Re: ISA VPN Accessing Mapped Drives

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



Those aren't rules; they're "ports".
Exactly how are these applied to the ISA policies you created for the VPN
connections?

--
Jim Harrison (ISA SE)

This posting implies no warranty and confers no rights.
http://catb.org/~esr/faqs/smart-questions.html



"Frank" <Frank@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:ECFC1BDF-1F39-4A40-B740-CD027E13C056@xxxxxxxxxxxxxxxx
I have an 04 ISA STD serving vpn clients on IPSec.
When all ports are opened, I obviously have no problems accessing file
servers.

When my VPN rules are applied (shown below) I experience logon prompts for
file server access and very slow performance from file shares. Most of my
*.exe files don't populate the icon and can't seem to get all of the file
across the vpn.


VPN Firewall Rules (Did I miss something???)
139 TCP
445 TCP
445 UDP
53 TCP
53 UDP
80 TCP
443 TCP
636 TCP
464 TCP
464 UDP
88 TCP
88 UDP
135 TCP
138 UDP
137 UDP
139 TCP
1723 TCP
389 TCP
25 TCP

Since this has ISA 04, I have a reverse rule as well from VPN clients to
Internal server >Internal servers to VPN clients.
Did I miss something?

Thanks, you guys are the best!

.



Relevant Pages

  • Re: Voip for LG- Nortel phone
    ... TCP 5103 ... All forwarded to management port on PABX - this works ... UDP 8002 - 8005 ... LAN VPN facility we require. ...
    (uk.telecom)
  • Re: 30 minute logon time - This is a rough one
    ... figure out what the issue is with UDP and kerberos at this site. ... nightmare with some our VPN locations. ... If the MTU size for the circuit has ... Setting the kerberos tcp fix I mentioned earlier plus tweaking the MTU size ...
    (microsoft.public.windows.server.active_directory)
  • Re: L2TP mit IPSec Verbindungsprobleme
    ... DSL-Router an einen VPN Server zu senden. ... Ich habe bereits Portforwarding von Port 500 für IKE und Port ... Du brauchst nur UDP/500 und ESP (das ist ein eignes IP Protokoll wie UDP, ... TCP und ICMP mit der Nummer 50). ...
    (de.comp.security.firewall)
  • Re: Pelco video surveillance equipment and ISA
    ... >Network Settings on the Pelconet itself. ... >UDP to your internal address, ... The TCP ... if I access it through the ISA ...
    (microsoft.public.isa.configuration)
  • Re: Setting Up SBS to Sync w/ External Time Source
    ... It is UDP 123. ... > this was before ISA was installed. ... and should it be TCP or UDP? ... >>> This peer will be discarded as a time source and NtpClient will ...
    (microsoft.public.windows.server.sbs)