RE: SBS2K3 Prem Symantec Security Gaeway

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



As you suggested I upgraded to SBS2K3 SP1. I would like to VPN to a Symantec
Security Gateway 5400 Series through a SBS2K3 Prem (SP1)
(ISA2K4) network.

Symantec knowledge base (Document ID:2004011615343354) suggests this:

ISA configuration requirements
Configure ISA server to pass the following outbound protocols:
Type: UDP
Destination Port: 500
Source Port: 49152-50151 (if Dynamic ISAKMP Source port is enabled in
Symantec Client VPN 8.0) or 500

Type: UDP
Destination Port: 786
Source Port: 1024-65535

Configure ISA server to pass the following inbound protocol for rekey events
initiated by the Symantec firewall.
Type: UDP
Destination Port: 49152-50151
Source Port: 500

Any Suggestions? How do I configure ISA2K4 for the above?
TIA Keith Russo

"Jerry zhao (MSFT)" wrote:

> Hi Keith,
>
> Thanks for your kind response and I'm glad to hear that my information
> helps.
>
> Actually, the SBS SP1 has already released. For more information about the
> SBS SP1, you can visit the following MS web site:
>
> Windows Small Business Server 2003 Service Pack 1
> http://www.microsoft.com/windowsserver2003/sbs/downloads/sp1/default.mspx
>
> What's New for Windows Small Business Server with SP1
> http://www.microsoft.com/downloads/details.aspx?familyid=B5846A14-F306-41F0-
> 9D1F-97F615E62ADF&displaylang=en
>
> Getting Started: Windows Small Business Server 2003 with SP1
> http://download.microsoft.com/download/9/a/3/9a306a75-e7da-461f-996d-7b93e09
> 948ee/GettingStarted_Combined.doc
>
> How to install Service Pack 1 for SBS 2003
> http://www.smallbizserver.net/Default.aspx?tabid=236
>
> NOTE: This response contains a reference to a third party World Wide Web
> site. Microsoft is providing this information as a convenience to you.
> Microsoft does not control these sites and has not tested any software or
> information found on these sites; therefore, Microsoft cannot make any
> representations regarding the quality, safety, or suitability of any
> software or information found there. There are inherent dangers in the use
> of any software found on the Internet, and Microsoft cautions you to make
> sure that you completely understand the risk before retrieving any software
> from the Internet.
>
> As always, please do post back here again if anything we can still be help.
>
> Best regards,
>
> Jerry Zhao (MSFT)
>
> Microsoft CSS Online Newsgroup Support
>
> Get Secure! - www.microsoft.com/security
>
> =====================================================
> When responding to posts, please "Reply to Group" via your newsreader so
> that others may learn and benefit from your issue.
> =====================================================
> This posting is provided "AS IS" with no warranties, and confers no rights.
>
>
>
.



Relevant Pages

  • RE: Port Forwarding With 2 NIC Configuration
    ... Can SBS do 1-to-1 Natting? ... > and incoming/outgoing port, ... > automatically redirected from the SBS server to port 81 of the internal ... > Microsoft CSS Online Newsgroup Support ...
    (microsoft.public.windows.server.sbs)
  • RE: Remote server management unavailable after installing latest hotfix
    ... other process listening on port 80. ... do you encountered any issue when accessing the SBS server from RWW ... Microsoft CSS Online Newsgroup Support ... This newsgroup only focuses on SBS technical issues. ...
    (microsoft.public.windows.server.sbs)
  • Re: SMTP and tcp ports
    ... This ACL would permit access to the internal SMTP server (listening on TCP port 25) from external clients and servers. ... The mail clients would be using a TCP source port>1023, and external mail servers would be using TCP source port 25, or TCP source port>1023. ...
    (comp.dcom.sys.cisco)
  • Re: Microsoft SBS 2000 Internet Permissions Problem
    ... The web site logon page is access via HTTPS port 85: ... If Microsoft Internet Explorer is configured to reference a server that is ... ISA Server 2000 Standard Edition, ...
    (microsoft.public.windows.server.sbs)
  • Re: Odd behaviour with Exchange and Telephony Services
    ... port. ... Why do you use HyperTerminal to connect the fax modem? ... How do the problematic Outlook users visit SBS server, ... Microsoft CSS Online Newsgroup Support ...
    (microsoft.public.windows.server.sbs)