Problems with bypass rules in ISA 2004 SP3

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



Hi All,

Hopefully someone can answer this question for me as it has been
causing me much grief and annoyance for some time now. We have ISA
2004 standard SP3 installed on Windows 2003 Server standard edition.
The server only has one network card and therefore it is in cached
mode.

We chain from our proxy server to an upstream proxy server but need to
bypass for one IP address from licensing reasons. Therefore there has
been an additional network created and a network rule to directly
route to that network. I have also created a chaining rule for this
network to retrieve requests directly.

This appears to be working as far as I can tell from the logs, I have
enabled the "Allow HTTP/HTTPS requests from ISA server to specified
sites" and added the required URL to this rule group "System Policy
Allowed Sites".

The error message I get is Error Code: 502 Proxy Error. The host
server is unreachable. (10065)

If I disable the firewall on the ISA server itself and open the URL in
the web browser it goes directly to that site??? Therefore I know the
routes and NAT rules that are in place are working.

Is there any way this can be done in cached mode or am I trying to do
the impossible, it shouldn't be a problem as ISA 2000 works with this
configuration perfectly?

Any help would be greatly appreciated.

Best Regards

Ben

.



Relevant Pages

  • Re: ISA 2006 configuration question - multiple VLANs and domains
    ... very familiar with network segments vs. domains et. al. ... multihomed ISA 2006 server forward a DHCP request to the proper VLAN ... ISA is a Firewall Product designed to protect a network from the Internet. ...
    (microsoft.public.isa.configuration)
  • RE: Firewall service and remoteaccess service shut down frequently
    ... Do you have run the CEICW after installing the ISA components? ... please open SBS server management console, ... Click the Add Adapter button, and add your internal network adapter ... Meanwhile, from the subject, you said you the firewall service and RRAS ...
    (microsoft.public.windows.server.sbs)
  • Re: VPN breaks after installing patches
    ... I have just received your email due to some network traffic problems. ... access the network shares was denied by ISA Server. ... Open the Server management console, navigate to "Internet and E-mail", ...
    (microsoft.public.windows.server.sbs)
  • Re: Connect the SBS to a remote IIS for Internet Printing
    ... the server can access the Internet with no problems at all. ... Checking network connection, and after a few seconds it says The ... the problem is cause by the configuration of ISA. ...
    (microsoft.public.windows.server.sbs)
  • Re: Win2000 SBS moved to new location... logon issue
    ... about a network not found. ... When you get to ISA, click on "Enable ISA Packet Filtering". ... The popup message you got about ISA filters means that any "custom" ISA ... Security and Acceleration Server | Servers and Arrays | ...
    (microsoft.public.backoffice.smallbiz2000)