Shijaz Abdulla is an ISA firewall MVP and maintains a great site over at www.shijaz.com. I found an interesting article he did on the top 12 configuration or design errors people do with the ISA firewall. These errors include:
- Using a single NIC or “hork” mode ISA firewall
- Incorrect default gateways on published servers
- Contradictory firewall rules
- IP addressing errors on the firewall’s NICs
- Installing services on the firewall that create port contention
- SMTP Fix-Up on a front end PIX
- FTP clients are unable to upload
- Windows Server 2003 SP2 and the Scalable Networking Pack
- Scheduling limitations
- Multiple default gateways on the firewall
- Wrong common name on Web site certificates bound to Web Listeners
- DNS server configured on multiple NICs on the firewall
Check out Shijaz’s full article for the details over at:
http://www.shijaz.com/isaserver/top_10_isa_blunders.htm
HTH,
Tom
Thomas W Shinder, M.D., MCSE
Sr. Consultant / Technical Writer
Prowess Consulting www.prowessconsulting.com
PROWESS CONSULTING documentation | integration | virtualization
Email: [email protected]
MVP — Forefront Edge Security (ISA/TMG/IAG)