Re: How to connect 2 LANS with ISA server



i think i did not specify the type of switch i have..it is a normal fast
ethernet layer 2 switch. it is not capable of vlans too. anyways my point
here is that my clients ethernet cable is directly plugging to the switch
mentioned above which also has my clients connected in a start topology. i
want to segregate my clients connectivity with my lan. i hope i have made
that clear.

"Phillip Windell" wrote:

"flaminjune" <flaminjune@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:9EF34ED1-9541-409F-AF76-E36AA7E5C163@xxxxxxxxxxxxxxxx
i need to connect two LANS. one LAN is our clients(172.16.100.x) and one is
ours(192.168.100.x). we have a dedicated link through fibre optic as a
transport which links directly to us through the media converter, where it
plugs into my switch. (not a good design, i know)

I don't see anything wrong with that design.

we need to connect to their
oracle database and applications created in oracle as well as use
development
tools from our LAN clients. what i want to do is to isolate our lan
resources
where we (192.168.100.x) can access their ((172.16.100.x)LAN)oracle
servers
and certain clients but completely restrict their access to our lan. how
can
i use ISA server in this kind of a scenario to gain access to my clients
LAN
from my LAN but restrict them completely.im new to ISA Server.

There is *something* between those IP Segments that is acting as the LAN
Router between those two segments. This is probably what you are calling
your "switch" which is most likely a Layer3 Switch which means it is really
a LAN Router and Network Switch build into the same piece of hardware. This
is the device that controls that access,...this is the device that you
should use ACLs on to control traffic.

If you want to use the ISA for this,...then you would have to physically
replace this device with ISA, and I don't think that is a very good idea.

--
Phillip Windell
www.wandtv.com

The views expressed, are my own and not those of my employer, or Microsoft,
or anyone else associated with me, including my cats.
-----------------------------------------------------
Understanding the ISA 2004 Access Rule Processing
http://www.isaserver.org/articles/ISA2004_AccessRules.html

Troubleshooting Client Authentication on Access Rules in ISA Server 2004
http://download.microsoft.com/download/9/1/8/918ed2d3-71d0-40ed-8e6d-fd6eeb6cfa07/ts_rules.doc

Microsoft Internet Security & Acceleration Server: Partners
http://www.microsoft.com/isaserver/partners/default.asp

Microsoft ISA Server Partners: Partner Hardware Solutions
http://www.microsoft.com/forefront/edgesecurity/partners/hardwarepartners.mspx
-----------------------------------------------------



.



Relevant Pages

  • Re: How to connect 2 LANS with ISA server
    ... plugs into my switch. ... tools from our LAN clients. ... and certain clients but completely restrict their access to our lan. ... from my LAN but restrict them completely.im new to ISA Server. ...
    (microsoft.public.isa)
  • Clients get wrong IP for ISA server
    ... The Web and FW clients by default are configured to ... addresses which are bound to most ISA boxes (WAN and LAN ... >ISA server so they could not go out to internet. ...
    (microsoft.public.isa)
  • Re: WLAN Access Suggestions
    ... > I'd like to use WLAN in addition to my home LAN. ... > connected to a switch that use a linux box for routing to the internet. ... > to use WLAN for example from my notebook instead of the LAN cable. ... Finding wireless clients for linux is more challenging, ...
    (comp.os.linux.networking)
  • Re: How to connect 2 LANS with ISA server
    ... ethernet layer 2 switch. ... mentioned above which also has my clients connected in a start topology. ... Configure half of the ports to be one VLAN and the other half of the ports ... Microsoft ISA Server Partners: Partner Hardware Solutions ...
    (microsoft.public.isa)
  • Re: Clients get wrong IP for ISA server
    ... Advanced -> DNS tab. ... > - The Web and FW clients by default are configured to ... > addresses which are bound to most ISA boxes (WAN and LAN ... >>ISA server so they could not go out to internet. ...
    (microsoft.public.isa)

Loading