Home > Ask the Microsoft Exchange Experts > Archive: Server Administration Questions & Answers > Setting up ISA servers
Ask The Exchange Expert: Questions & Answers
EMAIL THIS

Setting up ISA servers

EXPERT RESPONSE FROM: Archive

Pose a Question
Other Exchange Categories
Meet all Exchange Experts
Become an Expert for this site


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


>
QUESTION POSED ON: 08 June 2004
I currently have my front-end OWA/IMAP servers and my SMTP servers in our DMZ behind a Cisco PIX firewall. It has been recommended that I set up ISA servers to sit in the DMZ and place the front-end servers behind the inside firewall. This is supposed to cut down the number of ports that we will be required to open on the inside firewall for these servers to speak with DNS, Active Directory as well as the back-end servers. The Cisco administrator has told me that ISA seems to be simply a software firewall/VPN server/web caching, and as such we would be better served either using NAT, or adding a third PIX into the DMZ. Are there any specific application level benefits of using ISA to secure Exchange communication in addition to using a hardware firewall, or is ISA supposed to be used as a standalone firewall?

>
You can use Microsoft ISA Server as a standalone firewall, and you can also use it to publish Exchange resources (e.g., OWA, SMTP, IMAP4, POP3, RPC over HTTP). But because an Exchange front-end server needs to communicate with Active Directory before it can proxy a client request to a back-end server, most folks prefer to not put the front-end server in a DMZ. Instead, most folks will open a port on their firewall and direct it to one or more front-end servers inside the network. This would mean you only have to open a single port per protocol (e.g., 443 for HTTPS, 993 for IMAPS and 25 for SMTP).


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



RELATED CONTENT
Archive: Server Administration
Duplicate public folders multiplying out of control
Mailbox store mounting problems
Send/Receive errors with Exchange Server 2003 SP1
The difference between backups and archives
Exchange server being used as an open relay
Best practice for getting mail from ISP to SBS/Exchange 2003
Can't log into OWA using Exchange 5.5 domain name
Creating a hot swappable backup file for Exchange
Disallow viewing of other users' inboxes in Exchange 2000
Save all users' mailboxes as .PST files

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary



Search and Browse the Expert Answer Center
Search and browse more than 25,000 question and answer pairs from more than 250 TechTarget industry experts.
Browse our Expert Advice



Outlook Web Access (OWA) Tips and Advice
HomeNewsTopicsITKnowledge ExchangeTipsAsk the ExpertsMultimediaWhite PapersIT Downloads
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2004 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts