350 likes | 485 Views
ISA Server 2004. Installation & Configuration Overview. By Nicholas Quinn. This presentation will detail the following 3 steps. The Installation of ISA Server 2004 The Configuration of an Allow Policy The Configuration of a Deny Policy. Step 1 – Install ISA Server. Begin the Installation.
E N D
ISA Server 2004 Installation & Configuration Overview By Nicholas Quinn
This presentation will detail the following 3 steps. • The Installation of ISA Server 2004 • The Configuration of an Allow Policy • The Configuration of a Deny Policy
Begin the Installation • Insert ISA CD and double click ICON. • The Installation Wizard will open • Agree to the licensing agreement • Enter your Customer Information
Select Setup Type • Select to install a Custom setup • Select the Firewall Client Installation Share option • And Install this feature on the local hard drive
Configure Internal NIC • Click Add to specify internal address ranges • Select Internal under Network Adapter • Click Select Network Adapter and choose the IP range required
Finish Installation • ISA’s Installation Wizard will now install your configuration • ISA Server 2004 is now installed • The Next Step is to configure your allow policy
Enable ICMP • Click on Firewall Policy • Click on Create New Access Rule • Find ICMP in the list • Make sure the Enable check box is selected • Click on the Form tab
Add Internal NIC • Click the Add button to add the Internal NIC • Expand Networks • Highlight the Internaloption and click Add • Make sure you click the Applybutton
Create the Network • Select the Networks option from the list • Click the Networkstab • Highlight the Internal option • Right Click and select properties
Configure IP Range • Click the Addressestab • Click the Remove button to remove any addresses • Click Add • Select Internal Network Adapter
Apply IP Range Configuration • Your IP address range will appear automatically • If it is correct click the Apply tab
Setup Internet Access • Click on the Web Chaining tab • Click the Create New Web Chaining Rule option • Name the New WebChaining Rule
Select Destination • On the Web Chaining Rule Destinationpage clickAdd • Highlight External and click Add • Click Next
Configure Proxy Server • Select Redirect Requests to a Specified Upstream Server • Click Next
Configure Proxy Server • Enter the IP address of the server • Change the Port number to 80 instead of 8080 • the SSL Portnumber to 443 instead of 8443
Configure Backup Action • Select Ignore Requestunder the heading When the Primary Route is Unavailable • Click Finish • Make sure you click the Applybutton
Firewall Policy • Expand icon next to the word Server • Select the Firewall Policy option • Select the Create New Access Rule • Enter a name for the rule • Select Allow
Configure Access Rule Source • Select All Outbound Traffic click Next • Click Add • Expand Networks • Highlight Internal then click Add • Repeat the previous step and select External
Configure User Sets • Select all users • Click Next • Click Finish • Make sure you click the Applybutton
Configure IP Address • Open Network Connections and Properties • Configure the IP address and the Subnet Mask • The Preferred DNS Server must be the IP address of the Exchange Server
Connect to the Domain • Right click on My Computer and select Properties • Click on the Computer Name tab • Click Change • Enter Domain Name • Change Primary DNS to Domain name
Configure ISA Server • Open ISA Server • Select Firewall Policy • Create New Access Rule • Name the New Access Rule • Click Deny
Select Protocol • Select the Selected Protocols option • Expand the Common Protocols folder • Highlight HTTPS to block a webpage • Click Add • Click Close
Configure Access Rule Source • Add Network Entities • Expand Networks • Highlight Internal and click Add • Highlight Local Host and click Add • Click Close
Access Rule Destination • On the Access Rule Destinations screen click Add • Click New and Select URL Set
Configure URL Set • Enter the name of the website you wish to block • Click New • Enter the address of the website • Click Ok
Add Network Entities • Expand URL Sets • Highlight Google • Click Add • Click Close
Create User Set • Highlight All Users and click Remove • Click Add • On the URL Sets screen click New • Name the User Set • Click Next
Add Users Sets to Block • On the Users screen click Add and Select Windows User and Groups • Click Locations • Enter the Administrator account User Name and Password
Find Users to Block • Expand Entire Directory • Expand the domain that the users are in • Select the required organisational unit • Click Ok
Select Users to Block • Enter the user name you wish to block • Click Check Names • The full name should appear • Click Ok • Check information • Click Ok
Add User Set • On the Add Users screen highlight the group you have created and click Add • Click Next • Click Finish • Make sure you click the Applybutton