i am using the measureup.com study guide and i have had a question come up, which i got wrong.
The question is regarding publishing a dns server so that a web server in the perimeter network can use dns on the internal network.
My answer was to create a server publishing rule, their correct answer was create a route relationship between the perimeter and internal networks.
The answer also linked over to a technet article which explained the publishing of dns servers,
http://www.microsoft.com/technet/isa/2004/help/FW_FWRuleIntro.mspx Publishing DNS servers ISA Server does not translate the IP address of DNS servers. To publish a DNS server, configure a route network relationship between the Local Host network and the network that includes the DNS server. Similarly, ISA Server must know the IP address of the DNS server.
So i logged onto my ISA server and tried to create a network rule as described on technet but i receive the message 'local host cannot be included in a network rule'
This is strange because i already have a network rule - local host access - which routes traffic.
Am i limited to using only one network rule containing local host?
You are correct. You should create a Server Publishing Rule if you want a Web Server on the DMZ to use the Internal DNS server. A NAT rule from Internal->DMZ is fine.