Solved

Multiple SSL Sites on ISA 2004

Posted on 2008-10-20
3
365 Views
Last Modified: 2012-06-22
Hi there,

quick question. we are currently running an ISA 2004 server which has Outlook Web Access setup with a listener on port 443 for SSL. it is using a certificate from a local CA.

we recently implemented Sharepoint into our environment and i was requested to setup a portal for external users. i have set it all up and we used a signed certificate from thawte.

is it possible to have 2 listeners on ISA for SSL to Port 443 over 2 different IP's on the external NIC? or will i have to scrap both certificates and request a wildcard certificate from thawte?

i am able to make both work, only one at a time though.

Thanks,
Jonathon
0
Comment
Question by:workskil
  • 2
3 Comments
 
LVL 51

Accepted Solution

by:
Keith Alabaster earned 500 total points
ID: 22764562
Perfectly acceptable.

Add the 2nd ip address on ISA's external interface. at the OS level in the tcpip settings. (obviously make sure your external devices pass this ip through to the ISA external nic....)
open the ISA gui and edit youir OWA rule
in the interfaces (to/From) section, where you selected External,you will now see the addresses button is not greyed out. Select the specific IP address that OWA should be listened for.

Now you can perform your sharepoint rule and when you select external for the listening interface, go into addresses and select the 2nd ip address.

Keith
0
 

Author Comment

by:workskil
ID: 22764641
thanks for that.

just confirmed my thinkings.

now to setup the 2nd ip on the hardware firewall and test.

cheers,
Jonathon
0
 
LVL 51

Expert Comment

by:Keith Alabaster
ID: 22764716
:)
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

I have been asked to explain on many, many occasions the correct way to setup network cards and DNS settings on ISA Server 2004, 2006 and forefront Threat management gateway (FTMG) and have willing done so. I have also promised my self everytime tha…
Since pre-biblical times, humans have sought ways to keep secrets, and share the secrets selectively.  This article explores the ways PHP can be used to hide and encrypt information.
In a recent question (https://www.experts-exchange.com/questions/28997919/Pagination-in-Adobe-Acrobat.html) here at Experts Exchange, a member asked how to add page numbers to a PDF file using Adobe Acrobat XI Pro. This short video Micro Tutorial sh…
Email security requires an ever evolving service that stays up to date with counter-evolving threats. The Email Laundry perform Research and Development to ensure their email security service evolves faster than cyber criminals. We apply our Threat…

809 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question