ISA 2004 - Site to Site - HTTP Error 500

From: Tony (*!SPAM-NO!*pctony_at_gmail.com)
Date: 01/25/05


Date: Tue, 25 Jan 2005 02:29:37 -0800

Hi Guys,

Just a quickie:

I am using my ISA server for a VPN Endpoint for a Site to Site VPN
connection. All traffic travereses this connect fine except HTTP.

I have added the network rule (route mode), and also added a access rule
allowing unresticted access in both directions as this is a remote
office site.

As I said everything works very sweetly across the tunnel with the
exception of http, let me explain some more:

A user accesses an IIS server in the remote site, using either DNS or IP
address, and eventually error 500 is the result. If i disable friendly
error messages in IE the result is :

Error Code: 500 Internal Server Error. The host server is unreachable.
(10065)

I know the server is working fine as can be browsed from anywhere else
(internally and externally) just not across the ISA tunnel.

I then started the the logging and modified the filter, and saw what was
happening. The request was going through the ISA server, and then it
appears to be proxying the request.

You would see the initial connection attempt, then the ISA server was
initiate the connection to the server "on my behalf". The the
connection would fail and the next event in the log is "Failed
connection attempt"

What I guess I want to know is :

1. Is this standard 'behaviour' in 2004?
2. Why is the problem only affecting HTTP?
3. What can I do to either disable it or circumvent the 'apparent
    proxying' for internal subnets?

Cheers
Tony

MCSE+I



Relevant Pages

  • RE: companyweb
    ... 867483 How to configure networks in ISA Server 2004 ... The ConnectComputer wizard doesn''t allow connection coming from VPN/RRAS. ... Under Client Applications, uncheck everything except ...
    (microsoft.public.windows.server.sbs)
  • Re: Losing DSL connection after windows update.
    ... Stop ISA services on that Server to see if this issue occurs. ... >> The Connection to the gateway is lost after several hours of operation. ... >involved since my connection is straight to the internet. ... >> Since the ISA server is acting as a firewall, ...
    (microsoft.public.win2000.general)
  • Re: Outgoing POP3 email missing/lost/not received
    ... Funny thing is that I have had this ISP for 8 years and it has always been ... It looks like when you last ran CEICW, you set the ISP's mail server to: ... Internet Connection Wizard. ... After the wizard completes, the following network connection ...
    (microsoft.public.windows.server.sbs)
  • Re: Cannot connect client to server 2003
    ... you need to reconfigure the IP schema of your SBS ... On the SBS 2003 Server open the Server Management console. ... On the Connection Type page, click Broadband, and then click Next. ... Alternate DNS server, type the IP addresses that are provided by your ISP ...
    (microsoft.public.windows.server.sbs)
  • Re: Outgoing POP3 email missing/lost/not received
    ... ISP's mail server instead of the domain name on the ... SUMMARY OF SETTINGS FOR CONFIGURE E-MAIL AND INTERNET ... Internet Connection Wizard. ... After the wizard completes, the following network connection ...
    (microsoft.public.windows.server.sbs)

Loading