ISA server scenario
I want to install a ISA 2006 server in the DMZ, as backend firewall.
back to back ;
I have a cisco PIX as frontend firewall, isa have to take care of the webtraffic in/outbound ,ftp traffic,
vpn site to site connections, OWA .
Is this a recommended scenario ,..
all the comments are very welcome
thanks
April 19th, 2007 11:45am
I believe the following is how Exchange 2007 would be set up without ISA. The hardware firewall would forward port 25 to the Edge Transport while it would forward port 443 to the Client Access server. /---->DMZ - Edge transport / (Uses ADAM to talk to Hub Trans) /Internet -->(Hardware Firewall) \ \ \---->Internal - Hub Trans & Client Access Mailbox Role1 - cluster - CCR Mailbox Role2 - cluster - CCRHowever, like you I'm also interested in using ISA 2006 and would like to know if the following diagram is correct or if the ISA server would actually be in a DMZ.Internet -->(Hardware Firewall) | | ISA2006 | | Internal network - Hub Trans & Client Access - Mailbox Role1 - cluster - CCR - Mailbox Role2 - cluster - CCR
Free Windows Admin Tool Kit Click here and download it now
April 26th, 2007 4:49pm
hi,
the second diagram is also an accurate design. and you can also put in a Edge Server between firewalls ( hardware FW and ISA2006). i have already installed it,it work correctly.
I have other architecture wherei have a DMZ , and two FW. In this case, ilike install a ISA as a reverse proxy with Edge Server In DMZ. I'm collecting information about this.
thanks
May 1st, 2007 12:25am