?
Solved

I need to disable proxy for a subnet, ISA don't care about my setting

Posted on 2008-06-13
2
Medium Priority
?
323 Views
Last Modified: 2008-11-17
Hi!

Im running ISA 2006 with a IPSec tunnel to a branch with a Linksys VPN Router. Tunnel works great but when I tries to reach a HTTP service at the branch I get a 500 error.
When I look at the logging in ISA I can se that the client now has become the public interface on ISA server, I can figure why its not working ;-)

I have tried to type in the branchoffice subnet in internal network properties but still no luck. I have also tried to create a "second" HTTP protocol without the Web filter but it doesn't work.

If I disable Web filter on the original HTTP protocol this works like charm but I guess you wouldn't like to do that...

Please help I'm panic over here!

/Henning
0
Comment
Question by:hpea
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 6

Expert Comment

by:Nyah247
ID: 21778874
This is for a DLINK...  But includes a setup description.  I would definitely recheck your configuration...especially your firewall rule set.

http://www.isaserver.org/articles/2004isadlink.html

Any access denied messages in the ISA logs?
0
 

Accepted Solution

by:
hpea earned 0 total points
ID: 21783098
The solution to my problem was to add a new protocol (eg a second HTTP protocol) with Web Proxy Filter unchecked. Add a new allow rule for the new protocol and then below add a second rule for deny of the original HTTP protocol. After that everything works lika a charm!
0

Featured Post

Four New Appliances. Same Industry-leading Speeds.

But don't take it from us.  The Firebox M370 is Miercom tested and Miercom approved, outperforming its competitors for stateless and stateful traffic throughput scenarios.  Learn more about the M370, M470, M570 and M670 and find the right solution for your organization today!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Juniper VPN devices are a popular alternative to using Cisco products. Last year I needed to set up an international site-to-site VPN over the Internet, but the client had high security requirements -- FIPS 140. What and Why of FIPS 140 Federa…
How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Windows 10 is mostly good. However the one thing that annoys me is how many clicks you have to do to dial a VPN connection. You have to go to settings from the start menu, (2 clicks), Network and Internet (1 click), Click VPN (another click) then fi…

770 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question