ISA Server 2004 with one NIC on DMZ

From: Haim Beyhan (haimb_at_enigma.com)
Date: 11/15/04


Date: Mon, 15 Nov 2004 16:44:47 +0200

Hi,

We have Cisco Pix firewall with internal, dmz and external port to internet.
Isa server 2004 is installed with one nic on Windows 2000 server (not part
of the domain) and it is loctaed on dmz. I'm using it for Web publishing of
a web server in the internal network and everything is working fine.
I want to use that ISA server also as a proxy server with cache for internal
and dmz users. I enabled the cache and created an outbound access firewall
policy on the server and enabled all outgoing protocols. I have also a dns
server on dmz that resolves internet web sites.
The problem is I cannot access any site except www.microsoft.com when trying
direclty from ISA server and either from other machines . I receive the
following error:

Error code:502 proxy error. The ISA server denied the specified URL. (12202)

Thanks in advance,

Haim Beyhan



Relevant Pages

  • Re: ISA 2006 Basic Configuration
    ... Does the AD/DNS Server have the ISP's DNS properly configured as a Forwarder? ... Microsoft Internet Security & Acceleration Server: ... Microsoft ISA Server Partners: Partner Hardware Solutions ... The routing table for the network adapter Internal includes IP address ranges that are not defined in the array-level network Internal, ...
    (microsoft.public.isa.configuration)
  • Re: Lets talk about firewalls - what do we as a group think a firewall should be/have?
    ... NAT, and the DMZ, since it's already secured, is a good place to tack ... If the "company" is not offering services to the Internet, ... and connections to the internal LAN should ... be by means of a second interface on the server. ...
    (comp.security.firewalls)
  • RE: Accessing WSS3 internally and via RWW and Companyweb
    ... you should publish WSS 3.0 site to internet and change the link on the ... should not change the Web Server Certificate during running CEICW.) ... Do not change current Web server certificate. ... Click Start, point to Programs, point to Microsoft ISA Server, and then ...
    (microsoft.public.windows.server.sbs)
  • Re: Man gets nine years for spamming
    ... > I don't think we've ever had web access. ... > connect to an inner server where you logged in and actually did stuff. ... We have 12 DMZ interfaces. ... the DMZs and in between the Internet routers and the first ...
    (alt.computer.security)
  • Re: Prividing Intranet Website Access To External Users
    ... I really wouldnt like to be having my company intranet on the ... I would probably integrate the ldap/dc as a security server on the ... >> The web server will be in the DMZ, and only port 443 will be ... >> intranets to the internet in a secure manner. ...
    (Security-Basics)