Tài liệu hạn chế xem trước, để xem đầy đủ mời bạn chọn Tải xuống
1
/ 30 trang
THÔNG TIN TÀI LIỆU
Thông tin cơ bản
Định dạng
Số trang
30
Dung lượng
277,51 KB
Nội dung
Appendix C ISA UPGRADE LOG 603
ISA Upgrade: Applies always - TRUE
ISA Upgrade: Upgraded successfully
ISA Upgrade: Rule#2
ISA Upgrade: Name - Proxy2.0 Allow all
ISA Upgrade: Description - Allows access to sites, as specified by Microsoft Proxy 2.0 domain
filters. Created as part of migration process
ISA Upgrade: Redirect URL -
ISA Upgrade: Action - Permit access to the requested web page
ISA Upgrade: Enabled - TRUE
ISA Upgrade: Applies to content method type - Rule applies to all types of content
ISA Upgrade: Applies to destination - All destinations
ISA Upgrade: Applies to method - All requests regardless of origin
ISA Upgrade: Applies always - TRUE
ISA Upgrade: Upgraded successfully
ISA Upgrade: Upgrade of ISAServer rules from Proxy2.0 domain filters succeeded
ISA Upgrade: —-Upgrading dial-on-demand schedule
ISA Upgrade: No items to upgrade
ISA Upgrade: —-Upgrading Routing Rules
ISA Upgrade: No items to upgrade
ISA Upgrade: —-Upgrading Publishing Rules
ISA Upgrade: No items to upgrade
ISA Upgrade: —-Upgrading alerts
ISA Upgrade: WARNING: Alert Disk Full was removed from ISA and is not migrated
ISA Upgrade: Alert#1
ISA Upgrade: Enabled - TRUE
ISA Upgrade: Event GUID - {FFFF8E96-94EC-11D2-AF53-00E02C069419}
ISA Upgrade: Description - IP packet was dropped according to specified policy.
ISA Upgrade: Server name -
ISA Upgrade: Additional key - -1
ISA Upgrade: Events per second - 20
ISA Upgrade: Minutes before reraise - 5
ISA Upgrade: Events before raise - 0
ISA Upgrade: Name - IP packet dropped
ISA Upgrade: User name -
ISA Upgrade: Alert action name - LogEvent
ISA Upgrade: Alert action type - Log event to System Event Log
ISA Upgrade: Alert action name - SendMail
ISA Upgrade: Alert action type - Send Mail message
ISA Upgrade: SERVER=fredf
ISA Upgrade: TO=rb@fredf.com
ISA Upgrade: CC=
ISA Upgrade: FROM=proxy@fredf.com
ISA Upgrade: Upgraded successfully
ISA Upgrade: Alert#2
ISA Upgrade: Enabled - TRUE
ISA Upgrade: Event GUID - {FFFF8E97-94EC-11D2-AF53-00E02C069419}
ISA Upgrade: Description - A packet with invalid IP options was detected and the packet
dropped.
ISA Upgrade: Server name -
ISA Upgrade: Additional key - -1
ISA Upgrade: Events per second - 1
ISA Upgrade: Minutes before reraise - 1
ISA Upgrade: Events before raise - 0
ISA Upgrade: Name - IP Protocol violation
ISA Upgrade: User name -
continues
30 mcse XC 6/5/01 12:27 PM Page 603
Please purchase PDF Split-Merge on www.verypdf.com to remove this watermark.
604 Appendix C ISA UPGRADE LOG
ISA Upgrade: Alert action name - LogEvent
ISA Upgrade: Alert action type - Log event to System Event Log
ISA Upgrade: Alert action name - SendMail
ISA Upgrade: Alert action type - Send Mail message
ISA Upgrade: SERVER=fredf
ISA Upgrade: TO=rb@fredf.com
ISA Upgrade: CC=
ISA Upgrade: FROM=proxy@fredf.com
ISA Upgrade: Upgraded successfully
ISA Upgrade: Upgrade of alerts succeeded
ISA Upgrade: Upgrading packet filters
ISA Upgrade: Packet Filter#1
ISA Upgrade: Name - DNS filter
ISA Upgrade: Description -
ISA Upgrade: Enabled - TRUE
ISA Upgrade: All servers - TRUE
ISA Upgrade: Server name -
ISA Upgrade: Filter mode - Allow the packets to pass
ISA Upgrade: Filter type - DNS lookup predefined static filter
ISA Upgrade: Protocol number - 17
ISA Upgrade: Direction type - Send Receive directions (in and out)
ISA Upgrade: Local port type - Any port
ISA Upgrade: Local port number - 0
ISA Upgrade: Remote port type - Fixed port (followed by port number)
ISA Upgrade: Remote port number - 53
ISA Upgrade: ICMP type - Any ICMP type
ISA Upgrade: ICMP type number - 0
ISA Upgrade: ICMP code - Any ICMP code
ISA Upgrade: ICMP code number - 0
ISA Upgrade: Local host type - No host specified (default external IP address)
ISA Upgrade: Local host IP address - 0.0.0.0
ISA Upgrade: Local host IP mask -
ISA Upgrade: Remote host type - Any host possible
ISA Upgrade: Remote host IP address - 0.0.0.0
ISA Upgrade: Remote host IP mask -
ISA Upgrade: Log matching packets - FALSE
ISA Upgrade: Upgraded successfully
ISA Upgrade: Packet Filter#2
ISA Upgrade: Name - ICMP outbound
ISA Upgrade: Description -
ISA Upgrade: Enabled - TRUE
ISA Upgrade: All servers - TRUE
ISA Upgrade: Server name -
ISA Upgrade: Filter mode - Allow the packets to pass
ISA Upgrade: Filter type - ICMP outbound predefined static filter
ISA Upgrade: Protocol number - 1
ISA Upgrade: Direction type - Out direction
ISA Upgrade: Local port type - Any port
ISA Upgrade: Local port number - 0
ISA Upgrade: Remote port type - Any port
ISA Upgrade: Remote port number - 0
ISA Upgrade: ICMP type - Any ICMP type
ISA Upgrade: ICMP type number - 0
ISA Upgrade: ICMP code - Any ICMP code
ISA Upgrade: ICMP code number - 0
ISA Upgrade: Local host type - No host specified (default external IP address)
continued
30 mcse XC 6/5/01 12:27 PM Page 604
Please purchase PDF Split-Merge on www.verypdf.com to remove this watermark.
continues
Appendix C ISA UPGRADE LOG 605
ISA Upgrade: Local host IP address - 0.0.0.0
ISA Upgrade: Local host IP mask -
ISA Upgrade: Remote host type - Any host possible
ISA Upgrade: Remote host IP address - 0.0.0.0
ISA Upgrade: Remote host IP mask -
ISA Upgrade: Log matching packets - FALSE
ISA Upgrade: Upgraded successfully
ISA Upgrade: Packet Filter#3
ISA Upgrade: Name - ICMP ping response (in)
ISA Upgrade: Description -
ISA Upgrade: Enabled - TRUE
ISA Upgrade: All servers - TRUE
ISA Upgrade: Server name -
ISA Upgrade: Filter mode - Allow the packets to pass
ISA Upgrade: Filter type - ICMP ping response predefined static filter
ISA Upgrade: Protocol number - 1
ISA Upgrade: Direction type - In direction
ISA Upgrade: Local port type - Any port
ISA Upgrade: Local port number - 0
ISA Upgrade: Remote port type - Any port
ISA Upgrade: Remote port number - 0
ISA Upgrade: ICMP type - Fixed ICMP type
ISA Upgrade: ICMP type number - 0
ISA Upgrade: ICMP code - Fixed ICMP code
ISA Upgrade: ICMP code number - 0
ISA Upgrade: Local host type - No host specified (default external IP address)
ISA Upgrade: Local host IP address - 0.0.0.0
ISA Upgrade: Local host IP mask -
ISA Upgrade: Remote host type - Any host possible
ISA Upgrade: Remote host IP address - 0.0.0.0
ISA Upgrade: Remote host IP mask -
ISA Upgrade: Log matching packets - FALSE
ISA Upgrade: Upgraded successfully
ISA Upgrade: WARNING: ICMP Ping Query packet filter is not migrated by design
ISA Upgrade: Packet Filter#4
ISA Upgrade: Name - ICMP timeout in
ISA Upgrade: Description -
ISA Upgrade: Enabled - TRUE
ISA Upgrade: All servers - TRUE
ISA Upgrade: Server name -
ISA Upgrade: Filter mode - Allow the packets to pass
ISA Upgrade: Filter type - ICMP timeout predefined static filter
ISA Upgrade: Protocol number - 1
ISA Upgrade: Direction type - In direction
ISA Upgrade: Local port type - Any port
ISA Upgrade: Local port number - 0
ISA Upgrade: Remote port type - Any port
ISA Upgrade: Remote port number - 0
ISA Upgrade: ICMP type - Fixed ICMP type
ISA Upgrade: ICMP type number - 11
ISA Upgrade: ICMP code - Any ICMP code
ISA Upgrade: ICMP code number - 0
ISA Upgrade: Local host type - No host specified (default external IP address)
ISA Upgrade: Local host IP address - 0.0.0.0
ISA Upgrade: Local host IP mask -
ISA Upgrade: Remote host type - Any host possible
30 mcse XC 6/5/01 12:27 PM Page 605
Please purchase PDF Split-Merge on www.verypdf.com to remove this watermark.
606 Appendix C ISA UPGRADE LOG
ISA Upgrade: Remote host IP address - 0.0.0.0
ISA Upgrade: Remote host IP mask -
ISA Upgrade: Log matching packets - FALSE
ISA Upgrade: Upgraded successfully
ISA Upgrade: Packet Filter#5
ISA Upgrade: Name - ICMP unreachable in
ISA Upgrade: Description -
ISA Upgrade: Enabled - TRUE
ISA Upgrade: All servers - TRUE
ISA Upgrade: Server name -
ISA Upgrade: Filter mode - Allow the packets to pass
ISA Upgrade: Filter type - ICMP unreachable predefined static filter
ISA Upgrade: Protocol number - 1
ISA Upgrade: Direction type - In direction
ISA Upgrade: Local port type - Any port
ISA Upgrade: Local port number - 0
ISA Upgrade: Remote port type - Any port
ISA Upgrade: Remote port number - 0
ISA Upgrade: ICMP type - Fixed ICMP type
ISA Upgrade: ICMP type number - 3
ISA Upgrade: ICMP code - Any ICMP code
ISA Upgrade: ICMP code number - 0
ISA Upgrade: Local host type - No host specified (default external IP address)
ISA Upgrade: Local host IP address - 0.0.0.0
ISA Upgrade: Local host IP mask -
ISA Upgrade: Remote host type - Any host possible
ISA Upgrade: Remote host IP address - 0.0.0.0
ISA Upgrade: Remote host IP mask -
ISA Upgrade: Log matching packets - FALSE
ISA Upgrade: Upgraded successfully
ISA Upgrade: Packet Filter#6
ISA Upgrade: Name - ICMP source quench
ISA Upgrade: Description -
ISA Upgrade: Enabled - TRUE
ISA Upgrade: All servers - TRUE
ISA Upgrade: Server name -
ISA Upgrade: Filter mode - Allow the packets to pass
ISA Upgrade: Filter type - ICMP source quench predefined static filter
ISA Upgrade: Protocol number - 1
ISA Upgrade: Direction type - In direction
ISA Upgrade: Local port type - Any port
ISA Upgrade: Local port number - 0
ISA Upgrade: Remote port type - Any port
ISA Upgrade: Remote port number - 0
ISA Upgrade: ICMP type - Fixed ICMP type
ISA Upgrade: ICMP type number - 4
ISA Upgrade: ICMP code - Fixed ICMP code
ISA Upgrade: ICMP code number - 0
ISA Upgrade: Local host type - No host specified (default external IP address)
ISA Upgrade: Local host IP address - 0.0.0.0
ISA Upgrade: Local host IP mask -
ISA Upgrade: Remote host type - Any host possible
ISA Upgrade: Remote host IP address - 0.0.0.0
ISA Upgrade: Remote host IP mask -
ISA Upgrade: Log matching packets - FALSE
ISA Upgrade: Upgraded successfully
continued
30 mcse XC 6/5/01 12:27 PM Page 606
Please purchase PDF Split-Merge on www.verypdf.com to remove this watermark.
Appendix C ISA UPGRADE LOG 607
ISA Upgrade: Packet Filter#7
ISA Upgrade: Name - Proxy2.0’s custom packet filter #1
ISA Upgrade: Description -
ISA Upgrade: Enabled - TRUE
ISA Upgrade: All servers - TRUE
ISA Upgrade: Server name -
ISA Upgrade: Filter mode - Allow the packets to pass
ISA Upgrade: Filter type - No predefined filter. See the custom filter options
ISA Upgrade: Protocol number - 6
ISA Upgrade: Direction type - Both directions (in and out)
ISA Upgrade: Local port type - Fixed port (followed by port number)
ISA Upgrade: Local port number - 21
ISA Upgrade: Remote port type - Any port
ISA Upgrade: Remote port number - 0
ISA Upgrade: ICMP type - Any ICMP type
ISA Upgrade: ICMP type number - 0
ISA Upgrade: ICMP code - Any ICMP code
ISA Upgrade: ICMP code number - 0
ISA Upgrade: Local host type - No host specified (default external IP address)
ISA Upgrade: Local host IP address -
ISA Upgrade: Local host IP mask -
ISA Upgrade: Remote host type - Any host possible
ISA Upgrade: Remote host IP address -
ISA Upgrade: Remote host IP mask -
ISA Upgrade: Log matching packets - TRUE
ISA Upgrade: Upgraded successfully
ISA Upgrade: Packet Filter#8
ISA Upgrade: Name - Proxy2.0’s custom packet filter #2
ISA Upgrade: Description -
ISA Upgrade: Enabled - TRUE
ISA Upgrade: All servers - TRUE
ISA Upgrade: Server name -
ISA Upgrade: Filter mode - Allow the packets to pass
ISA Upgrade: Filter type - No predefined filter. See the custom filter options
ISA Upgrade: Protocol number - 6
ISA Upgrade: Direction type - Both directions (in and out)
ISA Upgrade: Local port type - Fixed port (followed by port number)
ISA Upgrade: Local port number - 23
ISA Upgrade: Remote port type - Any port
ISA Upgrade: Remote port number - 0
ISA Upgrade: ICMP type - Any ICMP type
ISA Upgrade: ICMP type number - 0
ISA Upgrade: ICMP code - Any ICMP code
ISA Upgrade: ICMP code number - 0
ISA Upgrade: Local host type - No host specified (default external IP address)
ISA Upgrade: Local host IP address -
ISA Upgrade: Local host IP mask -
ISA Upgrade: Remote host type - Any host possible
ISA Upgrade: Remote host IP address -
ISA Upgrade: Remote host IP mask -
ISA Upgrade: Log matching packets - TRUE
ISA Upgrade: Upgraded successfully
ISA Upgrade: Upgrade of packet filters succeeded
ISA Upgrade: —-Upgrading log configuration
ISA Upgrade: Log#1
ISA Upgrade: Component type - Firewall log
continues
30 mcse XC 6/5/01 12:27 PM Page 607
Please purchase PDF Split-Merge on www.verypdf.com to remove this watermark.
608 Appendix C ISA UPGRADE LOG
ISA Upgrade: Log type - Logging W3C extended format to text log files
ISA Upgrade: Log period - one file per day
ISA Upgrade: Log field selection - 103022263
ISA Upgrade: Log enabled - TRUE
ISA Upgrade: Log files compress - TRUE
ISA Upgrade: Log file keep old - 0
ISA Upgrade: Log file directory - G:\WINNTNT\System32\msplogs
ISA Upgrade: Log database data source - db1
ISA Upgrade: Log database table name - Table1
ISA Upgrade: Log database user name -
ISA Upgrade: Log file directory type - The directory of the log files is specified as full path
ISA Upgrade: Upgraded successfully
ISA Upgrade: Log#2
ISA Upgrade: Component type - Web Proxy log
ISA Upgrade: Log type - Logging W3C extended format to text log files
ISA Upgrade: Log period - one file per day
ISA Upgrade: Log field selection - 3604407
ISA Upgrade: Log enabled - TRUE
ISA Upgrade: Log files compress - TRUE
ISA Upgrade: Log file keep old - 0
ISA Upgrade: Log file directory - G:\WINNTNT\System32\msplogs
ISA Upgrade: Log database data source - db1
ISA Upgrade: Log database table name - Table1
ISA Upgrade: Log database user name -
ISA Upgrade: Log file directory type - The directory of the log files is specified as full path
ISA Upgrade: Upgraded successfully
ISA Upgrade: Log#3
ISA Upgrade: Component type - Packet filters log
ISA Upgrade: Log type - Logging W3C extended format to text log files
ISA Upgrade: Log period - one file per day
ISA Upgrade: Log field selection - 895
ISA Upgrade: Log enabled - TRUE
ISA Upgrade: Log files compress - TRUE
ISA Upgrade: Log file keep old - 0
ISA Upgrade: Log file directory - G:\WINNTNT\System32\msplogs
ISA Upgrade: Log database data source - db1
ISA Upgrade: Log database table name - Table1
ISA Upgrade: Log database user name -
ISA Upgrade: Log file directory type - The directory of the log files is specified as full path
ISA Upgrade: Upgraded successfully
ISA Upgrade: Upgrade of log configuration succeeded
ISA Upgrade: Upgrading SSL Port List
ISA Upgrade: Tunnel port range#1
ISA Upgrade: Name - Range1
ISA Upgrade: Tunnel low port - 443
ISA Upgrade: Tunnel high port - 443
ISA Upgrade: Upgraded successfully
ISA Upgrade: Tunnel port range#2
ISA Upgrade: Name - Range2
ISA Upgrade: Tunnel low port - 563
ISA Upgrade: Tunnel high port - 563
ISA Upgrade: Upgraded successfully
ISA Upgrade: Upgrading of SSL Port List succeeded
ISA Upgrade: Upgrading cache configuration
ISA Upgrade: WARNING: Cache filters are not migraded by design
ISA Upgrade: Size limit enabled - FALSE
continued
30 mcse XC 6/5/01 12:27 PM Page 608
Please purchase PDF Split-Merge on www.verypdf.com to remove this watermark.
Appendix C ISA UPGRADE LOG 609
ISA Upgrade: Object size limit - 1
ISA Upgrade: Server protection enable - TRUE
ISA Upgrade: Server protect factor - 50
ISA Upgrade: Max protect time - 60
ISA Upgrade: Cache question URLs - FALSE
ISA Upgrade: Max URL Size - 12800
ISA Upgrade: WARNING: Enable Active Cache is always disabled by design
ISA Upgrade: Active caching policy - Avarege behavior
ISA Upgrade: FTP caching enabled - TRUE
ISA Upgrade: FTP TTL value - 1440
ISA Upgrade: HTTP caching enabled - TRUE
ISA Upgrade: Expiration policy - Avarege behavior
ISA Upgrade: Age factor - 20
ISA Upgrade: Minimum Time-to-Live interval - 1
ISA Upgrade: Maximum Time-to-Live interval - 15
ISA Upgrade: Upgrade of cache configuration succeeded
ISA Upgrade: WARNING: Socks are not migrated by design
continues
30 mcse XC 6/5/01 12:27 PM Page 609
Please purchase PDF Split-Merge on www.verypdf.com to remove this watermark.
30 mcse XC 6/5/01 12:27 PM Page 610
Please purchase PDF Split-Merge on www.verypdf.com to remove this watermark.
back-to-back perimeter network A network config-
uration in which two firewalls are used to create an
external network, a midground network (between the
two firewalls), and an internal network.
backup connection If the primary connection is
unavailable, the backup connection will be tried.
bandwidth priorities Policy elements that give a log-
ical indication of the relative amount of bandwidth.
bandwidth rules Rules that indicate the bandwidth
priority available.
Basic Authentication An authentication algorithm
that relies on the clear-text presentation of a password
or key. Here credentials are encoded, not encrypted.
bridging Requests from a Web client are bridged
across the interface of the firewall. In the case of SSL
bridging, the client SSL connection ends with the fire-
wall and a new SSL connection is made between the
firewall and the Web server.
Cache Array Routing Protocol (CARP) The algo-
rithm used by ISAServer to perform distributed
caching.
Caching mode The ISAServer mode that provides
Web caching and Web hosting. When the ISA Server
receives a Web request, it first attempts to provide the
response from its cache. If the necessary pages are not
available, the ISAServer makes the request for the
client and provides the response to the client as well as
placing the pages in its cache.
D
APPENDIX
Glossary
3-homed perimeter network A network configura-
tion in which the firewall has three network cards; one
for the internal, one for the external, and one for the
perimeter network.
active caching When objects are preconfigured to be
periodically downloaded from Web sites without corre-
sponding real-time requests they are said to be actively
cached. In active caching, the ISAServer refreshes the
cache on its own before the object expires.
Active Directory Schema The collection of classes
and attributes available in the Active Directory. This is
the metadata of the AD.
alias A substitute friendly name for a network
address. An email address can be an alias in a H.323
registration database.
all ports scan attack An attempt to access at more
than the configured number of ports (settable thresh-
old).
allocation priorities When a limited amount of
resources (money, people) is available, necessary func-
tions, upgrades, and repairs are prioritized and
resources allocated accordingly.
Array mode Array modes are similar to server instal-
lation modes. The first array of the enterprise is created
in the mode in which is first member is. Additional
arrays must choose an array mode: caching, firewall, or
integrated.
array policy Policies set at the Array level.
automatic discovery The process of finding the ISA
Server computer either thorough broadcast or using the
DHCP or DNS configuration.
31 mcse XD Glossary 6/5/01 12:29 PM Page 611
Please purchase PDF Split-Merge on www.verypdf.com to remove this watermark.
612 Appendix D GLOSSARY
destination sets A policy element that indicates a
group of IP addresses, which represent potential inter-
nal or external destinations.
DHCP Options DHCP can communicate to its
clients a number of options—pieces of information
such as router and WPAD location. The Server
Options page of the DHCP server console can be used
to specify these options.
dial-on-demand A process that dials the number
configured when access to that location is necessary.
dial-up entries Policy elements that define Windows
2000 dial-up networking elements available for use in
ISA Server.
Digest Authentication An authentication protocol
that compares the results of two one-way encryptions
over the same string. One of the digests is prepared by
the client, and one by the server. Because the same
algorithm is used over the same data, the resulting
digests should match. If they do, the client can be
authenticated. With Digest Authentication, credentials
are encrypted, and a message digest is used to validate
the credentials.
distributed caching The process of distributed
cached Web pages across multiple caching servers in an
array.
Distributed Component Object Model (DCOM)
A service that enables object communication across a
network from one computer to another.
distributed file system service A Windows 2000
service that makes it easier for users to access files
distributed across the network.
distributed link tracking service A Windows 2000
service that is used to track linked resources that might
have been moved.
capacity planning The process of using the past his-
tory of a project or system to determine the necessary
capacity for the future.
certificate A construct that can be used for authenti-
cation. It holds information that can validate or identi-
fy the owner. Certificates are digital credentials that can
be used to prove trust and thus be used in digital
authentication schemes independent of or in conjunc-
tion with the passwords.
Certificate Authority The certificate producing
service of the PKI.
chained authentication The process in which
authentication credentials are passed from the down-
stream ISAServer to the upstream ISA Server.
chaining See hierarchical caching.
circuit-level filtering The process of inspecting the
session level by looking at application requests using
the Winsock and SOCKS protocols.
client address sets A policy element that represents a
range of IP addresses for client systems.
computer browser service The service that broad-
casts the location of Windows computers.
Connection Initiator The tunnel endpoint that can
request the connection.
Connection Receiver The tunnel endpoint that
receives the connection request.
content groups Policy elements that include either
mime groups or file extensions.
data pumping Another name for fast kernel mode.
demilitarized zone (DMZ) An arrangement of inter-
nal, external and perimeter networks so as to create a
protected zone reachable from internal and external
networks. Typically, two firewalls are used.
31 mcse XD Glossary 6/5/01 12:29 PM Page 612
Please purchase PDF Split-Merge on www.verypdf.com to remove this watermark.
[...]... for identification from Internet servers The Identd simulation service, when installed on an ISA Server, can respond to the Internet server on behalf of the client Integrated mode An installation mode for ISA Server, which provides both the features and benefits of both the Firewall mode and the Caching mode In this mode, the ISAServer is both a firewall and a caching server internal network firewall... XD Glossary 618 6/5/01 Appendix D 12:29 PM Page 618 GLOSSARY Web Proxy Autodiscovery Protocol (WPAD) A protocol used by the ISAServer client computer to locate the ISAServer Web Proxy clients Windows clients whose browser is pointed to the ISAServer Web Proxy service The ISAServer service that forwards internal client HTTP requests to the Internet Web publishing rules Rules that are created to publish... of sending outbound requests to an upstream SA Server for resolution firewall clients Clients with the Firewall Client software installed Firewall mode The ISAServer mode in which the server is configured a as a firewall This installation mode provides firewall services, Web and server hosting, and inbound and outbound access control Firewall service The ISAServer service that manages inbound access control... firewall service to determine which requests it should forward to the Internet msisaund.ini file The file used in an unattended install of ISAServer to provide installation information specific to the current ISA install Local Domain Table (LDT) A collection of the names of domains that exist on the internal or private side of the ISAServer Locallat.txt If the client needs special configuration of the LAT file,... configuration file which also contains a copy of the ISA Server Local Domain Table (LDT) msplat.txt (1)The client copy of the ISA Server Local Address Table (LAT);(2)The firewall client copy of the LAT Multipoint Control Unit (MCU) server A conferencing Network Address Translation (NAT) The process of replacing the client’s outgoing packet source IP address with the NAT server s external IP address and substituting... which the ISA Server allows a tunnel created between two endpoints, one on its internal network and one on its external network to “pass-through.” T.120 An ITU communications standard that specifies how data conferences occur over an IP network Web caching server An ISA Server that provides Web caching services Please purchase PDF Split-Merge on www.verypdf.com to remove this watermark 31 mcse XD Glossary... client computers Local Address Table (LAT) (1)The LAT is the list of subnets that are on the private network side of the ISA Server in Firewall or Integrated mode The LAT is used by firewall clients to determine if they should send a request to the ISAServer It is used by the ISAServer to determine if it should forward a request to the private network (2)A table of IP address ranges that represent... should not be available on the ISAServer Windows 2000 computer because to do so could compromise the network by allowing traffic around the firewall or Web caching server Internet Control Message Protocol (ICMP) This protocol is used by TCP/IP hosts to provide information about the status of other hosts and communications on the network Internet Locator Server (ILS) A server that acts as a H.323 MCU... provides tunneling services for a VPN policy elements In ISA Server, policy elements define objects such as IP address ranges, schedules, bandwidth priorities, and so on These elements can then be used in rules Post Office Protocol 3 (POP3) A protocol used to download email from a mail server primary connection Server tries The first connection the ISA primary network address The address of the cluster... mail server Intrusion Detection The process of detecting an attack against a system and responding with some form of logging or alerting or other activity IP half scan attack Many attempts at connection to a computer made, but no corresponding ACK packets communicated IPSec A protocol that adds many security features to TCP/IP It is used in a VPN for encryption ISA COM objects COM objects used by ISAServer . Name - DNS filter
ISA Upgrade: Description -
ISA Upgrade: Enabled - TRUE
ISA Upgrade: All servers - TRUE
ISA Upgrade: Server name -
ISA Upgrade: Filter. Name - ICMP outbound
ISA Upgrade: Description -
ISA Upgrade: Enabled - TRUE
ISA Upgrade: All servers - TRUE
ISA Upgrade: Server name -
ISA Upgrade: Filter