RE: ISA in a complex environment

  • From: "Thomas W Shinder" <tshinder@xxxxxxxxxxxxxxxxxx>
  • To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx>
  • Date: Thu, 10 Jul 2003 20:31:16 -0500

Hi Bogdan,
 
Some basics:
 
1. Where is the VPN client?
 
2. Where is the ISA Server?
 
3. Where is the VPN server?
 
4. Where is the host that can not access the Internet?
 
Thanks!
Tom
 
 
Thomas W Shinder 
www.isaserver.org/shinder 
ISA Server and Beyond: http://tinyurl.com/1jq1 
Configuring ISA Server: http://tinyurl.com/1llp 
        -----Original Message-----
        From: Bogdan Florin [mailto:florinb@xxxxxxxxxxx] 
        Sent: Thursday, July 10, 2003 6:45 PM
        To: [ISAserver.org Discussion List]
        Subject: [isalist] ISA in a complex environment
        
        
        http://www.ISAserver.org
        
        
        We design our own DVB platform using MS software. Unfortunately
I face few problems.
         
        1.      For an easier understanding I will give joust an
example: I have one machine with one NIC, RRAS and ISA setup on the same
computer. RRAS it is setup to provide a real internet range of ip. All
that IP are correctly routed till that ISA machine. After a client
correctly establish the VPN, after he got one real IP, after he can ping
the RRAS server, the client it is not able to done anything more, the
client can not browse and can not ping anything from internet. I create
two rules into SITE AND CONTENT and PROTOCOL RULES, totally 4 rules. One
based on the client IP and one based on client username, both on each
machine. On the other hand if he can browse I can not see his connection
in ISA management. I se only his VPN in RRAS but I need to see in ISA
management since Isa logs his traffic intro databases. 
         
         
        2.      Another issue I encounter: I have 3 ISA servers with 2
NIC adapters on motherboard and one special INTEL SERVER NIC. After
clustering this Array the VIRTUAL adapter who it is created it have the
same IP settings on all machines and I receive in Event long an error
message that the "other machines with the same name have been found on
the network" If someone experience such configuration I will be very
glad to hear some advices. 
         
        To resume: my biggest issue it is that I can not see the traffic
made by a RRAS client customer. I mention than the RRAS cusstomer it got
real Ip after vpn it is established.
         
        I look forward to receive your considerations. Thank you.
        
        Yours sincerely,
         
        Bogdan Florin
        manager
        BizarNet - Satellite Internet Services
        www.bizarnet.ro <http://www.bizarnet.ro> 
        phone: +40-264-426507
        gsm: : +40-740-074031
        gsm: : +40-788-074031
        fax:   +40-264-452207
         
        ------------------------------------------------------
        List Archives:
http://www.webelists.com/cgi/lyris.pl?enter=isalist
        ISA Server Newsletter:
http://www.isaserver.org/pages/newsletter.asp
        ISA Server FAQ:
http://www.isaserver.org/pages/larticle.asp?type=FAQ
        ------------------------------------------------------
        Other Internet Software Marketing Sites:
        Leading Network Software Directory: http://www.serverfiles.com
        No.1 Exchange Server Resource Site: http://www.msexchange.org
        Windows Security Resource Site: http://www.windowsecurity.com/
        Network Security Library: http://www.secinf.net/
        Windows 2000/NT Fax Solutions: http://www.ntfaxfaq.com
        ------------------------------------------------------
        You are currently subscribed to this ISAserver.org Discussion
List as: tshinder@xxxxxxxxxxxxxxxxxx
        To unsubscribe send a blank email to
$subst('Email.Unsub') 

Other related posts: