• RSS
  • Twitter
  • FaceBook

Welcome to ISAserver.org

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

Branch Office Connections!!!!

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [ISA 2006 Firewall] >> Branch Office >> Branch Office Connections!!!! Page: [1]
Login
Message << Older Topic   Newer Topic >>
Branch Office Connections!!!! - 10.Jan.2011 8:54:42 AM   
noddles

 

Posts: 47
Joined: 21.Apr.2008
Status: offline
Hello All,

Please i need help. My office has 4 locations in a particular country and all locations have it individual ISA Server. I am running server 2003 sp2 with ISA 2006 sp1. All connections for all offices to the internet looks like this: client machine -> ISA Server -> Internet ISP Router -> Internet.
we are connected perfectly to the internet, all firewall rules i implemented are working fine, but my problem is i cant connect to any computer at any remote office. If i have an issue, maybe a faulty server that requires my attention, i connect like this: My system -> Internet ISP Router -> Branch office -> Server (bypassing the ISA Server and going straight to the ISP Router).
With the above connection, i must have the servers gateway as the ISP Router (bypassing the ISA Server for its location) before i can connect remotely to it.
I need a way of configuring the ISA to enable / allow incoming connections through it or enabling two different branch offices connect to themselves. Can anyone help PLEASE!!!!!!!

< Message edited by noddles -- 10.Jan.2011 12:45:28 PM >
Post #: 1
RE: Branch Office Connections!!!! - 10.Jan.2011 6:36:38 PM   
paulo.oliveira

 

Posts: 3472
Joined: 3.Jan.2008
From: Amazon, Brazil
Status: offline
Hi,

you need to create a site-to-site VPN. Search for the website, there are a lot of articles explaning it and telling how to create them.

Regards,
Paulo Oliveira.

_____________________________

Microsoft Premier Field Engineer (PFE)
Blog: http://poliveirasilva.wordpress.com/
Twitter: https://twitter.com/poliveirasilva

(in reply to noddles)
Post #: 2
RE: Branch Office Connections!!!! - 11.Jan.2011 1:51:41 PM   
noddles

 

Posts: 47
Joined: 21.Apr.2008
Status: offline
Hello Paulo.oliveira,

i would like to thank you for pointing me in the right direction. I am really grateful, learnt  a lot from the article. please i am still having problems, i configured everything as directed in the article (http://www.isaserver.org/tutorials/Creating-VPN-ISA-Server-2006-Firewalls-Main-Branch-Office-Part1html.html) but when i get to the part of inputting the remote network ip address i get an error saying : "Networks cannot contain IP addresses that overlap another network" the IP address i inputted in the address field is 192.168.102.0 - 192.168.102.255. Did i make a mistake? Can you or anyone point me in the right direction?
Please i need HELP!!! . some of our servers are located at the branch office and our users need access to the servers.

(in reply to paulo.oliveira)
Post #: 3
RE: Branch Office Connections!!!! - 11.Jan.2011 4:03:36 PM   
paulo.oliveira

 

Posts: 3472
Joined: 3.Jan.2008
From: Amazon, Brazil
Status: offline
Hi,

you canīt define two network ranges on two different places (Network objects). If you want assign IPs from internal range to your clients, then you should choose DHCP option (if your ISA version is Standard or have only one Enterprise version).

The other choice you have is to exclude VPN Clients static assignment range from Internal Network definition. For example, your Internal Network range is 192.168.102.0-255 and you want to allow access to 10 VPN clients (including remote ISA firewalls), you can exclude the following range from Internal Network definition: 192.168.102.243-254 (one IP will be used by ISA ras interface) and configure it as static range for ISA VPN.

But, I strongly recommend you use DHCP server when possible or use other network range different than your current one.

Regards,
Paulo Oliveira.

_____________________________

Microsoft Premier Field Engineer (PFE)
Blog: http://poliveirasilva.wordpress.com/
Twitter: https://twitter.com/poliveirasilva

(in reply to noddles)
Post #: 4

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [ISA 2006 Firewall] >> Branch Office >> Branch Office Connections!!!! Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts