Prev | Current Page 390 | Next

Jesse Varsalone and Jan Kanclirz Jr.

"Microsoft Forefront Security Administration Guide"

Therefore, you will
need to open the services and protocols you want to enable in rules ahead of this last
rule so that they are passed by ISA Server. When the fi rewall rule engine gets to the
last rule, if the traffi c has not matched any rules yet it will be dropped.
Wizards allow you to easily open traffi c into and out of your network. One of
the fi rst things you will need to do here after setting up ISA Server as your perimeter
fi rewall is to create a rule that allows some common protocols from your internal
network out to the Internet. To do this, follow these steps:
1. Click Create Access Rule in the Task pane on the right.
2. Enter a name for the rule, for example Outbound Connection, and
click Next.
3. Since we want this rule to allow traffi c that matches to pass through the
fi rewall, select Allow and click Next.
4. Leave the Selected Protocols option selected, and click Add.
5. ISA Server will provide you with protocols grouped into various categories
to make it easy to fi nd the ones you wish to add. You can fi nd the ones we
will select in the Common Protocols category. Either select and then click
Add or simply double-click HTTP and HTTPS to add them. Click Close
and then click Next.
6. On the Access Rule Sources screen, click Add. Then use the dialog box
to add the Internal network. Click Close, and then click Next.
7. On the Access Rule Destination screen, click Add. Then use the dialog
box to add the External network.


Pages:
378 379 380 381 382 383 384 385 386 387 388 389 390 391 392 393 394 395 396 397 398 399 400 401 402