VPN between the LAT and the DMZ is the only sane way to accomplish this. Jim Harrison MCP(2K), A+, Network+, PCG ----- Original Message ----- From: Rodney Harris To: [ISAserver.org Discussion List] Sent: Wednesday, October 10, 2001 08:44 Subject: [isalist] Exchange 2000/Active Directory/Netlogon from DMZ http://www.ISAserver.org I want to open my ISA firewall to allow Exchange/Active Directory/Netlogon, etc. from my DMZ to my internal LAN but not open to to the external world. Does anyone have the procedures for doing this? ------------------------------------------------------ You are currently subscribed to this ISAserver.org Discussion List as: jim@xxxxxxxxxxxx To unsubscribe send a blank email to $subst('Email.Unsub')