I have the following setup: ISA 2004 with public DMZ Which is the difference between: Make a web publish rule, set a listener on ISA's external IP and set the server as the computer with public IP on the DMZ and Make an Access rule between the external network and the web server with public IP on the DMZ, set protocol as HTTP and enable the Web proxy filter. I'm most interested on security / possibilities comments of both examples. Thanks, Alejandro E. Fernández Preda Dto. Informática Tel: 54 (11) 4864-0606 ext. 219 Fax: 54 (11) 4864-0606 ext. 215 VoIP gateway : voip.cznet.com.ar - Tel.: 4864-0606 CZ S.R.L. http://www.cznet.com.ar <http://www.cznet.us/> | Gallo 120 C.P. 1172 | | Buenos Aires | Argentina |