Hi All,
ISA server not auto failing over to the other.
I have two ISA servers ISA1 and ISA2. I have a deticated DC that is running DHCP, WINS, DNS & now the CSS service for the ISA servers. Each ISA server has two nic's; one external, one internal. Both servers are 2003 server enterprise with ISA 2006 Enterprise. All service packs & critical & recommended updates have been installed for the W2K3 OS. No updates (i haven't found any as of yet) for the ISA 2006 servers.
Both servers are in the array BC-HO-Firewall
bc-ho-ISA1 - 10.10.10.253 int 64.251.65.202 ext T1
bc-ho-ISA2 - 10.10.10.252 int 208.181.243.157 ext DSL
NLB to 10.10.10.251 (Used ISA 2006 wizard to do this) Internal only
Two rules:
Allow all outgoing network traffic
Block all incoming traffic
Everything works and it is NLB'ing (I think) until I unplugg one of the external connections to simulate a failure. If I unplug ISA2 external connection when I browse any sites that have previously gone through that server I get the following message
Technical Information (for support personnel)
Error Code: 502 Proxy Error. An address has not yet been associated with the network endpoint. (1228)
IP Address: 72.14.253.103
Date: 8/27/2007 4:07:37 PM [GMT]
Server: bc-ho-isa2.internal.naturs
fare.com
Source: proxy
I'm using a firewall client.
Intra array communication is occurring on the 10.10.10.25x IP (tried using a 192.168.10.x but it kept losing communication)
here is the routing table for ISA1
IPv4 Route Table
==========================
==========
==========
==========
==========
=========
Interface List
0x1 ..........................
. MS TCP Loopback interface
0x2 ...02 bf 0a 0a 0a fb ...... Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC - Network Load Balancing Filter Device
0x10004 ...00 17 9a 05 0b c0 ...... D-Link DFE-530TX PCI Fast Ethernet Adapter (rev.C)
==========================
==========
==========
==========
==========
=========
==========================
==========
==========
==========
==========
=========
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 64.251.65.201 64.251.65.202 20
10.10.10.0 255.255.255.0 10.10.10.253 10.10.10.253 20
10.10.10.251 255.255.255.255 127.0.0.1 127.0.0.1 20
10.10.10.253 255.255.255.255 127.0.0.1 127.0.0.1 20
10.255.255.255 255.255.255.255 10.10.10.253 10.10.10.253 20
64.251.65.200 255.255.255.248 64.251.65.202 64.251.65.202 20
64.251.65.202 255.255.255.255 127.0.0.1 127.0.0.1 20
64.255.255.255 255.255.255.255 64.251.65.202 64.251.65.202 20
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
224.0.0.0 240.0.0.0 10.10.10.253 10.10.10.253 20
224.0.0.0 240.0.0.0 64.251.65.202 64.251.65.202 20
255.255.255.255 255.255.255.255 10.10.10.253 10.10.10.253 1
255.255.255.255 255.255.255.255 64.251.65.202 64.251.65.202 1
Default Gateway: 64.251.65.201
==========================
==========
==========
==========
==========
=========
Persistent Routes:
None
Here is the routing table for ISA2
IPv4 Route Table
==========================
==========
==========
==========
==========
=========
Interface List
0x1 ..........................
. MS TCP Loopback interface
0x2 ...02 bf 0a 0a 0a fb ...... NVIDIA nForce Networking Controller - Network Load Balancing Filter Device
0x10004 ...00 17 9a 3b 4d dc ...... Realtek RTL8139 Family PCI Fast Ethernet NIC
==========================
==========
==========
==========
==========
=========
==========================
==========
==========
==========
==========
=========
Active Routes:
Network Destination Netmask Gateway Interface Metric
10.10.10.0 255.255.255.0 10.10.10.252 10.10.10.252 20
10.10.10.251 255.255.255.255 127.0.0.1 127.0.0.1 20
10.10.10.252 255.255.255.255 127.0.0.1 127.0.0.1 20
10.255.255.255 255.255.255.255 10.10.10.252 10.10.10.252 20
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
224.0.0.0 240.0.0.0 10.10.10.252 10.10.10.252 20
255.255.255.255 255.255.255.255 10.10.10.251 10004 1
255.255.255.255 255.255.255.255 10.10.10.252 10.10.10.252 1
==========================
==========
==========
==========
==========
=========
Persistent Routes:
None
Am I missing something???? new to ISA server and NLB so i'm not sure what is the issue. Also I would like to use VPN failover (my other sites have only 1 server in the array) Please help ASAP
Dan
Start Free Trial