Re: Routing between branch office Site 3 site vpns



"exchangerookie1994" <exchangerookie1994@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in
message news:FAFC0660-A363-4168-936F-A7A26F4ED68A@xxxxxxxxxxxxxxxx
I have 3 sites. 1 main site and 2 branch office sites. main site is isa
2006.
remote sites are pix 501's. the 2 branh sites are vpn into isa 2006. how
do i
allow communication between branch offices?

Assuming you used a Site-to-Site VPN.
You would have created "names" for the Network Objects for each
branch,...such as for example Branch#1, Branch#2.

The Access Rule would follow this pattern:
Source: Branch#1, Branch#2
Destination: Branch#1, Branch#2
Protocol: <whatever>
Users: <whatever>

You could also include the Internal and LocalHost in the same rule if you
chose.
Source: Internal, LocalHost, Branch#1, Branch#2
Destination: Internal, LocalHost, Branch#1, Branch#2
Protocol: <whatever>
Users: <whatever>

You need to keep security in mind and weight the difference between
convenience and necessity.

If you are using a Remote Access VPN I don't think it is possible,..that
"model" is not intended to be used that way.


--
Phillip Windell
www.wandtv.com

The views expressed, are my own and not those of my employer, or Microsoft,
or anyone else associated with me, including my cats.
-----------------------------------------------------
Understanding the ISA 2004 Access Rule Processing
http://www.isaserver.org/articles/ISA2004_AccessRules.html

Troubleshooting Client Authentication on Access Rules in ISA Server 2004
http://download.microsoft.com/download/9/1/8/918ed2d3-71d0-40ed-8e6d-fd6eeb6cfa07/ts_rules.doc

Microsoft Internet Security & Acceleration Server: Partners
http://www.microsoft.com/isaserver/partners/default.asp

Microsoft ISA Server Partners: Partner Hardware Solutions
http://www.microsoft.com/forefront/edgesecurity/partners/hardwarepartners.mspx
-----------------------------------------------------


.



Relevant Pages

  • Re: How to enable messenger for certain users?
    ... Understanding the ISA 2004 Access Rule Processing ... Microsoft Internet Security & Acceleration Server: Partners ... Microsoft ISA Server Partners: Partner Hardware Solutions ...
    (microsoft.public.isa.configuration)
  • Re: How to enable messenger for certain users?
    ... Understanding the ISA 2004 Access Rule Processing ... Microsoft Internet Security & Acceleration Server: Partners ... Microsoft ISA Server Partners: Partner Hardware Solutions ...
    (microsoft.public.isa.configuration)
  • Re: Windows/Microsoft Update
    ... Understanding the ISA 2004 Access Rule Processing ... Microsoft Internet Security & Acceleration Server: Partners ... Microsoft ISA Server Partners: Partner Hardware Solutions ...
    (microsoft.public.isa)
  • Re: How do I block youtube or URLs
    ... Understanding the ISA 2004 Access Rule Processing ... Microsoft Internet Security & Acceleration Server: Partners ... Microsoft ISA Server Partners: Partner Hardware Solutions ...
    (microsoft.public.isa)
  • Re: behind ISA 2004
    ... It is possible for a Client to operate as all three types at the same time. ... Understanding the ISA 2004 Access Rule Processing ... Microsoft Internet Security & Acceleration Server: Partners ... Microsoft ISA Server Partners: Partner Hardware Solutions ...
    (microsoft.public.isa.vpn)

Loading