Welcome to ISAserver.org

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

Perimeter or External?

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [ISA Server 2004 Firewall] >> General >> Perimeter or External? Page: [1]
Login
Message << Older Topic   Newer Topic >>
Perimeter or External? - 23.Feb.2004 5:33:00 PM   
crshjnke

 

Posts: 10
Joined: 23.Feb.2004
From: OKC
Status: offline
I am having a problem with HTTP traffic on a test server we are running.
External Nic 68...
alias 209... without gateway

Internal 10...

Email and WWW servers all run on 209 subnet.

Currently email sends / receives fine.
When any client tries to acces external.com they are getting 403 denied although email runs fine using the same setup.

All HTTP traffic is allowed from internal to external same for POP/SMTP. I can see nothing in the logs showing denied and I actually see GET external.com .

Anything stand out in this config that would block http traffic from an aliased IP?
Post #: 1
RE: Perimeter or External? - 23.Feb.2004 10:40:00 PM   
penrose.l@2college.nl

 

Posts: 474
Joined: 29.Jan.2004
From: Netherlands
Status: offline
any error msg's on your WWW server ?
( event/system logs ? )

Kind regards,
Lex P.

(in reply to crshjnke)
Post #: 2
RE: Perimeter or External? - 23.Feb.2004 11:24:00 PM   
crshjnke

 

Posts: 10
Joined: 23.Feb.2004
From: OKC
Status: offline
After checking logs on WWW server and trying to connect /refresh several times I get no connections at all.

So somehow its blocking http traffic to 209... aliased IP although I dont understand how pop/smtp work at the same time both rules are exact.

I will test moving http rule into the mail rules just to double check them.

After more research I am now getting a non auth client directly after the GET

And the rule that seems to be blocking is builtin Allow HTTP from firewall to all networks for scheduled downloads jobs.

(in reply to crshjnke)
Post #: 3
RE: Perimeter or External? - 24.Feb.2004 12:19:00 AM   
crshjnke

 

Posts: 10
Joined: 23.Feb.2004
From: OKC
Status: offline
After adding another defined network ISA server reported errors about same NIC being on 2 networks.
So after adding a NIC and moving the 209... over all is well.

Thanks for the help and reading.

Now my only problem is Media Player 9 asking for login dialog box even though streaming media has been allowed. I will prob make another post with that.

(in reply to crshjnke)
Post #: 4
RE: Perimeter or External? - 24.Feb.2004 12:36:00 AM   
tshinder

 

Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
Hi Kenny,

Great! Good to hear you got it working and thanks for the follow up!

Tom

(in reply to crshjnke)
Post #: 5

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [ISA Server 2004 Firewall] >> General >> Perimeter or External? Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts