Interesting use of the *** :=). However, I'll look over your stuff tonight. Joseph -----Original Message----- From: Thomas W. Shinder [mailto:tshinder@xxxxxxxxxxxxxxxxxx] Sent: Wednesday, January 23, 2002 8:06 PM To: [ISAserver.org Discussion List] Subject: [isalist] Extending the internal Domain into the DMZ http://www.ISAserver.org Hey guys, I've done some work today and figured out how to extend the internal network domain into the DMZ, so that you can join a DMZ host to the internal network domain and make it a member server of the internal network domain. While this seems like a piss poor security design, there might be reasons for doing this of which I am not aware. I've put down some notes on how to do this at: http://www.tacteam.net/isaserverorg/domain_dc.htm If you know what you're doing, you should be able to make it work from the information in these notes. If you're not sure you know what you're doing, give me a few days and I'll create a large step-by-step how to that goes through each step and includes screen shots, etc and have it up on www.isasever.org/shinder Comments welcome on any errors in reasoning/implementation I've made. Please no questions yet; wait for me to get the how to together than then you can ask questions :-) HTH, Tom www.isaserver.org/shinder ------------------------------------------------------ You are currently subscribed to this ISAserver.org Discussion List as: cismic@xxxxxxx To unsubscribe send a blank email to $subst('Email.Unsub')