Solved

Replacing UNIX / Clark Connect software with Windows 2003 Server

Posted on 2008-06-10
7
492 Views
Last Modified: 2008-06-13
Hello, I need information about Windows 2003...
I need to replace an unstable UNIX computer which runs Clark Connect software.  The purpose of this system is to take our static IP address and forward ports to the server (Exchange Email, (SMTP port 25), Outlook Web Access (port 443), and other port forwardings).  This Clark Connect system also handles our VPN and stores FTP files on the UNIX computer.
My question is:  Can our Windows 2003 server (which has 2 ethernet ports) do this instead?  Does Windows 2003 server have VPN software included?  If I plug in the static IP cable will email simply come in direct?  Are there any risks?
thank you!
0
Comment
Question by:nater11
  • 4
  • 3
7 Comments
 
LVL 37

Accepted Solution

by:
Bing CISM / CISSP earned 250 total points
ID: 21756815
> Can our Windows 2003 server (which has 2 ethernet ports) do this instead?

W2K3 can easily handle these tasks by using the built-in ICS frewall/gateway or Microsoft ISA server. ISA is recommended while other 3rd party gateway software also work well.

if using ICS, the internal network will have to use 192.168.0.0 subnet where the default gateway pointing to the W2K3 server at 192.168.0.1.

you need to enabled port-forwarding for each port mentioned above.

> Does Windows 2003 server have VPN software included?

> If I plug in the static IP cable will email simply come in direct?

yes, the same thing as before.

> Are there any risks?

do not reformat the UNIX box until every thing on the new W2K3 box works fine. just leave the UNIX box offline.

hope it helps,
bbao
0
 

Author Comment

by:nater11
ID: 21759232
What do you mean by internal network.... the network currently has all IPs of 192.168.1.1 - 192.168.1.254
Do i need to change the network?  When I plug the internet cable into the secondary ethernet port on the server I will get internet and all the PCs on the network will have internet (because they have that server as the default gateway (the server is 192.168.1.10)).

Where is the port forwarding setup?  somewhere in ICS???
0
 
LVL 37

Expert Comment

by:Bing CISM / CISSP
ID: 21767110
> What do you mean by internal network.... the network currently has all IPs of 192.168.1.1 - 192.168.1.254

the network behind the firewall (your old UNIX box).

yes, the current IP schema should be changed to 192.168.0.1 - 192.168.0.254. if the client computers are using DHCP, it will not be a hard work.

> Do i need to change the network?

as i mentioned, the IPs shoudl be changed, but not the physical connections and not the topology.

> When I plug the internet cable into the secondary ethernet port on the server I will get internet and all the PCs on the network will have internet (because they have that server as the default gateway (the server is 192.168.1.10)).

if using ICS, the server will have to be 192.168.0.1. if using other software, such as ISA, you don't need to change IPs.

> Where is the port forwarding setup?
> somewhere in ICS???

at ICS's advanced settings.

How To Set Up Internet Connection Sharing in Windows Server 2003
http://support.microsoft.com/kb/324286

How to Configure Windows XP ICS for an Internal PPTP Server (it applies to 2003 too, you may use the same way to add SMTP/POP services etc.)
http://support.microsoft.com/kb/309524

hope it helps,
bbao
0
How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

 

Author Comment

by:nater11
ID: 21769435
Great, you've been a huge help so far and I think I can do it.   Some of my concerns are:
Changing all the IPs - the clients are all setup on DHCP, so thats ok.  Do I need to change my DHCP setting on the server to use the new 192.168.0.x IPs?
I'll need to hardcode all the printers to use the new IPs, I can do that and change it on the server.
We have another server here that only does on task - it's a Quantum server and I'll need to change the IP...  i'm a little worried about this one.
Anything else I need to know before I make the change over?
thank you BBAO!

p.s. i'd use MS ISA but it looks to be $1500!!!
0
 

Author Comment

by:nater11
ID: 21770072
And also, how will the VPN work?  I'm hoping (and this will determine whether I make the change over) that it will be windows based, hoping it will be setup on a PC with "network connections" creating a VPN connection.

thanks again
0
 

Author Comment

by:nater11
ID: 21770347
And another thing.... i read on the ICS link:

CAUTION: Before proceeding with the procedures in this article, note the following points: " Do not use ICS on a network that:

" Uses static IP addresses
" Has a Windows Server 2003 domain controller
" Uses other DNS servers, gateways, or DHCP servers
 

- We do use a Domain on our network, so are we violating the second rule "Has a Windows Server 2003 domain controller"???
0
 
LVL 37

Expert Comment

by:Bing CISM / CISSP
ID: 21774662
> are we violating the second rule "Has a Windows Server 2003 domain controller"???

what's the DNS setting of your client computers? pointing to your domain server or the existing UNIX box? what's the type of your domain? NT4, W2K or W2K3?

> how will the VPN work?

W2K3 has built-in VPN server support, for both Dail-in-VPN and site-to-site VPN. but i am afraid that it would *not*be compatible with your existing VPN on the UNIX box. however, i speculate it should not be a big issues, as your remote Windows computers can easily switch to the new W2K3 VPN. e.g. W2K/XP/Vista all has built-in VPN support.

hope it helps,
bbao
0

Featured Post

How to improve team productivity

Quip adds documents, spreadsheets, and tasklists to your Slack experience
- Elevate ideas to Quip docs
- Share Quip docs in Slack
- Get notified of changes to your docs
- Available on iOS/Android/Desktop/Web
- Online/Offline

Join & Write a Comment

This is the first one of a series of articles I’ll be writing to address technical issues that are always referred to as network problems. The network boundaries have changed, therefore having an understanding of how each piece in the network  puzzl…
I'm a big fan of Windows' offline folder caching and have used it on my laptops for over a decade.  One thing I don't like about it, however, is how difficult Microsoft has made it for the cache to be moved out of the Windows folder.  Here's how to …
It is a freely distributed piece of software for such tasks as photo retouching, image composition and image authoring. It works on many operating systems, in many languages.
This video demonstrates how to create an example email signature rule for a department in a company using CodeTwo Exchange Rules. The signature will be inserted beneath users' latest emails in conversations and will be displayed in users' Sent Items…

759 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now