Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

New network in ISA 2004

Status
Not open for further replies.

Eyas

IS-IT--Management
Sep 11, 2002
85
SE
Hi

I'm new to the ISA 2004 and need some help.

I'm trying to split my internal network in two 192.168.1.0/24(A) and 192.168.2.0/24(B). The reason is that the clients on the network are forced to authenticate using AD and the B network isn't using AD yet. So I try to create a new network in the ISA called internal2 but when I try to access the web I get Denied Connection in the ISA monitor. It doesn't display the rule involved, just a -.

I've set up a firewall policy rule allowing all outbound from internal, internal2 and local host to internal, internal2 and local host. The ip of the ISA server is 192.168.1.1 so it is on network A.

Any ideas what is wrong?

T.I.A

Tommy G
 
Additional info:

The ISA server is in "Single adapter mode" and acts as a proxy.

 
check this create a only 1 internal network with the ip range to cover the 2 network adresss , (in my case was 192.168.0.0 to 192.168.2.255 to cover adres from 192.168.0.1 to 192.168.2.254 ) then create 2 network interval one for de adress 192.168.1.0/24 and 1 for the adress 192.168.2.0/24

then create a network relation of nat between the 2 networks
and a the allow rules to permit trafic between the 2 interval and the host.

I think this solve your problem may be you dont need the network relation rule because you use a single adaptor isa and not doing any routing but the most importan thing is to use one internal network

hope its helps
coco10 (let me know if its works)
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top