N
Netmasker
I have a windows 2000 network with the following
configuration/components:
(Win 2000 clients ---------- ISA Server ---------- Domain Controler
server)
- A windows 2000 ISA Server with two network interfaces on two
different subnets and I have enabled routing between the two
interfaces (with the setting on the registry) on it.
- A number of windows 2000-domain members-clients the gateway of which
is the internal interface of ISA Server (they belong to the first
subnet).
- A windows 2000 Active Directory Server with a route to the first
subnet pointing to the external interface of ISA Server (the AD server
belongs to the second subnet).
On ISA Server:
- I allow all protocols to any request (with "Protocol Rules")
- I allow all traffic, both directions from any computer (with "IP
Packet filters rules")
The question is if Domain traffic can pass through this configuration!
I noticed that the internal clients can successfully ping and connect
to the DC Server ports like port 389, but
how the external DC can communicate and send through the ISA firewall
the Domain settings to the internal clients ??? This seems not to
work!
Thanks in advance
configuration/components:
(Win 2000 clients ---------- ISA Server ---------- Domain Controler
server)
- A windows 2000 ISA Server with two network interfaces on two
different subnets and I have enabled routing between the two
interfaces (with the setting on the registry) on it.
- A number of windows 2000-domain members-clients the gateway of which
is the internal interface of ISA Server (they belong to the first
subnet).
- A windows 2000 Active Directory Server with a route to the first
subnet pointing to the external interface of ISA Server (the AD server
belongs to the second subnet).
On ISA Server:
- I allow all protocols to any request (with "Protocol Rules")
- I allow all traffic, both directions from any computer (with "IP
Packet filters rules")
The question is if Domain traffic can pass through this configuration!
I noticed that the internal clients can successfully ping and connect
to the DC Server ports like port 389, but
how the external DC can communicate and send through the ISA firewall
the Domain settings to the internal clients ??? This seems not to
work!
Thanks in advance