RE: ISA Server and Trend WebManager

  • From: "Quillman Shawn (RBNA/CIT1.1)" <Shawn.Quillman@xxxxxxxxxxxx>
  • To: "'[ISAserver.org Discussion List]'" <isalist@xxxxxxxxxxxxx>
  • Date: Tue, 11 Feb 2003 08:35:31 -0500

If they're http requests then they're still going through your WebManager
which will still forward as http through your ISA.  You didn't need to
reinstall in integrated mode, you could have left the ISA in cache only.
Your problem is probably SSL.  If the requests are SSL you'll need to get
SSL_TPR_add.vbs from isatools.org that lets you add additional (ie- non-443)
SSL tunnel ports to ISA.  Run this script on your ISA and give it those
ports.  This is only possible through the API *grumble* so you need the
script to do it.

-Shawn

-----
Shawn R. Quillman
Robert Bosch Corporation RBNA/CIT1.1
38000 Hills Tech Drive
Farmington Hills, MI  48331
(248) 553-1164 (P)     (248) 848-2855 (F)
shawn.quillman@xxxxxxxxxxxx


-----Original Message-----
From: Warren van Eyssen [mailto:Warren@xxxxxxxxx]
Sent: Tuesday, February 11, 2003 6:22 AM
To: [ISAserver.org Discussion List]
Subject: [isalist] ISA Server and Trend WebManager


http://www.ISAserver.org


Hi All,

Does anyone know if this is possible and if so, can you please provide some
pointers.

Network   192.168.0.0
WebManager Server  192.168.0.7 for content filtering and blocking
ISA Server 192.168.0.11 - only 1 Nic
Lucent Firewall 192.168.0.4 providing NAT

Trend WebManager needs to use a proxy server and therefore we bought ISA as
proxy 2 was not available. We installed ISA in caching mode only. All
workstation have no default gateway. All browsers point to the webmanager
server port 8080. Webmanager uses ISA server as its proxy. The ISA server
default gateway is the lucent firewall. This works 100% for browsing and
FTP.

The problem I have is that I need to open ports 15000-15015 for internet
banking, but maintain the use of Trend WebManager

What I have tried.
1. Install ISA in integrated mode.
2. Create protocol definition for ports 15000-15015
3. Create protocol rule for the definition I created.

I suppose my real question is, can ISA work in integrated mode with only 1
NIC?
 
BTW, I tried this setup with Proxy 2 and it works.


> Regards,
> 
> Warren van Eyssen
> Systems Engineer - CNE, Citrix CCA, Compaq ASE, IBM PSS
> Lan Workgroup Solutions
> Tel:  (021) 683-5390
> Fax:  (021) 683-9141
> Mobile:       082-892-6960
> Email:   warren@xxxxxxxxx
> 

------------------------------------------------------
List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
------------------------------------------------------
Exchange Server Resource Site: http://www.msexchange.org/
Windows Security Resource Site: http://www.windowsecurity.com/
Windows 2000/NT Fax Solutions: http://www.ntfaxfaq.com
------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as:
shawn.quillman@xxxxxxxxxxxx
To unsubscribe send a blank email to $subst('Email.Unsub')


Other related posts: