Solved

Sonicwall in parallel with ISA Server

Posted on 2008-06-09
3
292 Views
Last Modified: 2012-06-27
My company has a SonicWall that they want to use as a gateway to filter web based viruses and spyware. We may also move the VPN from our ISA Server to the Sonicwall. I plan to connect a switch to our cable modem and run the web traffic to our LAN. all of the other IP traffic will go through the ISA Server.Does anyone have any opinions on this setup. Is there a better way to do this by running the Sonicwall in a series with the ISA Server. My company has about 100 users,
0
Comment
Question by:eelder100
3 Comments
 
LVL 6

Accepted Solution

by:
Nyah247 earned 50 total points
ID: 21772967
I have an environment similar to your as far as users are concerned.  I wouldn't run any traffic from the cloud directly to your LAN.  I would put your sonicwall in front of ISA then attach ISA's external nic to the sonicwall's internal interface.   Essentially you are creating a protected DMZ of sorts.  Set the internal interface of the sonicwall as the gateway for ISA. Connect ISA's internal nic to your LAN.  Make sure there is no gateway on ISA's internal and DNS is set to you internal DNS servers.  The ISA external nic will have a dmz address, subnet and the address of the sonicwall's internal interface as the gateway...no DNS servers...netbios disabled as well.  Make sure you use the cmd and the route add command to add your internal networks.  

Anyway...  Shinder has a couple good books that tell you how to setup the ISA in detail.  Worth a look.

After ISA is setup...You should be able to then do all your filtering with the sonicwall and still gain the massive benefits of using ISA.
0
 

Expert Comment

by:OSLREP
ID: 22645263
Well done!
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Would an outbound ACL be an overkill? 3 82
CISCO ASA 5505 - strange behavior (Inside Interface down) 4 73
SRX240 SYSLOG Setting 6 112
Pfsense - and other email Servers 8 40
There are three types of ISA client that can be configured - these can be individual clients or multiples of a client on each PC or server SecureNAT. A SecureNAT client for ISA server is a client machine, work station or server, that has its defa…
We sought a budget ($5,000) firewall solution that would provide all the performance we needed with no single point of failure.  Hosting a SAAS web application in our datacenter, it was critical that we find a way to keep connectivity up and inbound…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
This Micro Tutorial demonstrates using Microsoft Excel pivot tables, how to reverse engineer competitors' marketing strategies through backlinks.

803 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question