HP Microsoft Internet Security and Acceleration (ISA) Software manual

Page 13

NOTE: Any network services and client applications installed on the firewall can potentially increase the security risk.

If you are familiar with the installation and configuration of DNS servers or if a DNS server already exists on the LAN, the best option is to configure that DNS server to resolve Internet host names and then create an access rule on the firewall enabling that DNS server to use the DNS protocol to connect to the Internet.

If you are not familiar with DNS server installation and configuration, or if you choose not to install and configure a DNS server, use the ISP DNS server. The main limitation of this option is that the ISP DNS server cannot resolve names of computers on the LAN.

1.Determine if a DNS server already exists on the LAN.

2.If a DNS server exists on the LAN, configure that DNS server to resolve Internet host names, and then create a firewall rule allowing this DNS server access to the DNS protocol to all sites on the Internet.

3.If a DNS server does not exist on the LAN, install a DNS server on the ProLiant DL320 Security Server. For details on DNS setup and configuration, see the Microsoft® Windows Server™ 2003 or Microsoft® Windows® 2000 Help and Support Center.

4.If a DNS server does exist on the LAN and you do not want to install a DNS server on the server, configure the internal interface to use the IP address of your ISP DNS server. Consult the ISP to determine the correct IP address of their DNS server.

Custom network adapter configurations

The ProLiant DL320 Security Server might be equipped with additional network interfaces. In addition to the internal and external interfaces, there might be additional LAN, partner access, perimeter network (also known as a DMZ), and screened subnet interfaces.

Additional network interfaces can provide the following benefits:

Additional LAN interfaces can connect several internal networks to the firewall. The ProLiant DL320 Security Server can control what network traffic moves among the LANs and between the LANs and the Internet.

Perimeter network interfaces can be used to connect perimeter networks hosting publicly accessible servers and services. For example, you might want to host your own e-mail or web servers on the perimeter network.

Partner networks enable business partners to connect to resources on a network segment outside of the LAN and perimeter networks. These networks are not public networks because only the partners can connect to them. Partner networks are sometimes referred to as extranets.

IP addresses assigned to additional LAN, perimeter network, and extranet interfaces are specific to the requirements of your unique network configuration. The only requirement from the standpoint of the ProLiant DL320 Security Server is that each of these interfaces is configured with IP addresses on different network IDs. The setup wizard enables the configuration of up to three interfaces. Additional interfaces must be configured after setup is completed.

1.Before installing the ProLiant DL320 Security Server, determine and record what IP addresses and subnet masks should be configured on the additional perimeter network or extranet interfaces.

2.If you are configuring a perimeter network, additional LAN networks, or an extranet but do not know what IP addresses to assign the ProLiant DL320 Security Server interfaces, consult with a network professional that can help you determine the correct configuration.

Initial setup considerations 13

Image 13
Contents HP ProLiant DL320 Security Server User Guide Audience assumptions Contents Network services support Before you contact HP Technical supportHP contact information Customer self repairHP customer support Overview IntroductionFirewall lockdown mode Initial setup considerationsAffected functionality Leaving lockdown mode Computer name and administrator passwordInternal network overview Select StartControl PanelSystem Workgroup and domain name considerationsInternal IP address DNS server address on the internal interface Custom network adapter configurations External IP address Select the Enable Web Proxy clients checkbox Setting up the serverEnabling the web listener Enabling the firewall client listener Creating an Internet access ruleHP Virus Throttle Configuring Virus ThrottleSuggested third-party applications Available verified third-party applications and plug-insAdditional documentation available from HP Managing and maintaining the firewall Microsoft Windows UpdateRemote desktop ServerRemote Assistance Remote management consoleSelect StartHelp and Support Configuring firewall logging Configuring monitoring, reporting, and loggingConfiguring web proxy logging Click ApplyOKDNS Wpad entry Setting up the Client Installation ShareDhcp option Configuring time synchronizationBrowse OptionsRemote access VPN Backing up and restoring server settings Disaster recovery and change managementBacking up and restoring the system Scheduling backups Restoring original factory settingsNext Select ToolsOptionsAdvanced DNS server Network services supportDhcp server Network services support Hardening overview and impact Firewall and operating system services overviewClick Services and ApplicationsServices ProLiant DL320 Security Server servicesVDS TCP/IP Acronyms and abbreviations LAN WIA
Related manuals
Manual 1 pages 61.73 Kb Manual 4 pages 42.81 Kb

Microsoft Internet Security and Acceleration (ISA) Software specifications

HP Microsoft Internet Security and Acceleration (ISA) Software is a robust network security solution designed to safeguard business environments by offering a versatile platform for secure internet access. ISA Server integrates multiple functionalities that are essential for modern enterprise needs, helping organizations manage and protect their network infrastructure.

One of the main features of ISA Server is its firewall capabilities, which provide an essential barrier between internal networks and external threats. The software utilizes intelligent packet filtering to analyze incoming and outgoing traffic, ensuring that only legitimate communications are allowed while blocking potentially harmful activity. This helps to mitigate risks associated with external cyber threats and unauthorized access.

Another key feature is the built-in web caching technology. ISA Server improves network performance by caching frequently accessed websites and content. This reduces bandwidth usage and enhances response times for end-users, leading to increased productivity. By storing copies of web pages, ISA Server can serve them quickly to users, allowing enterprises to optimize their use of internet resources.

ISA Server also includes a powerful Virtual Private Network (VPN) feature, enabling secure remote access for employees. This technology supports secure connections over the internet, allowing users to access the corporate network and resources from anywhere in the world. The VPN capabilities ensure data encryption during transmission, protecting sensitive information from interception.

Moreover, ISA Server incorporates integrated threat management tools, which offer insights into potential security issues. These tools provide logging and reporting features that allow administrators to monitor traffic patterns and detect anomalies. This functionality is critical for identifying and responding to potential security breaches in real-time.

In addition to these features, ISA Server supports application-layer filtering, which enhances security further. This allows organizations to control access to specific applications and services while ensuring that malicious content cannot infiltrate the network.

Overall, HP Microsoft Internet Security and Acceleration Software is a comprehensive solution designed to address the complexities of network security in today’s digital landscape. Its combination of firewall protection, web caching, VPN capabilities, and application-layer filtering makes it an invaluable tool for organizations looking to secure their internet connectivity while optimizing performance and user experience. By leveraging advanced technologies and characteristics, ISA Server empowers businesses to operate safely and efficiently in an interconnected world.