Macs, Windows Server 2003 domains, ISA, Surf Control and bears...OH MY!

Posted on 2007-08-01
Last Modified: 2012-08-14
How are you guys handling Macs on a Windows domain?  

Our primary network at the school/church is a Windows Server 2003 domain with ISA 2004 and Surf Control.  We install the MS firewall client on all of the PCs.  No one can access the network or surf the web w/out joining the domain and w/out the firewall client installed on the PC.

Now, along comes all the Mac users!

I can get them out to the internet by putting our ISA proxy settings and the user's credentials into Safari and Entourage works well enough on our exchange server.  Where I'm having some confusion is the best way to access mapped/shared drives on the network (they don't reconnect when the mac users reboots), and how to get them thru ISA/Surf Control the best way.

In ISA, I created my first rule and I just allow the Macs out based on their IP.  Since they don't send authentication because they don't have the MS Firewall client, that's the only way I knew of to allow them to surf the web.  After that, Surf Control still controls the content.

So, my question is general in that I'm looking for feedback, tips, tricks, etc for using Macs in a Windows Server 2003 domain with ISA 2004 and Surf Control.


Question by:crp0499
    LVL 51

    Accepted Solution

    Hey Cliff. If it has ISA in the mix I'll give it a go.

    As far as Shares are concerned, we'll need additional help.

    getting them onto the Internet i easier but limited. MAC users cannot authenticat to the ISA server because they do not carry the credentials information in the same way that Windows clients do. In addition, they cannot run the ISA Firewall Client either.

    Only option avilable is to use the MACs as SecureNAT clients making sure their default gteways point at the ISA box. As you already know this there is not much I can add.
    LVL 1

    Expert Comment

    Hi Cliff,

    Have a look at this:-

    I've used that site for a couple of years now, very useful :)
    I don't need the points btw as I'm a paying user anyway, just giving some help here.
    LVL 31

    Expert Comment

    LVL 51

    Expert Comment

    by:Keith Alabaster
    How did you get on Cliff?

    Author Comment

    Please leave this open a bit longer.  School just started and I'm swamped!  It is still an issue but I have yet to get back to it.  I expect to have it resolved within 14 days.

    Write Comment

    Please enter a first name

    Please enter a last name

    We will never share this with anyone.

    Featured Post

    What Is Threat Intelligence?

    Threat intelligence is often discussed, but rarely understood. Starting with a precise definition, along with clear business goals, is essential.

    Suggested Solutions

    Title # Comments Views Activity
    UNC paths question 18 58
    DHCP relay on Sonicwall 7 134
    need assistance analyzing a netmon trace 12 63
    Weird Issues with AD GPOs 5 67
    Are you looking to clear some space on your phone for the latest iOS 8 update? Did you switch to Spotify so you no longer need to keep music native on your phone? Run out of space for taking photos while in the middle of vacation? Sometimes the quic…
    The Need In an Active Directory enviroment, the PDC emulator provide time synchronization for the domain. This is important since Active Directory uses Kerberos for authentication.  By default, if the time difference between systems is off by more …
    Users will learn how resize a batch of photos from a single command in Photoshop via Photoshop's Image Processor. Open up an Image you'd like to resize in Adobe Photoshop: Adjust the image size according to your preferences. Image > Adjustments > …
    Users will learn how to set proper sequence settings, scale images, paste attributes, add transitions, fades, and music. Open up Final Cut Pro 7 and Create a new Project: Set the Sequence Settings. a) Click File > Easy Setup > Format > Apple ProRe…

    761 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    11 Experts available now in Live!

    Get 1:1 Help Now