Social Icons

Friday, 14 September 2012

How to Create and Configure VPN Site to Site On ISA Server 2006



F.1
The first, we need setup
Configure IP Address at lab machines as figure 1
Join server ISA-msviet to DCmsviet (msviet.com)
Join server ISA-vispro to Dcvispro (vispro.com)
Step 2:
At ISA-msviet create new user: vispro / password
At ISA-vispro create new user: msviet / password
At the moment, confer these user have allow access in Dial-in Tab
Step 3:
Install Isa 2006 standar to ISA-msviet and ISA-vispro
Configure ISA rule, the following figure:
F.2

The IP range: 100.100.100.1 – 100.100.100.254 (customize) is virtual range IP which assigned automatic for clientvpn access to Internal (192.168.10.0/24)
To continue, select Remote sites Tab: create new connection

F.3


Note: site name = username which create at last step, here( ISA-mviet) sitename= vispro

Select Point-to-Point at next table.
In table Remote Site Gateways, enter the IP Address of Remote site VPN server that allow Internal connect out site, here we type 192.168.1.201 – interface WAN in ISA-vispro.
Click next, we to Remote Authentication tab, at that type user remote is created out site (vispro) – msviet / password
The part Network Address, specify IP range Internal on out site, at here we type 192.168.11.1 - 192.168.11.254
To continue, click next and select protocol (all outbound traffic), the end click finish.
Step 4:
Right mouse on Virtual Private Network and select properties, at tab access network we tick EXT, vispro as following figure:

F.4

Ok, we configure successful in ISA-msviet. Analog simulator, we’ll configuration on server ISA-vispro


Step 5: at both ISA server,
Start Routing and Remote access, ensure Network interface is connected

F.5


Note, in ISA2006, we must edit system policy on Firewall Policy ( both isa server)

F.6
Now, we can access resource from site msviet to site vispro.a

0 comments:

Post a Comment

make-money-468x60