Do this: Internet - ISA Server - LAN Or Internet - PIX (open all ports to ISA Server) - ISA Server - LAN Andrew ;) -----Original Message----- From: Peter [mailto:pladd@xxxxxxxx] Sent: Friday, July 08, 2005 11:09 AM To: [ISAserver.org Discussion List] Subject: [isalist] VPN through a PIX to an ISA Server 2004 http://www.ISAserver.org Greetings, I have a PIX 515e running the latest IOS (7.0). I am setting up a back to back scenario where the PIX is the perimeter firewall with the ISA2004 connected to the inside interface of the PIX. I am able to pass SMTP and Web Traffic fine. However, I want to use the ISA as VPN server. Thus, I need the PIX to allow the VPN traffic through to the ISA Server so that it can authenticate and created the tunnel. Here is my config Internet - PIX - ISA Server - LAN PIX external: x.x.x.166 PIX Internal 10.0.10.1 ISA exteranl: 10.0.10.2 ISA Internal 192.168.50.3 I guess what I really need is the commands/Caveats to allow the PIX to pass the vpn traffic. Any suggestion or comments welcome and appreciated. Thank you ------------------------------------------------------ List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ ------------------------------------------------------ Other Internet Software Marketing Sites: World of Windows Networking: http://www.windowsnetworking.com Leading Network Software Directory: http://www.serverfiles.com No.1 Exchange Server Resource Site: http://www.msexchange.org Windows Security Resource Site: http://www.windowsecurity.com/ Network Security Library: http://www.secinf.net/ Windows 2000/NT Fax Solutions: http://www.ntfaxfaq.com ------------------------------------------------------ You are currently subscribed to this ISAserver.org Discussion List as: andrew@xxxxxxxxxxxxxxxxxxxxxx To unsubscribe visit http://www.webelists.com/cgi/lyris.pl?enter=isalist Report abuse to listadmin@xxxxxxxxxxxxx