Solved

MS ISA 2006 blocking outbound https connections

Posted on 2009-03-28
4
867 Views
Last Modified: 2012-05-06
I have three ISA servers, all in workgroup mode for my three offices, two of my offices can browse to HTTPS sites with no problem, one however cannot, ISA is blocking outbound HTTPS traffic for some reason, i have compared all my rule sets between the three and can find no differences.

not sure where to go from here as this is really stumping me
0
Comment
Question by:HHRSS2008
  • 3
4 Comments
 
LVL 1

Author Comment

by:HHRSS2008
ID: 24011506
my first rule in my list is to allow all HTTP and HTTPS traffic from internal to external btw.
0
 
LVL 14

Expert Comment

by:Raj-GT
ID: 24012725
What are you seeing on ISA Loggin tab?
0
 
LVL 1

Author Comment

by:HHRSS2008
ID: 24012764
well, as an example

log time        DEstination IP        Destination Port          Protocol        ACtion        Rule  client IP Source and DEstination

so, this is a line from my trace log

3/29/2009 10:00am  65.55.13.62     443  HTTPS  Initiated Connection Internet 192.168.50.198 Internal External

3/29/2009 10:00am  65.55.13.62     443  HTTPS  Closed Connection Internet 192.168.50.198 Internal External

3/29/2009 10:00am  65.55.13.62     443  HTTPS  Denied Connection Internet 192.168.50.198 Internal External

yet, my two other ISA servers are working just fine allowing access to HTTPS sites. and I cannot see anything different about their internet access rules,

my Internet rule mentioned in the log entry above is simple, allow all protocols from all networks including local host to all networks including local host, I did that to try to figure out why ISA is not passing HTTPS.

and it still wont pass HTTPS connections out to the internet.



0
 
LVL 1

Accepted Solution

by:
HHRSS2008 earned 0 total points
ID: 24012983
Ah, so I figured it out!


stupid Websense even when the filter addon is disabled it still blocks HTTPS!!! nothing else, just HTTPS.

a bug I wonder????
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Forefront TMG URL mapping for internal website pages 3 202
Permission Issue 1 259
Alternatives to replacing ISA forefront server for URL redirect 6 463
ForFront TMG Server Error 8 100
In Africa (and potentially where you live…), reliability of ISPs is questionable.  With the increased reliance on e-mail as one of the primary forms of communication, the costs to business are significant based on interuption of ISP Connectivity.  T…
There are several problems reported according slow link speeds or poor performance in TMG 2010, UAG 2010 or ISA 2006. I want to collect here some of the common issues together to give a brief overview what can be the reason. Nevertheless, not all of…
Internet Business Fax to Email Made Easy - With eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…
Sending a Secure fax is easy with eFax Corporate (http://www.enterprise.efax.com). First, just open a new email message. In the To field, type your recipient's fax number @efaxsend.com. You can even send a secure international fax — just include t…

863 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

20 Experts available now in Live!

Get 1:1 Help Now