Re: Firewall service and remoteaccess service shut down frequently



Hi Dan:

Can you please post the event id # and the source for the errors.

Any others that may be relevant?

Can you please post the results of:

ipconfig /all > c:\iptest.txt

from your server and a representative workstation? No need to modify
anything, but you could change the server/domain names if you wish. Please
be consistant.

Have you re run the CEICW?

Have you run the SBS Best Practices Analyzer?

http://www.microsoft.com/downloads/details.aspx?FamilyID=3874527a-de19-49bb-800f-352f3b6f2922&displaylang=en

Have you applied all the post SP2 fixes?

Best practices and known issues when you install Windows Server 2003 Service
Pack 2 on a Windows Small Business Server 2003-based computer
http://support.microsoft.com/kb/939421

(See
http://blogs.technet.com/sbs/archive/2007/06/30/new-best-practices-for-sp2-kb.aspx)

"Help and Support" feature is missing after you install Microsoft Windows
Server 2003 SP2 on a computer that is running Windows Small Business Server
2003
http://support.microsoft.com/kb/937231
MS response to a IIS/DEP Data Protection Error:
http://groups.google.com/group/microsoft.public.windows.server.sbs/browse_thread/thread/2dec93e3dd37d1cf/d1169338a0af55be

Common Networking Issues After Applying Windows Server 2003 SP2 on SBS
http://blogs.technet.com/sbs/archive/2007/04/24/common-networking-issues-after-applying-windows-server-2003-sp2-on-sbs.aspx

You may experience network-related problems after you install Windows Server
2003 SP2 or the Scalable Networking Pack
http://support.microsoft.com/kb/936594/


Lastly, although I really don't suspect this, the ip range of 10.x.y.z is
frowned upon by people more knowledgeable than I about subnetting. I
usually use 192.168.16.2 for the internal, and 172168.16.2 for the external,
as this makes them easy to remember. If you decide to change the ip addys
please use the change ip wizard in server management.

Then run the CEICW again, maybe more than once.

--

Larry



"Dan7" <Dan7@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:75342A73-BDC0-4977-8EBC-649A5178572A@xxxxxxxxxxxxxxxx
Can't put my finger on this. Appearently started a few months back. Not
sure
why.

System is SBS 2003 Prem. SP2, ISA 2004 SP3. dual NIC configuration.

Have this error in event viewer associated with the firewall:

ISA Server detected routes through the network adapter Internet Connection
that do not correlate with the network to which this network adapter
belongs.
When networks are configured correctly, the IP address ranges included in
each array-level network must include all IP addresses that are routable
through its network adapters according to their routing tables. Otherwise
valid packets may be dropped as spoofed. The following ranges are included
in
the network's IP address ranges but are not routable through any of the
network's adapters: 10.255.255.255-10.255.255.255;. Note that this event
may
be generated once after you add a route, create a remote site network, or
configure Network Load Balancing and may be safely ignored if it does not
re-occur.

Here's the error when the firewall shutsdown I believe. It is the last
event
pertaining to the firewall prior to the firewall being turned back on.

The Microsoft Firewall failed to log information to file
ISALOG_20071204_FWS_000.w3c in path C:\Program Files\Microsoft ISA
Server\ISALogs. The data is the error code.

This makes no sense to me. How do I read this logfile? This is a critical
problem since when employees arrive at work they have no access to the
domain
or the Internet until the firewall service is restarted.

Any help is greatly appreciated.


.



Relevant Pages

  • Re: Fully parallel Scheme-based language w/ evaluator
    ... Windows Server 2003 and networks in simple - and irreverent - terms. ... If networking really is a big deal, ... Concepts and Terminology in Part I, and The Design and Deployment of Network ...
    (comp.lang.misc)
  • << SBS News of the week - Sept 26 >>
    ... And he points to the info you need to put the file on the server in the ... at the network perimeter. ... The Symantec Firewall/VPN and the Gateway Security ... by the firewall at risk. ...
    (microsoft.public.backoffice.smallbiz)
  • << SBS News of the week - Sept 26 >>
    ... And he points to the info you need to put the file on the server in the ... at the network perimeter. ... The Symantec Firewall/VPN and the Gateway Security ... by the firewall at risk. ...
    (microsoft.public.backoffice.smallbiz2000)
  • << SBS News of the week - Sept 26 >>
    ... And he points to the info you need to put the file on the server in the ... at the network perimeter. ... The Symantec Firewall/VPN and the Gateway Security ... by the firewall at risk. ...
    (microsoft.public.windows.server.sbs)
  • Re: need help re. office network install
    ... > and their network is a mess, the result of years of neglect. ... they have a gateway server w/ no special ... > firewall rules on it, they have a large DMZ that serves no purpose ... install anymore software on the firewall machine than is absolutely ...
    (comp.os.linux.networking)