Welcome to ISAserver.org
Forums |
Register |
Login |
My Profile |
Inbox |
RSS
|
My Subscription |
My Forums |
Address Book |
Member List |
Search |
FAQ |
Ticket List |
Log Out
Static NAT with NLB
|
Users viewing this topic:
none
|
Logged in as: Guest
|
Login | |
|
Static NAT with NLB - 23.May2005 11:05:00 AM
|
|
|
agomez281074
Posts: 2
Joined: 20.May2005
From: Paris
Status: offline
|
As I read on some posts and articles, ISA doesn't handle static NAT tables.
My problem is the following, I have few client stations on the inside part accessing (TCP) a server on the public part. Each client should be NATed to a different public IP address (one separated for each client). These public IP addresses will receive UDP data back from the public network, which should be routed back to each individual client. (sounds a bit like H.323 but it's a proprietary protocol).
Currently, Static NAT tables and packet filtering are doing that job very well on Windows 2003 Srv.
The Server onto we run RRAS/routing manages the traffic of 4 networks (4 network cards), and filters the traffic of all those networks.
But we need to improve availability by creating a NLB cluster (which would be easier to manage using ISA 2004 Enterprise than the current RRAS/Routing interfaces). ISA Enterprise apparently manages the NLB very well.
As it appear that ISA won't manage the NAT static mapping, Is it possible to configure ISA Enterprise to manage only the 3 other networks with the filtering facilities enabled and clustering and so on)? Do you think I can leave this NAT-outside-interface under control of RRAS/Routing?
|
|
|
|
RE: Static NAT with NLB - 24.May2005 9:21:00 AM
|
|
|
tshinder
Posts: 47439
Joined: 10.Jan.2001
From: Texas
Status: offline
|
Hi Angel,
Yes, the ability to bind an address on the external interface of the ISA firewall to a host on an ISA firewall Protected Network has been a long term DCR since ISA 2000 first came out.
Maybe the next version? MS usually responds to customer needs so let them know! Thanks! Tom
|
|
|
|
RE: Static NAT with NLB - 24.May2005 11:09:00 AM
|
|
|
agomez281074
Posts: 2
Joined: 20.May2005
From: Paris
Status: offline
|
Hi Tom,
Thanks for your answer. I'll test ISA Enterprise Cluster during the 120 days trial period... but if I need external boxes/routers to handle the NAT table, I'll probably turn back to another solution (anyone from MS reading this? ;-) )
I'll let you know if I found a solution. Rgds Angel
|
|
|
|
RE: Static NAT with NLB - 16.Jul.2005 9:32:00 PM
|
|
|
liddlem
Posts: 4
Joined: 16.Jul.2005
From: Mildura Australia
Status: offline
|
Hi Angel,
I am with you on this one, I have a pair of ISA Firewalls with an entire Class C public address range running NLB.
I want to static NAT the branch office mail servers (different domain names) behind the firewalls so if one is blacklisted it does not affect the entire organisation. Currently all mail appears to come from the 2 dedicated IPs of the firewalls.
|
|
|
|
New Messages |
No New Messages |
Hot Topic w/ New Messages |
Hot Topic w/o New Messages |
Locked w/ New Messages |
Locked w/o New Messages |
|
Post New Thread
Reply to Message
Post New Poll
Submit Vote
Delete My Own Post
Delete My Own Thread
Rate Posts |
|