×

Loading...

Topic

This topic has been archived. It cannot be replied.
  • 工作学习 / IT技术讨论 / 请教:刚装了microsoft ISA server,自以为很安全了,可是发现无法用outlook 收发pop/smtp邮件,不能上yahoo/msn messenger了。是怎么一回事?多谢!
    • up
      • permission!
        • 可以讲的具体一点吗?多谢!
          • 呵呵,看你最近的贴子,知道你和我做的一样。IT这东西要想做的广还是不容易的,经验,环境都是难得的,我们可以多多交流,加速自己的知识增长。另外就是去ms老窝看文档了,一般技术问题都有解答。
            • 好啊!你对ISA如何?今天看了一天的MS 的ISA 文档,还是没搞通!So poor!
              • 呵呵。别急。你以前是不是没多少实践经验?不过既然你是网管,自己手边至少有两台机器吧?多做实验。抓紧机会。我也不是精通所有的软件,能帮还是尽量帮你这个“颓废的酒鬼“的。习习习。
                • 老实说,我这个颓废的酒鬼为了省钱又有差不多2个月没怎么喝酒了。如果这次问题解决了,看来得小小的喝一点了!
    • "自以为很安全了" is very different from "无法用outlook 收发pop/smtp邮件,不能上yahoo/msn messenger". I will never put windows directly on the Internet without third party firewall software.
      To acheive the first one, you'll have to do thorough security audit using tools like nmap, nessus or commercial vulnerability scanner such as cybercop.

      The second one is connectivity issue. You'll need to use some kind of proxy server or NAT+packet filter.
      • ISA server is the update version of ms proxy server 2.0. Outlook/Y!/MSN are ok untill i installed the ISA.
        I guess as default, ISA disable most of the services for security reason, I enabled some to try to make it work, no luck.
        • I know it is an upgrade to proxy 2.0 ...
          But proxy 2.0 is hardly considered a firewall. Its packet filtering capability is very primitive. The worst thing is Proxy 2.0 does not support more than 2 NIC, making it impossible to implement DMZ. Hopefully things will change with ISA.

          If you just want to setup a firewall on windows, WinRoute is highly recommended. If you have basic firewall concept, it should be very easy to setup. The good thing is that WinRoute is very secure (it is an icsa-certified firewall package).

          I think the only advantage of ISA over other firewall software is its integration with active directory which makes it easier to control user right. I've never played with ISA so I could be wrong.
          • Thanks anyway! I'd like to try ISA anyway, 'cause we're going to deploy ISA at work.
          • anothing: what do u recommand if i wanna get some firewall concepts?
            • Refer to my previous post #90948.