Networking Forums

Networking Forums > Computer Networking > Windows Networking > network advice

Reply
Thread Tools Display Modes

network advice

 
 
t
Guest
Posts: n/a

 
      10-04-2004, 06:14 PM
Hi All,

I have network of one server AD, windows 2003 with 2 NIC, 3 heavy duty high end 24 port switches, few regular 8 port switches. 90 workstations, 1 router 4 ports (low end 1).
The current setting as follow:

|
[switch]-----[server] (windows 2003, AD)
|
[router] (DNS, DHCP)-----------[server 2nd NIC]
| | |
[3 switches]
|
[workstations](win xp, 2000, nt4, win98)

some PC with manual IP config (no gateway) no internet access
some PC with Dynamic IP, so have internet access.

now company has bought ISA and want to control internet access with ISA, I still feel there is something wrong with current configuration.
any suggestions.

Thanks

Tim
 
Reply With Quote
 
 
 
 
Robert L [MS-MVP]
Guest
Posts: n/a

 
      10-04-2004, 07:40 PM
1. it is not recommended install AD on a multihomed computer, so you may
want to add another server.
2. All switches and computers should be behind ISA

--
For more and other information, go to http://www.ChicagoTech.net

Don't send e-mail or reply to me except you need consulting services.
Posting on MS newsgroup will benefit all readers and you may get more help.

Robert Lin, MS-MVP, MCSE & CNE
Networking, Internet, Routing, VPN, Anti-Virus, Tips & Troubleshooting on
http://www.ChicagoTech.net
This posting is provided "AS IS" with no warranties.

"t" <(E-Mail Removed)> wrote in message news:%(E-Mail Removed)...
Hi All,

I have network of one server AD, windows 2003 with 2 NIC, 3 heavy duty high
end 24 port switches, few regular 8 port switches. 90 workstations, 1 router
4 ports (low end 1).
The current setting as follow:

|
[switch]-----[server] (windows 2003, AD)
|
[router] (DNS, DHCP)-----------[server 2nd NIC]
| | |
[3 switches]
|
[workstations](win xp, 2000, nt4, win98)

some PC with manual IP config (no gateway) no internet access
some PC with Dynamic IP, so have internet access.

now company has bought ISA and want to control internet access with ISA, I
still feel there is something wrong with current configuration.
any suggestions.

Thanks

Tim


 
Reply With Quote
 
t
Guest
Posts: n/a

 
      10-04-2004, 11:11 PM
Hi Robert,

adding another server is not an option, I agree that all switches and
computers should be behind ISA.
the problem I have is DNS setting on the router only, that makes DC confused
to find any computer to apply policy.
any recommendation.

Tim

"Robert L [MS-MVP]" <(E-Mail Removed)> wrote in message
news:%(E-Mail Removed)...
> 1. it is not recommended install AD on a multihomed computer, so you may
> want to add another server.
> 2. All switches and computers should be behind ISA
>
> --
> For more and other information, go to http://www.ChicagoTech.net
>
> Don't send e-mail or reply to me except you need consulting services.
> Posting on MS newsgroup will benefit all readers and you may get more

help.
>
> Robert Lin, MS-MVP, MCSE & CNE
> Networking, Internet, Routing, VPN, Anti-Virus, Tips & Troubleshooting on
> http://www.ChicagoTech.net
> This posting is provided "AS IS" with no warranties.
>
> "t" <(E-Mail Removed)> wrote in message

news:%(E-Mail Removed)...
> Hi All,
>
> I have network of one server AD, windows 2003 with 2 NIC, 3 heavy duty

high
> end 24 port switches, few regular 8 port switches. 90 workstations, 1

router
> 4 ports (low end 1).
> The current setting as follow:
>
> |
> [switch]-----[server] (windows 2003, AD)
> |
> [router] (DNS, DHCP)-----------[server 2nd NIC]
> | | |
> [3 switches]
> |
> [workstations](win xp, 2000, nt4, win98)
>
> some PC with manual IP config (no gateway) no internet access
> some PC with Dynamic IP, so have internet access.
>
> now company has bought ISA and want to control internet access with ISA, I
> still feel there is something wrong with current configuration.
> any suggestions.
>
> Thanks
>
> Tim
>
>



 
Reply With Quote
 
Bill Grant
Guest
Posts: n/a

 
      10-05-2004, 02:56 AM
If you want to use ISA to regulate Internet access, the server will need
to be the gateway between your LAN and the Internet, with one NIC linked to
the LAN and the other to the Internet. The server cannot regulate the
Internet traffic if LAN clients can access the router directly.

The server would need to take over the DNS and DHCP service for the LAN
machines. You can either drop the router from the config altogether (and
connect the ISA server directly to the Internet), or set up a link between
the router and the server's "public" NIC using a different subnet from the
LAN machines.

"t" <(E-Mail Removed)> wrote in message news:(E-Mail Removed)...
> Hi Robert,
>
> adding another server is not an option, I agree that all switches and
> computers should be behind ISA.
> the problem I have is DNS setting on the router only, that makes DC
> confused
> to find any computer to apply policy.
> any recommendation.
>
> Tim
>
> "Robert L [MS-MVP]" <(E-Mail Removed)> wrote in message
> news:%(E-Mail Removed)...
>> 1. it is not recommended install AD on a multihomed computer, so you may
>> want to add another server.
>> 2. All switches and computers should be behind ISA
>>
>> --
>> For more and other information, go to http://www.ChicagoTech.net
>>
>> Don't send e-mail or reply to me except you need consulting services.
>> Posting on MS newsgroup will benefit all readers and you may get more

> help.
>>
>> Robert Lin, MS-MVP, MCSE & CNE
>> Networking, Internet, Routing, VPN, Anti-Virus, Tips & Troubleshooting on
>> http://www.ChicagoTech.net
>> This posting is provided "AS IS" with no warranties.
>>
>> "t" <(E-Mail Removed)> wrote in message

> news:%(E-Mail Removed)...
>> Hi All,
>>
>> I have network of one server AD, windows 2003 with 2 NIC, 3 heavy duty

> high
>> end 24 port switches, few regular 8 port switches. 90 workstations, 1

> router
>> 4 ports (low end 1).
>> The current setting as follow:
>>
>> |
>> [switch]-----[server] (windows 2003, AD)
>> |
>> [router] (DNS, DHCP)-----------[server 2nd NIC]
>> | | |
>> [3 switches]
>> |
>> [workstations](win xp, 2000, nt4, win98)
>>
>> some PC with manual IP config (no gateway) no internet access
>> some PC with Dynamic IP, so have internet access.
>>
>> now company has bought ISA and want to control internet access with ISA,
>> I
>> still feel there is something wrong with current configuration.
>> any suggestions.
>>
>> Thanks
>>
>> Tim
>>
>>

>
>



 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Advice? Upgrading an 802.11b Network Arthur Shapiro Wireless Internet 1 06-14-2007 03:13 AM
need advice for setting up network fred Network Routers 2 12-18-2005 02:30 AM
Advice on network type JB Wireless Networks 1 10-07-2005 02:26 PM
New network advice please Steveb Wireless Internet 2 12-27-2003 05:12 PM
Wireless network - advice please. Les Desser Broadband 12 11-16-2003 07:29 AM



1 2 3 4 5 6 7 8 9 10 11