SBS ISA2004 allows all users internet access, why?

Tech-Archive recommends: Fix windows errors by optimizing your registry



hi,

i've upgraded our SBS 2003 premium with SP1 using the disks purchased from
microsoft.

after removing the 40 connections limit which created carnage with our
network, why this is default on SBS i'll never know, i've found that now all
users of the network can browse the internet, as opposed to the SBS Internet
users only as it was before the upgrade.

i consider myself very knowledgable on these things, but for the life of me
i can identify what's causing this to happen.

weird things i've noticed - all my custom rules got amened to TCP 0-65534,
applied to all users. not a successful conversion! anyhow, i've tried
disabling them and then removing them to no avail, still everyone has access.

since i didnt install this from scratch (i.e it's an SBS upgrade) then i'm
not familiar with the "start locked down and open from there". this interface
doesnt make much sense to me at this time, and its a live system where
(relevent) people need access to the internet pretty much all the time.

so, what's the method /rule / policy that would allow only "SBS Internet
Users" access to the web proxy?

points to note: ISA server is on a single network adapter. currently an
external firewall is in place to block access out. please dont lecture me
about using ISA as a full firewall, i know, and i will change it after i've
migrated from SBS. which wont happen until everything is stable.

so to be clear, i'm only using it for controlled web proxy access and caching!

i've not found anything on the web or support or help that documents this
simple feature request.

here's hoping someone can help here!

cheers
Rich R
.



Relevant Pages

  • Re: New 2003 Server on NT network
    ... you can't add an SBS 2003 to an existing network. ... > existing NT4 network and then have it "take over" from ... I plan to upgrade my existing PDC, ...
    (microsoft.public.windows.server.sbs)
  • Access database stability problems
    ... We recently upgraded from SBS 2003 to SBS 2008. ... our Microsoft Access database is crashing since the change. ... It seems that we are occassionally losing network connectivity. ... The only difference was the upgrade to SBS 2008. ...
    (microsoft.public.windows.server.general)
  • OWA error after upgrade 500 Internal Server Error
    ... Just completed an upgrade from SBS 2000 w/ISA to SBS ... Accessing from inside the network via the ... "500 Internal Server Error - The target principal name is ...
    (microsoft.public.windows.server.sbs)
  • RE: SBS2000 TO SBS2003 Cant UPGRADE - ISA 2000 SP1 and SP2 issues
    ... The SBS 2003 upgrade now runs... ... > ISA 2000 is also. ... > I tried removing the KB888258 and rebooting, ...
    (microsoft.public.windows.server.sbs)
  • Re: Server 2003 to SBS 2003 Migration
    ... So you should just be able to add the SBS to the existing domain, ... de-commission the existing server at any point you choose - or just leave ... out of the picture and upgrade or replace it with a new SBS2003 server. ... install and I would rather not rebuild the whole network as it works ...
    (microsoft.public.windows.server.sbs)