HP Microsoft Internet Security and Acceleration (ISA) Software Configuring time synchronization

Models: Microsoft Internet Security and Acceleration (ISA) Software

1 37
Download 37 pages 12.14 Kb
Page 24
Image 24

3.Right-click the domain name, and click the New Alias (CNAME) command.

4.In the Alias name (uses parent domain if left blank) text box, enter the name wpad, and click

Browse.

5.In the Browse dialog box, double-click the server name in the Records list, the Forward Lookup Zones entry in the Records list, and then the domain name in the Records list.

6.Select the resource record for the ProLiant DL320 Security Server in the Records list, and then click OK. The name of the ProLiant DL320 Security Server now appears in the Fully qualified domain name (FQDN) for target host text box.

7.Click OK. The WPAD alias entry now appears in the resource record list in the results pane of the DNS console.

DHCP option 252

Use the DHCP option 252 WPAD method for computers using DHCP to obtain IP addressing information. Requirements for this option include:

A DHCP server on the LAN

Computers on the LAN use DHCP to obtain IP addressing information

Web proxy client users logged on as local administrators or members of the Power Users group

If a DHCP server exists on your LAN:

1.From the Administrative Tools menu on the DHCP computer on the LAN, open the DHCP console.

2.In the scope pane of the DHCP console, right-click the server name, and click Set Predefined

Options.

3.In the Predefined Options and Values dialog box, click Add.

4.In the Option Type dialog box in the Name text box, enter WPAD.

5.Select String in the Data type list, enter 252 in the Code text box, and enter DHCP wpad entry in the Description text box.

6.In the Predefined Options and Values text box, enter the following information in the String text box, where computer_name is the DNS name of the ProLiant DL320 Security Server and AutoDiscoveryPortNumber is the port number that the server uses to publish automatic discovery information, TCP port 80 by default:

http://<computer_name>:<AutoDiscoveryPortNumber>/Wpad.dat

7.In the Predefined Options and Values dialog box, click OK.

NOTE: To perform DHCP automatic discovery, you must be logged on as an administrator or Power User in Microsoft® Windows® 2000 or as an administrator, Power User, or member of the Network Configuration Operators group in Microsoft® Windows® XP. For more information, refer to the "Automatic Proxy Discovery in Internet Explorer with DHCP Requires Specific Permissions" article on the Microsoft website (http://go.microsoft.com/fwlink/?LinkID=27334).

Configuring time synchronization

Use the firewall as a time server for the LAN. A time server is a computer that provides accurate time to other computers on the LAN. This server increases security on the network by providing accurate time to all hosts on the network so that auditing and logging entries have the correct time. In addition, many network protocols require accurate time to function properly.

To obtain the most accurate time possible, the ProLiant DL320 Security Server must access a time server on the Internet. If you choose not to have the ProLiant DL320 Security Server as a time server for the LAN, configure the server to allow computers on the LAN to contact their own Internet time servers.

Managing and maintaining the firewall 24

Page 24
Image 24
HP Microsoft Internet Security and Acceleration (ISA) Software manual Configuring time synchronization, Dhcp option, Browse