How to denied the connection of Anouymous on ISA 2004?
there many allowed connections pass through denied rule. how can happen?
anyway block these?
i tried create denied rule user set "anonymous", didn't work. of connections connecting destination ip 443 port.
apparently cannot move thread, should in http://social.technet.microsoft.com/forums/en-us/home?forum=forefrontedgegeneral
anyways, need @ logs , identify rule allows traffic have rule allows it. important understand isa (or tmg matter) not allow traffic unless explicitly allowed. if there no rules, no traffic allowed (apart allowed , isa host in order function).
live logging friend, reproduce traffic should denied , filter source ip , @ rule allows it.
some common issues/reasons rules not being processed expected
- order of rules (isa/tmg starts rule #1 , moves down list)
- incorrect source/destination
- incorrect protocol used
- incorrect user set specified
all of these has match before rule applied, if 1 of elements of rule not apply, rule processed particular traffic. of reasons of above can come fact other parts of configuration wrong, instance ip ranges belongs internal network etc.
to answer question of how happens, risk of being blunt, deny rule incorrectly configured , not match request supposed denied. there little information in post me tell how configure rule.
hth, anders janson enfo zipper
Windows Server > Security
Comments
Post a Comment