Re: ISA Firewall Client/Web Proxy Client

Tech-Archive recommends: Fix windows errors by optimizing your registry

From: Jim Harrison \(MSFT\) (jmharr_at_online.microsoft.com)
Date: 03/18/05

  • Next message: Nathan B [MSFT]: "Re: DMZ Web Server Publishing"
    Date: Fri, 18 Mar 2005 14:05:52 -0800
    
    

    Sorry; only one question per posting allowed...
    :-)

    - logging: can you include the log entries that you believe to be incorrect?
    - client types: if the browser is configured to use the ISA as a web proxy, then it will do so, even if the FWC is installed.
    - auto-config: the script downloaded by the web proxy client is sent with a cache timeout of 50 minutes. IE will "round up" to one
    hour. Thus, if you want to validate script changes in the ISA policies, you'll have to either grab the script manually or clear the
    browser cache between changes.

    -- 
    -- 
     Jim Harrison [ISA SE]
     Read the help, books and articles!
     This posting is provided "AS IS" with no warranties, and confers no rights.
    "Gabe Matteson" <gmatteson@inquery.biz.nospam> wrote in message news:O0q5uslKFHA.1600@TK2MSFTNGP10.phx.gbl...
    Is there any reason why if a user is just a firewall client when he/she
    accesses a web site, it shows their username in the logging, but if they are
    a firewall client and web proxy client it does not? (Same as when they are
    just a web proxy client) Web proxy clients are supposed to authenticate so I
    am wondering why the username doesn't show up. Also, if you want to add a
    web site so that the client connects directly to it, is there any logging
    feature that you can turn on to verify this? If the user is a firewall
    client and web proxy client, which direct access configure takes presidence
    if the web site is in both the domain and web proxy tabs or do both apply?
    In addition, how long does it take for those settings to apply to the
    autoconfig script? As soon as I hit apply, I go and download the script and
    open it and the settings are not there yet.. Thank you for any explaination.
    

  • Next message: Nathan B [MSFT]: "Re: DMZ Web Server Publishing"

    Relevant Pages

    • RE: Require authentication ISA04
      ... |> authenticate" in ISA 2004, only domain users are able to access the ... |> clients can no longer access the internet. ... the Web Proxy client is responsible ... |> Once the client is not configured as Web proxy client or Firewall ...
      (microsoft.public.windows.server.sbs)
    • Re: URGENT
      ... You can have a client work both with FWC and web proxy client. ... client configuration is. ...
      (microsoft.public.isa.configuration)
    • Re: ISA is making me bald
      ... actually it's the Web Proxy client that ... needs to be configured, not the FW client... ... ISA should be publishing a proxy configuration script ... >Chad A. Gross - SBS MVP ...
      (microsoft.public.windows.server.sbs)
    • Re: ISA Firewall Client/Web Proxy Client
      ... - logging: can you include the log entries that you believe to be incorrect? ... client types: if the browser is configured to use the ISA as a web proxy, then it will do so, even if the FWC is installed. ... the script downloaded by the web proxy client is sent with a cache timeout of 50 minutes. ... Thus, if you want to validate script changes in the ISA policies, you'll have to either grab the script manually or clear the ...
      (microsoft.public.isa)
    • Re: ISA Firewall Client/Web Proxy Client
      ... - logging: can you include the log entries that you believe to be incorrect? ... client types: if the browser is configured to use the ISA as a web proxy, then it will do so, even if the FWC is installed. ... the script downloaded by the web proxy client is sent with a cache timeout of 50 minutes. ... Thus, if you want to validate script changes in the ISA policies, you'll have to either grab the script manually or clear the ...
      (microsoft.public.isa.configuration)