Welcome to ISAserver.org

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

Virutal Network Adapters using other IP's on T1 Block

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [ISA 2006 Firewall] >> Network Infrastructure >> Virutal Network Adapters using other IP's on T1 Block Page: [1]
Login
Message << Older Topic   Newer Topic >>
Virutal Network Adapters using other IP's on T1 Block - 15.Jan.2007 12:13:30 PM   
jhazucha

 

Posts: 9
Joined: 1.Nov.2006
Status: offline
Hello,
     Here is my situation. Right now I have a Firewall inplace that allows me to setup virtual External Network Adapters utilizing my other IP's on my T1 (10 Ip's Total) Is this possible to also do with ISA 2006. For instance .. I have a block of external IP's with services listening on anything from .100 to .109 at the moment and to implement this ISA firewall I will either need to put 9 network adapters into a box or use the same methods I am now with my current Firewall. I am sure this is possible to do thus seeing that 9 nick cards is getting kinda hairy. Can anyone point me in the direction to what Firewall Template and Cofiguration methods I should be using to get this accomplished using ISA 2006. Thanks in advance to any information.
Post #: 1
RE: Virutal Network Adapters using other IP's on T1 Block - 15.Jan.2007 1:50:35 PM   
spouseele

 

Posts: 12782
Joined: 1.Jun.2001
From: Belgium
Status: offline
Hi jhazucha,

if those IP's all belong to the same Network ID as the ISA external interface than assign them all to the ISA external interface as secondary IP's. Just keep in mind that if you have a NAT relationship, all outbound traffic will be sourced from the primary IP address assigned to the ISA external interface. In other words, the secondary IP's can only be used for publishing rules (inbound access).

HTH,
Stefaan

(in reply to jhazucha)
Post #: 2
RE: Virutal Network Adapters using other IP's on T1 Block - 15.Jan.2007 4:28:23 PM   
jhazucha

 

Posts: 9
Joined: 1.Nov.2006
Status: offline
Ok so basically all I need to do is go into routing and remote access under my IP Routing / General Tab and under my External Interface Add Another IP Address for the IP of the say Web Service im going to use Listening. This is done now when I went into my Firewall Policy and did a "New Web Site Publishing Rule" and roll with all the punches. Once the wizard is done it adds the rule to the #1 order of my firewall policys Action is Allow, Protocols is HTTP, To points to an internal Web Server and Condition is All Authenticated Users for now. Now if I try to hit the site by its IP address from an outside source I dont get thru. Any idea's what else could possibly be causing me problems. Thanks

(in reply to spouseele)
Post #: 3
RE: Virutal Network Adapters using other IP's on T1 Block - 16.Jan.2007 2:58:11 PM   
spouseele

 

Posts: 12782
Joined: 1.Jun.2001
From: Belgium
Status: offline
Hi jhazucha,

you can add secondary IPs by going to the advanced TCP/IP settings of the adapter too.

What are the *exact* details of the web publishing rule?

HTH,
Stefaan


(in reply to jhazucha)
Post #: 4

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [ISA 2006 Firewall] >> Network Infrastructure >> Virutal Network Adapters using other IP's on T1 Block Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts