Re: Hardware Firewall & ISA
From: Bryant King (btk_at_watertownford.com)
Date: 04/02/04
- Next message: Skip Shean: "Re: Installed sbs Evaluation kit over Preview kit will expire in 5days"
- Previous message: Skip Shean: "Re: Clients cannot login or can login, but not see mapped drives on SBS"
- In reply to: Bryant King: "Hardware Firewall & ISA"
- Messages sorted by: [ date ] [ thread ]
Date: Thu, 01 Apr 2004 21:00:50 -0500
I just thought of something else. Since I am not worried about security so
much, what if I set up a vlan on the switch and connect the external adapter
to the ADP side of the switch and make the other vlan be my internal NAT.
That way The data can still get to the printers because the adp network is
in tack and I can monitor my internet traffic.
Let me know what you guys think.
Bryant
On 4/1/04 8:06 PM, in article BC9226D4.387%btk@watertownford.com, "Bryant
King" <btk@watertownford.com> wrote:
> You guys have answered the many questions I have had about sbs and
> configuring it and I thank you all for that. I have asked before about a
> hardware firewall and isa before but I am down to my final attempts.
>
> I will first say that we have a cisco pix 501 and I am comfortable with that
> as our firewall but I want the internet access control and monitoring of ISA
> on our network.
>
> I work at a car dealership that uses ADP as our dealer management system
> provider. The ADP server is at another dealership and the cisco pix
> provides vpn to the dealership and firewall for us. Because the system uses
> dumb terminals to connect to the server we had to use their addressing
> scheme. I tried to set the external nic address to their subnet and then
> use our own internal NAT and route everything through the external nic so it
> looks like it is on their network. The problem arises when Someone tries to
> print to an ADP network printer from our network. All of the printed data
> runs through a spooler on the server and the ip address of all the printers
> is on their network so there is no way that I can find to have them behind
> the server. A further complication is that we have a point to point T1
> connecting a third building so I cannot just plug all of the printers into a
> switch in front of the server. So on to my question.
>
> Do you know of a way that I could pass one of the other ip addresses from my
> ISP through the first cisco pix firewall to my server external nic.
> Otherwise any suggestion would be appreciated. Why can't anything be
> simple?
>
> Thanks
> Bryant
>
- Next message: Skip Shean: "Re: Installed sbs Evaluation kit over Preview kit will expire in 5days"
- Previous message: Skip Shean: "Re: Clients cannot login or can login, but not see mapped drives on SBS"
- In reply to: Bryant King: "Hardware Firewall & ISA"
- Messages sorted by: [ date ] [ thread ]
Relevant Pages
|