Re: SBS with 2 nic installed for usage for 2 SSL sites



--<
But I would first suggest to get rid of the extra NIC / router
combination. You can assign two IP addresses to the single WAN nic and
then add the proper route statements.

Thanks for the advise on this, but this kind of setup is also not workable
for SBS.
Even with persistent routing SBS can only have one gateway at a time.

I really think this is strange behaviour, I always thought that by default
packages arriving at a particular NIC / port are always answered back at the
same NIC / port (unless otherwise told --> setup).


The only solution I can think is to migrate the site to a win2k3 server,
which does support the usage of multi NICs / IPs / gateways.


--
«·´`·.(*·.¸(`·.¸ ¸.·´)¸.·*).·´`·»
«.............. CHARLIE ..............»
«·´`·.(¸.·´(¸.·* *·.¸)`·.¸).·´`·»


"Buddy" <buddy@xxxxxxxxxxxxxxxxx> wrote:
news:enkPDGzbIHA.4196@xxxxxxxxxxxxxxxxxxxxxxx
I'm guessing that you have more than one external static IP address and
that you want to use a different IP for each SSL website so that you can
use port 443 on both of them. You are correct that Host headers on SSL
don't work because the data is encrypted.

The only way I've ever done this is with ISA 2004 where you can configure
web listeners. But I would first suggest to get rid of the extra NIC /
router combination. You can assign two IP addresses to the single WAN nic
and then add the proper route statements. One thing to consider is that
with either two external NICs or two external IPs on a single NIC, the
CEICW wizard will not work any more. In order to run the CEICW, you will
need to disable the second external IP first, then put it back in after
the wizard has completed.

I'm unsure how to do this using RRAS. Hopefully someone smarter than me
can jump in?

Of course, many will tell you that hosting websites on a domain controller
is asking for trouble.

Good Luck

Buddy G ~

<charlie brown> wrote in message
news:OZFXWpwbIHA.748@xxxxxxxxxxxxxxxxxxxxxxx
Hi,

I am running a standard sbs2k3 server, with two SSL sites.

One site is on the default port (443) and the other is on 4043.
Both sites can be accessed from remote locations (the web).

Using port 4043 as a SSL port is not considered "nice".
I tried to use SSL Host Headers but this simply did not work.

So I inserted a second NIC in the sbs server and manually configured the
TCP/IP settings.
But for some kind of strange reason I am not able to connect to this
second NIC from the web. I can only connect to NIC2, when I disable NIC1.
Connecting to NIC2 in the private network / ip-range is no problem at
all.

It seems to me that sbs is routing the request back to the gateway
attached to NIC1.
I have never seen this with normal win2k3 servers, how can I instruct sbs
to route the requests to the gateway attached to NIC2?

Some specs :-

NIC1:
ip-address : 192.168.3.250
subnet mask : 255.255.255.0
gateway : 192.168.3.251

NIC2:
ip-address : 192.168.4.250
subnet mask : 255.255.255.0
gateway : 192.168.4.251

Both TCP/IP settings are configured manually.
Both gateways are routers connected to the CPE of the ISP, NAT is setup
correctly.

Kind regards,
--
«·´`·.(*·.¸(`·.¸ ¸.·´)¸.·*).·´`·»
«.............. CHARLIE ..............»
«·´`·.(¸.·´(¸.·* *·.¸)`·.¸).·´`·»







.



Relevant Pages

  • SSL on multiple sites in a virtually hosted WinServer 2003
    ... my ISP and its address is the public gateway. ... I am hosting several websites on the server. ... This setup works fine for only one SSL enabled site. ... one of the nics but it gets confused as to which gateway to send the packets ...
    (microsoft.public.windows.server.networking)
  • Re: SSL on multiple sites in a virtually hosted WinServer 2003 - SOLVED!
    ... with my ISP and its address is the public gateway. ... I have a Linksys firewall connected to the Cisco and its wan port is set ... This setup works fine for only one SSL enabled site. ... one of the nics but it gets confused as to which gateway to send the ...
    (microsoft.public.windows.server.networking)
  • Re: SBS with 2 nic installed for usage for 2 SSL sites
    ... that you want to use a different IP for each SSL website so that you can ... use port 443 on both of them. ... Yes, two NICs and two gateways which works on win-xp, win2k3 and even ...
    (microsoft.public.windows.server.sbs)
  • Re: SBS with 2 nic installed for usage for 2 SSL sites
    ... you want to use a different IP for each SSL website so that you can use port ... You are correct that Host headers on SSL don't work ... with either two external NICs or two external IPs on a single NIC, ... One site is on the default port and the other is on 4043. ...
    (microsoft.public.windows.server.sbs)
  • Re: SBS 1002 Premium R2 Mangling Port Issues
    ... If you have a decent hardware firewall/router now, ISA ... NIC or 2 NICs) did you finally end up with? ... the WAN NIC so there's only one NIC in the SBS (and then re-run CEICW ... port forward 8016 to the "external" SBS NIC IP ...
    (microsoft.public.windows.server.sbs)

Loading