Hello, I have the rule that allow access to internet, in theTab Protocols I have All Outbound Traffic, but when I need to use for example the NTP protocol for sincronize the time with for example NTP Pool Project (http://www.pool.ntp.org/zone/ar), the Isa Server deny the connection. What is the problem ? When I put All Outbound traffic is not all traffic ? or the meaning the all outbound traffic is only the protocols well know (http, https, dns, etc). In the case that the all outbound traffic are the well know protocols (https, dns, http, telnet, etc), have i the posibility to include other protocolos in this groups ? or I have create the new rule allowing the specific protocols ?
When I put All Outbound traffic is not all traffic ?
Well it would depend on what ISA client you are using. If you're using the ISA Firewall client, "all outbound traffic" would include all protocols that are defined in ISA and some that are not. For SecureNat client access, only the protocols that are defined in ISA are allowed.
So.... the first question; what client access are you using? Second question; do you have two or more nic's installed and configured?
RB
_____________________________
David Melvin Ohio MCSE: Security 2003, MCSA:Security 2003
I have create the new rule allowing the specific protocols ?
For best practice, security and general ISA house keeping it's always best to create access rules based on the specific access need and or protocols. You should avoid using the “All Open Rule” if at all possible and require authentication in your access rules.
HTH
RB
_____________________________
David Melvin Ohio MCSE: Security 2003, MCSA:Security 2003
You will need to install the Firewall client or configure for SecureNAT client access for NTP protocol access. (Do not isnall the Firewall client on the ISA server!) Web proxy access is web protocols only! (HTTP,HTTPS,FTP)
HTH
Cheers, RB
_____________________________
David Melvin Ohio MCSE: Security 2003, MCSA:Security 2003