Welcome to ISAserver.org

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

RE: ONLY FIREWALL CLIENT

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [ISA Server 2004 Firewall] >> Firewall Client >> RE: ONLY FIREWALL CLIENT Page: <<   < prev  1 [2] 3 4   next >   >>
Login
Message << Older Topic   Newer Topic >>
RE: ONLY FIREWALL CLIENT - 25.Jan.2006 12:04:34 AM   
LLigetfa

 

Posts: 2184
Joined: 10.Aug.2004
From: fort frances.on.ca
Status: offline
While I have not tried it personally, I have been told that you can get non-domain authentication of FWC to work by creating a parallel account/password in the local SAM.

_____________________________

The School of Hard Knocks is a mean teacher. She gives the exam before the lesson.

(in reply to majedalanni)
Post #: 21
RE: ONLY FIREWALL CLIENT - 25.Jan.2006 11:00:34 AM   
majedalanni

 

Posts: 64
Joined: 7.Jan.2006
Status: offline
okay
If I make a user/password in local SAM and then I make a group of users and allow it in ISA rule and then make a local user/password in client pc same as what I put it in the group and install a FWC on the pc

Is that true ???

(in reply to LLigetfa)
Post #: 22
RE: ONLY FIREWALL CLIENT - 25.Jan.2006 8:00:08 PM   
tshinder

 

Posts: 47420
Joined: 10.Jan.2001
From: Texas
Status: offline
Yes. You can create a group on the ISA firewall itself and then put users in that group. Just make sure the user name and password for those users are the same as the users use to log onto their own machines.

HTH,
Tom

_____________________________

Thomas W Shinder, M.D.
Sr. Consultant/Technical Writer
Prowess Consulting http://www.prowessconsulting.com/
Blog: http://blogs.isaserver.org/shinder/

GET THE NEW ISA 2006 Book!: http://tinyurl.com/2gpoo8

(in reply to majedalanni)
Post #: 23
RE: ONLY FIREWALL CLIENT - 25.Jan.2006 8:08:42 PM   
tshinder

 

Posts: 47420
Joined: 10.Jan.2001
From: Texas
Status: offline
Hi Maj,

You don't need a domain -- you can enter the user accounts on the ISA firewall's SAM.

The Firewall client and authenticate too.

HTH,
Tom

_____________________________

Thomas W Shinder, M.D.
Sr. Consultant/Technical Writer
Prowess Consulting http://www.prowessconsulting.com/
Blog: http://blogs.isaserver.org/shinder/

GET THE NEW ISA 2006 Book!: http://tinyurl.com/2gpoo8

(in reply to majedalanni)
Post #: 24
RE: ONLY FIREWALL CLIENT - 25.Jan.2006 10:29:00 PM   
majedalanni

 

Posts: 64
Joined: 7.Jan.2006
Status: offline
Hi

Just another one

How I create user on the ISA firewall's SAM.

Thanks

(in reply to tshinder)
Post #: 25
RE: ONLY FIREWALL CLIENT - 26.Jan.2006 12:45:09 AM   
LLigetfa

 

Posts: 2184
Joined: 10.Aug.2004
From: fort frances.on.ca
Status: offline
%SystemRoot%\system32\compmgmt.msc /s

_____________________________

The School of Hard Knocks is a mean teacher. She gives the exam before the lesson.

(in reply to majedalanni)
Post #: 26
RE: ONLY FIREWALL CLIENT - 26.Jan.2006 9:30:41 AM   
majedalanni

 

Posts: 64
Joined: 7.Jan.2006
Status: offline
Thanks
I try and give you the result

(in reply to LLigetfa)
Post #: 27
RE: ONLY FIREWALL CLIENT - 27.Jan.2006 4:24:21 PM   
tshinder

 

Posts: 47420
Joined: 10.Jan.2001
From: Texas
Status: offline
quote:

ORIGINAL: LLigetfa

%SystemRoot%\system32\compmgmt.msc /s


Hi Les,
You make things too hard!

How about:
Right click the My Computer object on the desktop and click Manage?



Tom

_____________________________

Thomas W Shinder, M.D.
Sr. Consultant/Technical Writer
Prowess Consulting http://www.prowessconsulting.com/
Blog: http://blogs.isaserver.org/shinder/

GET THE NEW ISA 2006 Book!: http://tinyurl.com/2gpoo8

(in reply to LLigetfa)
Post #: 28
RE: ONLY FIREWALL CLIENT - 27.Jan.2006 4:34:38 PM   
LLigetfa

 

Posts: 2184
Joined: 10.Aug.2004
From: fort frances.on.ca
Status: offline
quote:

You make things too hard!

PFFT!
I was going to say "Right click the My Computer object on the desktop and click Manage" but then wondered if maybe his OS was localized.

I always Right click the My Computer object on the desktop and click Manage!

_____________________________

The School of Hard Knocks is a mean teacher. She gives the exam before the lesson.

(in reply to tshinder)
Post #: 29
RE: ONLY FIREWALL CLIENT - 27.Jan.2006 5:08:54 PM   
tshinder

 

Posts: 47420
Joined: 10.Jan.2001
From: Texas
Status: offline


_____________________________

Thomas W Shinder, M.D.
Sr. Consultant/Technical Writer
Prowess Consulting http://www.prowessconsulting.com/
Blog: http://blogs.isaserver.org/shinder/

GET THE NEW ISA 2006 Book!: http://tinyurl.com/2gpoo8

(in reply to LLigetfa)
Post #: 30
RE: ONLY FIREWALL CLIENT - 27.Jan.2006 5:42:22 PM   
majedalanni

 

Posts: 64
Joined: 7.Jan.2006
Status: offline
Hi brothers
Another one?

Can I gave my client an IP from my external network (like public ip)??

If Yes How?


Many thanks

(in reply to tshinder)
Post #: 31
RE: ONLY FIREWALL CLIENT - 27.Jan.2006 5:46:07 PM   
tshinder

 

Posts: 47420
Joined: 10.Jan.2001
From: Texas
Status: offline
Hi Maj,

Which client?

Thanks!
Tom

_____________________________

Thomas W Shinder, M.D.
Sr. Consultant/Technical Writer
Prowess Consulting http://www.prowessconsulting.com/
Blog: http://blogs.isaserver.org/shinder/

GET THE NEW ISA 2006 Book!: http://tinyurl.com/2gpoo8

(in reply to majedalanni)
Post #: 32
RE: ONLY FIREWALL CLIENT - 27.Jan.2006 5:51:54 PM   
LLigetfa

 

Posts: 2184
Joined: 10.Aug.2004
From: fort frances.on.ca
Status: offline
I can see where this is going (1:1 NAT) and will sit this one out.  It always ends in disappointment and I am just going to cherry-pick some issues.

_____________________________

The School of Hard Knocks is a mean teacher. She gives the exam before the lesson.

(in reply to tshinder)
Post #: 33
RE: ONLY FIREWALL CLIENT - 27.Jan.2006 6:00:59 PM   
majedalanni

 

Posts: 64
Joined: 7.Jan.2006
Status: offline
Hi
Internal network

(in reply to LLigetfa)
Post #: 34
RE: ONLY FIREWALL CLIENT - 27.Jan.2006 6:22:58 PM   
majedalanni

 

Posts: 64
Joined: 7.Jan.2006
Status: offline
Hi

Internal Client ?

thanks

(in reply to tshinder)
Post #: 35
RE: ONLY FIREWALL CLIENT - 27.Jan.2006 7:59:02 PM   
majedalanni

 

Posts: 64
Joined: 7.Jan.2006
Status: offline
Hi

I click on manage I go to (local users and group) I create new user like (majed) it is a member of users group and go ISA server and make a new user group and put majed in it and then in my pc not on server I make a local account name (majed)  Is that true ??

(in reply to majedalanni)
Post #: 36
RE: ONLY FIREWALL CLIENT - 28.Jan.2006 6:12:28 PM   
tshinder

 

Posts: 47420
Joined: 10.Jan.2001
From: Texas
Status: offline
Hi Maj,

Is Les correct? Are you trying to create a one to one NAT? If so, you're asking the wrong questions, from a security point of view.

Thanks!
Tom

_____________________________

Thomas W Shinder, M.D.
Sr. Consultant/Technical Writer
Prowess Consulting http://www.prowessconsulting.com/
Blog: http://blogs.isaserver.org/shinder/

GET THE NEW ISA 2006 Book!: http://tinyurl.com/2gpoo8

(in reply to majedalanni)
Post #: 37
RE: ONLY FIREWALL CLIENT - 28.Jan.2006 6:23:31 PM   
majedalanni

 

Posts: 64
Joined: 7.Jan.2006
Status: offline
Hi All

Many thanks because FW client and local users work



About one to one NAT

I have 5 public IP Ok?
one for ISA server and give about 200 users on internal network with a private address (one to many NAT)
but I still have 4 free public can I gave it to my client (ie  I not gave the client a private IP,I gave him a public IP)???


(in reply to tshinder)
Post #: 38
RE: ONLY FIREWALL CLIENT - 28.Jan.2006 6:42:24 PM   
tshinder

 

Posts: 47420
Joined: 10.Jan.2001
From: Texas
Status: offline
Hi Maj,

No, because you would need to subnet that block, and you have too few addresses.

HTH,
Tom

_____________________________

Thomas W Shinder, M.D.
Sr. Consultant/Technical Writer
Prowess Consulting http://www.prowessconsulting.com/
Blog: http://blogs.isaserver.org/shinder/

GET THE NEW ISA 2006 Book!: http://tinyurl.com/2gpoo8

(in reply to majedalanni)
Post #: 39
RE: ONLY FIREWALL CLIENT - 28.Jan.2006 6:47:19 PM   
majedalanni

 

Posts: 64
Joined: 7.Jan.2006
Status: offline
If I have 32 public IP
what can I do ?????

(in reply to tshinder)
Post #: 40

Page:   <<   < prev  1 [2] 3 4   next >   >> << Older Topic    Newer Topic >>
All Forums >> [ISA Server 2004 Firewall] >> Firewall Client >> RE: ONLY FIREWALL CLIENT Page: <<   < prev  1 [2] 3 4   next >   >>
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts