• Twitter
  • FaceBook

Welcome to ISAserver.org

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

ISA 2006 access rules not working

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [ISA 2006 Publishing] >> Server Publishing >> ISA 2006 access rules not working Page: [1]
Message << Older Topic   Newer Topic >>
ISA 2006 access rules not working - 6.Oct.2014 9:39:20 AM   


Posts: 1
Joined: 6.Oct.2014
Status: offline

A client's network was configured with an ISA 2006 box as an Edge Fw with the network behind.

A 3rd party vendor asked to create a site-to-site vpn but only through a hardware appliance.

The client installed a Watchguard device to function as the Edge FW and left the ISA box as an internal FW/web proxy.

I implemented the vpn config as supplied by the vendor with the tunnel terminating on the WG device which has the rules and routes necessary to find the internal site.

The problem I'm experiencing is no traffic is being allowed, by the ISA box, to the 3rd party site or from the 3rd party site.
I confirmed that ping/tracert should work between the sites and initiated a continuous ping from both ends, however, the ISA logs show that the traffic is being denied.
I configured a custom protocol set to allow all protocols through ports 0-65k+ and access rules to use the custom sets for both inbound and outbound traffic but still no luck.

Could the fact the ISA box has the original config as an Edge device be causing this issue?
If not, please HELP!

Post #: 1

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [ISA 2006 Publishing] >> Server Publishing >> ISA 2006 access rules not working Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts