Welcome to ISAserver.org

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

SecureNAT on Perimeter Interface

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [ISA Server 2004 Firewall] >> SecureNAT Client >> SecureNAT on Perimeter Interface Page: [1]
Login
Message << Older Topic   Newer Topic >>
SecureNAT on Perimeter Interface - 11.May2008 7:04:17 AM   
Wonko

 

Posts: 8
Joined: 22.Sep.2004
Status: offline
Hi!

I have problems regarding to the SecureNat client on the perimeter interface. I added rules to allow the complete out bound communication to the external interface from the perimeter interface. The client uses an external DNS server and the the ISA as default gateway. But webbrowsing is not running, the isa logging states "denied connection" for netbios and an initiated connection for dns. After a while there will be a timeout on the client.

Is it possible to get this working?

Thanks for reply's

Peter
Post #: 1
RE: SecureNAT on Perimeter Interface - 11.May2008 11:52:36 AM   
elmajdal

 

Posts: 4944
Joined: 16.Sep.2004
From: Lebanese in Kuwait
Status: online
Are you using Windows Server 2003 Sp2 ? if yes, then check this : http://support.microsoft.com/default.aspx?scid=kb;EN-US;927695

_____________________________

Tarek Majdalani

MS Forefront Edge Security MVP
Website : http://www.elmajdal.net/ISAServer
New Section : http://www.elmajdal.net/Win2k8

(in reply to Wonko)
Post #: 2
RE: SecureNAT on Perimeter Interface - 11.May2008 1:05:13 PM   
Wonko

 

Posts: 8
Joined: 22.Sep.2004
Status: offline
Hi!

The SecureNat Connection is working from the internal network, but not from the perimeter network.
The Regkey was already set.

Is it possible that securenat isn't working at all from an perimeter network?

Ciao

Peter

(in reply to elmajdal)
Post #: 3
RE: SecureNAT on Perimeter Interface - 3.Jun.2008 4:25:43 AM   
HePa

 

Posts: 135
Joined: 9.May2008
From: Sweden, Gothenburg
Status: offline
SecureNAT client's are dependent of the network routing.
The clients in the DMZ need to be able to find to the ISA server....so this needs to work, and you have controlet that it works?

Have you tested the nameresolution, with ex. nslookup for external names? How are the network rules for DNS traffic configured from the DMZ to the external DNS server? Are you using forwardes on your internal DNS servers to the DNS server outside your ogranistaion (ISP's etc.)?

_____________________________

Henrik Parkkinen

(in reply to Wonko)
Post #: 4

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [ISA Server 2004 Firewall] >> SecureNAT Client >> SecureNAT on Perimeter Interface Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts