscribe visit http://www.webelists.com/cgi/lyris.pl?enter=isalist
Report abuse to listadmin@xxxxxxxxxxxxx




Other related posts: