Welcome to ISAserver.org

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

xDSL

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [ISA Server 2000 General] >> Installation >> xDSL Page: [1]
Login
Message << Older Topic   Newer Topic >>
xDSL - 12.Mar.2001 10:49:00 PM   
RobJohn

 

Posts: 87
Joined: 28.Feb.2001
From: Montgomery, Al
Status: offline
Is it possible to use a xDSL and ISA? What if your provider refuses to provide a static address? Does it matter if you are connected via USB port or NIC?
Post #: 1
RE: xDSL - 13.Mar.2001 5:54:00 AM   
jmunyan

 

Posts: 800
Joined: 3.Feb.2001
From: Seattle, WA
Status: offline
Sure, it is just a question of how well it works and what you are trying to do with it. I would think if you are not publishing resources things are completely cool. If you are intending to publish resources and you know belying them is DHCP assigned addresses the real question becomes one addressing your organizations assessment of value for system reliability. Clearly if a company can't spend for a connection with a static IP they shouldn't be surprised if their connection for email is down for a couple days at a clip.

If this is the case I would manually set the ttl on my external record sets very low so in the event your connection drops, DHCP assigns your ip to someone else the organizations recover is a quick one. Hopefully only a couple hours. However mail resolved off the root to the old ip address will bounce til it times out. In otherwords fix the root resolutions as quick as possible.

I would also figure out what the lease time of IP address assignment is so I could figure the duration I could expect to keep my ip addresses in the event the internet connection is lost.

In short, make life simple get a static IP.

John


(in reply to RobJohn)
Post #: 2
RE: xDSL - 13.Mar.2001 3:10:00 PM   
RobJohn

 

Posts: 87
Joined: 28.Feb.2001
From: Montgomery, Al
Status: offline
Thanks,

I have two goals in mind, first a reliable Firewall, which I think will be difficult without a static IP address, and then enabling VPN, which again would require a static IP address.

The other part of my question was whether it mattered or not whether the xDSL connection came through the NIC or USB port. I suspect if it comes through the USB port, that ISA would treat it similar to a Dial on Demand configuration, thus it could handle a dynamic address. Do you know if this is true?

Yes, I do foresee publishing a exchange server from behind the firewall someday.

Rob
rdrj@mindspring.com

quote:
Originally posted by jmunyan:
Sure, it is just a question of how well it works and what you are trying to do with it. I would think if you are not publishing resources things are completely cool. If you are intending to publish resources and you know belying them is DHCP assigned addresses the real question becomes one addressing your organizations assessment of value for system reliability. Clearly if a company can't spend for a connection with a static IP they shouldn't be surprised if their connection for email is down for a couple days at a clip.

If this is the case I would manually set the ttl on my external record sets very low so in the event your connection drops, DHCP assigns your ip to someone else the organizations recover is a quick one. Hopefully only a couple hours. However mail resolved off the root to the old ip address will bounce til it times out. In otherwords fix the root resolutions as quick as possible.

I would also figure out what the lease time of IP address assignment is so I could figure the duration I could expect to keep my ip addresses in the event the internet connection is lost.

In short, make life simple get a static IP.

John


[This message has been edited by RobJohn (edited 13 March 2001).]


(in reply to RobJohn)
Post #: 3
RE: xDSL - 13.Mar.2001 6:13:00 PM   
jmunyan

 

Posts: 800
Joined: 3.Feb.2001
From: Seattle, WA
Status: offline
I suspect the usb configuration would work as a dial on demand interface and could negotiate a dynamic ip okay. I would suspect you could even nail the connection if you wanted. I did with isdn, back when I used a TA.

However, the problem is how to apply the rule set. When you publish the exchange 2k box in the future you will create a rule to allow 25 on external ip xxx.xxx.xxx.xx1. If your ip assignment changes the filter will no longer work. This is the larger problem for the firewall.

For VPN how will users find it? One day it could be on one ip while on another day it is in another place. DNS won't help here if it is pointing to an eronious ip address.

John


(in reply to RobJohn)
Post #: 4
RE: xDSL - 13.Mar.2001 7:01:00 PM   
RobJohn

 

Posts: 87
Joined: 28.Feb.2001
From: Montgomery, Al
Status: offline
Thanks John,

You've validated my fears. Static IP is what I need or it's a no-go. I'll have to twist some arms at the xDSL providers end.

Thanks again, Rob


(in reply to RobJohn)
Post #: 5

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [ISA Server 2000 General] >> Installation >> xDSL Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts