Remote Desktop to servers behind ISA 2000

  • From: "Dan Slaby" <dslaby@xxxxxxxxxxxxxxxxx>
  • To: isalist@xxxxxxxxxxxxx
  • Date: Sun, 15 Aug 2004 18:17:21 -0600

I had a setup of two servers connected to the internet: (1 EIS) had ISA
2000 Enterprise, IIS6, Exchange 2003, SQL, Certificate Server on Windows
2003 Enterprise Domain Controller and DNS, (2 WEB) Project Server, SQL,
IIS6, WSS on Windows 2003 Standard. The onboard LAN failed on EIS and I
replace the motherboard with a different one. I took the advantage of
removing ISA from EIS, set up a stand alone ISA server and added a web
server using Windows 2003 web edition. Previously I could remote desktop
to both servers and access OWA. In reconfiguring my setup, I can remote
desktop to the ISA server and VPN into ISA and view all shared folders on
all servers. I am not able to access OWA. Here is my current setup:

ISA:    External IP 999.999.999.130
        Internal IP  192.168.16.2; PDNS (EIS) 192.168.16.1

ISA:    DNS server with stub to EIS (192.168.16.1)

Internal Network servers
EIS:    IP 192.168.16.1; GW and PDNS (ISA) 192.168.16.2
NET:  IP 192.168.16.3; GW and PDNS (ISA) 192.168.16.2
WEB: IP 192.168.16.50 GW and PDNS (ISA) 192.168.16.2

ISA Configuration:

Protocol Definition    RDP (terminal services) 3389 outbound
                       RDP EIS 3390 inbound
                       RDP EIS 3390 outbound
                       RDP NET 3391 inbound
                       RDP NET 3391 outbound
                       RDP WEB 3388 inbound
                       RDP WEB 3388 outbound

IP Packet Filters:     Remote Access Fixed Port 3389 Outbound
                       Remote Access ISA Fixed Port 3389 Inbound
                       Remote Access EIS Fixed Port 3390 Direction Both
                       Remote Access NET Fixed Port 3388 Direction Both
                       Remote Access WEB Fixed Port 3391 Direction Both

I set protocol rules for each server
I set Server publishing rules for each server
Each server has remote access enabled.

I can do RDP on WEB, but not EIS or NET even though I have identical
configurations with different ports.

What configuration changes should I make to enable remote desktop to EIS,
NET and WEB?  Thanks.



Other related posts: