RE: Help needed on 3homed DMZ Scenario

  • From: Ian Sie <starian_sie@xxxxxxxxx>
  • To: "\[ISAserver.org Discussion List\]" <isalist@xxxxxxxxxxxxx>
  • Date: Tue, 30 Jul 2002 23:19:47 -0700 (PDT)

 Yeah, i need DMZ to see into my LAN, supposed like my internet is down
  "SNELL,BEN (HP-UnitedKingdom,ex1)" <ben_snell@xxxxxx> wrote: 
http://www.ISAserver.org



This message is in MIME format. Since your mail reader does not understand
this format, some or all of this message may not be legible.
OK. You have the LAT setup OK to identify your LAN? And do you need you DMZ to 
see into your LAN at all? Ben-----Original Message-----
From: Ian Sie [mailto:starian_sie@xxxxxxxxx]
Sent: Friday, July 26, 2002 3:08 AM
To: [ISAserver.org Discussion List]
Subject: [isalist] RE: Help needed on 3homed DMZ Scenario

http://www.ISAserver.org 
 HI Ben, 
The default gateway for my DMz is pointing to ISA Server second nic ( Public IP 
xxx.xxx.xxx.29/24) 
The default gateway for my LAN is pointing to ISA Server third nic ( Private IP 
192.168.0.8 ) 
San 
  "SNELL,BEN (HP-UnitedKingdom,ex1)" <ben_snell@xxxxxx> wrote: 
http://www.ISAserver.org


You need to ensure that your default gateways are for dmz and LAN are
pointing at the ISA. Do your DMZ servers need access to the LAN?
Ben

-----Original Message-----
From: starian_sie@xxxxxxxxx [mailto:starian_sie@xxxxxxxxx]
Sent: Thursday, July 25, 2002 5:59 AM
To: [ISAserver.org Discussion List]
Subject: [isalist] Help needed on 3homed DMZ Scenario


http://www.ISAserver.org


Hi,

I've installed ISA Server in Firewall Mode as StandAlone server with 3 NICs.
I have SDSL connection with the modem connect to switch and from that
switch, my DMZ servers and router also connected. From router, i connect to
hub which is for my internal LAN. All my DMZ is configured by Public IP. The
diagram is like this :
Modem ------- Switch -------- DMZ Servers (Public IP)
|
|
Router ( Public IP )
|
|
Hub ----- LAN (Private IP)
To setup ISA firewall for 3 homed DMZ, as what i had read, i connect first
nic to new switch along with modem. The second nic, i connect it to the
different switch along with all my DMZ Servers. Finally, i connect third nic
to my LAN Hub. The diagram is like this :
Modem ------- Switch --------- ISA Server 1st NIC(Public IP) 
xxx.xxx.xxx.24/24

DMZ Servers ------ Switch ------ ISA Server 2nd NIC 
(Public IP (Public IP
xxx.xxx.xxx.25-28/24) xxx.xxx.xxx.29/24)

Internal LAN ---- HUB ---- ISA Server 3rd NIC 
(Private IP (Private IP
192.168.0.x/24) 192.168.0.8/24) 

After setting the above network, all my DMZ server and my LAN cannot connect
surf the internet. From ISA itself, i just be able to ping but failed to
surf as well.
Pls help me if there is something wrong with my configuration. I've enabled
Packet filtering and IP Routing and create new packet filter to allow all
protocols at all ports both in and outbound but still failed.

Thank you very much,

------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as:
ben_snell@xxxxxx
To unsubscribe send a blank email to $subst('Email.Unsub')

------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as: 
starian_sie@xxxxxxxxx
To unsubscribe send a blank email to $subst('Email.Unsub')


---------------------------------
Do You Yahoo!?
Yahoo! Health - Feel better, live better 
------------------------------------------------------ You are currently 
subscribed to this ISAserver.org Discussion List as: ben_snell@xxxxxx To 
unsubscribe send a blank email to $subst('Email.Unsub') 
------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as: 
starian_sie@xxxxxxxxx
To unsubscribe send a blank email to $subst('Email.Unsub')
,


---------------------------------
Do You Yahoo!?
Yahoo! Health - Feel better, live better

Other related posts: