Welcome to ISAserver.org

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

Publishing Public DNS Server with Private IP Address

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [ISA Server 2004 Firewall] >> DMZ >> Publishing Public DNS Server with Private IP Address Page: [1]
Login
Message << Older Topic   Newer Topic >>
Publishing Public DNS Server with Private IP Address - 27.Jun.2006 5:22:32 PM   
jle2005

 

Posts: 33
Joined: 19.Jan.2006
Status: offline
Hello all,

I'm new to ISA Server 2004 and recently I'm trying to setup a Trihomed firewall network, External, Internal, and DMZ. On the DMZ segment, I've setup a public DNS Server with private IP address. I created a Perimeter Network and a NAT relationship rule between the DMZ and External network. I also Publish the public DNS Server on the DMZ to the internet with the public IP address on the External NIC of the ISA firewall. I do a nslookup for www.vngateways.us and I can see the private IP address of the public DNS Server on the DMZ, but when I try to ping www.vngateways.us I got time out error. Is there anyway that I can hide the private IP address of the public DNS Server and only display the Public IP address of the External NIC of the ISA firewall. Thank you very much

Post #: 1
RE: Publishing Public DNS Server with Private IP Address - 17.Jul.2006 5:09:04 PM   
tshinder

 

Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
Hi Jle,

Seems to be working fine now.

Thanks!
Tom

_____________________________

Thomas W Shinder, M.D.
Sr. Consultant/Technical Writer
Prowess Consulting http://www.prowessconsulting.com/
Blog: http://blogs.isaserver.org/shinder/

GET THE NEW ISA 2006 Book!: http://tinyurl.com/2gpoo8

(in reply to jle2005)
Post #: 2
RE: Publishing Public DNS Server with Private IP Address - 18.Jul.2006 6:22:01 PM   
jle2005

 

Posts: 33
Joined: 19.Jan.2006
Status: offline
Hello Tom,

Yes, indeed it's working now and thank you for all your help. However, I'm still having problem with letting my internal host to access my web server on the DMZ. Do I need to add an IP routing on my DC or follow your article "Allowing Intradomain Communications Through an ISA Server" to get it working? Thanks again.

(in reply to tshinder)
Post #: 3
RE: Publishing Public DNS Server with Private IP Address - 19.Jul.2006 5:34:44 PM   
tshinder

 

Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
Hi Jle,

What's the configuration of the Network Rule connecting the default Internal Network to the DMZ Network?

Thanks!
Tom

_____________________________

Thomas W Shinder, M.D.
Sr. Consultant/Technical Writer
Prowess Consulting http://www.prowessconsulting.com/
Blog: http://blogs.isaserver.org/shinder/

GET THE NEW ISA 2006 Book!: http://tinyurl.com/2gpoo8

(in reply to jle2005)
Post #: 4
RE: Publishing Public DNS Server with Private IP Address - 20.Jul.2006 6:09:31 PM   
jle2005

 

Posts: 33
Joined: 19.Jan.2006
Status: offline
Hello Tom,

The Network Rule connecting the default Internal Network to the DMZ Network is Route.

(in reply to tshinder)
Post #: 5
RE: Publishing Public DNS Server with Private IP Address - 10.Aug.2006 10:28:28 AM   
datnt0967

 

Posts: 1
Joined: 10.Aug.2006
Status: offline
Dear Jle2005,

your problem has been solved yet? your internal host can not access website which is hosted on DMZ right?

according to your information on configure ISA serve. all rule are correct,
but i would like to ask you a question? when you setup your internal network, the local domain (internal domain) is the same with the internet domain (the domain which is registerd on the internet).? if yes, so you will reconfigure ISA.

good luck

_____________________________

Dat Nguyen Thanh

(in reply to jle2005)
Post #: 6
RE: Publishing Public DNS Server with Private IP Address - 10.Aug.2006 2:12:45 PM   
tshinder

 

Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
quote:

ORIGINAL: jle2005

Hello Tom,

The Network Rule connecting the default Internal Network to the DMZ Network is Route.


Hi Jle,

You need a ROUTE relationship for intradomain communications.

HTH,
Tom

_____________________________

Thomas W Shinder, M.D.
Sr. Consultant/Technical Writer
Prowess Consulting http://www.prowessconsulting.com/
Blog: http://blogs.isaserver.org/shinder/

GET THE NEW ISA 2006 Book!: http://tinyurl.com/2gpoo8

(in reply to jle2005)
Post #: 7

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [ISA Server 2004 Firewall] >> DMZ >> Publishing Public DNS Server with Private IP Address Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts