Unable to access HTTPS sites



ISA 2006 Standard Edition on Windows Server 2003 R2 SP2
Both OS and ISA have the latest patches. ISA has 2 NICs, internal and
external (with a real IP address)

Problem: HTTPS site are not accessible

Example: accessing www.bankofamerica.com gives me to the following error:

Network Access Message: The page cannot be displayed
Technical Information (for Support personnel)

* Error Code: 502 Proxy Error. The ISA Server denied the specified
Uniform Resource Locator (URL). (12202)
* IP Address: 10.1.1.1
* Date: 11/18/2008 10:47:51 PM [GMT]
* Server: isaserver.ourdomain.com
* Source: proxy

More information about my ISA 2006 settings. I created a WebProxy rule with
the following settings:

Action: Allow
Protocols: HTTP and HTTPS
From: Internal
To: External
Users: user-created group containing my Windows 2003 AD account
Schedule: 24/7

Content types settings:
- if I choose All Content Types, I can access https sites without any
problem
- if I choose Select Content Types (with this option, the rule is applicable
only to HTTP traffic), I can't access HTTPS sites. Selecting all of default
content types under "Select Content Types" does not make any difference. I
still can't access HTTPS sites.

I can only access HTTPS sites if I choose All Content Types but there's a
problem. I want to restrict users ability to download executables. All
content types allows me to download everything. That's not what I want.

I don't know where to begin troubleshooting.


.



Relevant Pages

  • Re: Poor https performance
    ... from ISA 2000 to ISA 2004. ... The Connection Limits are transferred from ... Internet connectivity for the entire network will be down. ... happens with normal HTTP web browsing just when I go to HTTPS sites. ...
    (microsoft.public.windows.server.sbs)
  • Re: Problem with HTTPS sitea after 3 days
    ... Leddy wrote: ... | I have a problem with ISA and accessing HTTPS sites, ... | days users cannot access HTTPS sites, but still can access HTTP sites ...
    (microsoft.public.isa.enterprise)
  • Re: HTTPS timeout in a Nortel VPN connection
    ... Users connecting via our Nortel VPN connection receives timeouts when going ... to ANY HTTPS sites through our ISA 2000 system HTTP sites are successful. ... Non VPN users connect to HTTP and HTTPS sites successfully through ... To eliminate the Nortel VPN as causing the issue, ...
    (microsoft.public.isa)
  • Re: Cannot find server or DNS Error
    ... Try some of the switches to release your settings. ... >>access HTTPS sites. ... Netscape has not problems access the HTTPS sites ... >>Windows XP Pro ...
    (microsoft.public.windows.inetexplorer.ie6.browser)
  • Re: ISA 2004 SP2 and 1 website
    ... laptop connected to router gets there which redirects to ... How does your site behave with other https sites? ... Im behind ISA 2004 SP2 and get error 2, let me check if can see any prob ...
    (microsoft.public.windows.server.sbs)