Microsoft
Internet Security and Acceleration Server 2004
Beta2
¿ì ËÙ °² ×° Ö¸ ÄÏ
(Òë×ÔThomas Shinder £¬Get Up and Running with ISA Server 2004 Beta 2 £¬ÔÚ¡°Ïà¹ØÏÂÔØ¡±À¸Ä¿ÖÐÓÐpdf°æ±¾µÄÏÂÔØ)
Ä¿ ¼ Ò»¡¢°²×°Windows net server 2003²¢ÇÒ½¨Á¢»ù±¾µÄÍøÂç½á¹¹ ¶þ¡¢°²×°ISA Server 2004 beta2 Èý¡¢²é¿´·À»ðǽϵͳ²ßÂÔ ËÄ¡¢½¨Á¢·ÃÎʲßÂÔ 1¡¢½¨Á¢ÔÊÐíËùÓÐÁ÷³öÊý¾ÝµÄ·ÃÎʲßÂÔ 2¡¢½¨Á¢ÔÊÐíÄÚ²¿¿Í»§·ÃÎÊλÓÚISA Server ÉϵÄDNS·þÎñÆ÷µÄ²ßÂÔ Îå¡¢½¨Á¢Ò»Ìõ×èÖ¹HTTPÏÂÔØµÄHTTP²ßÂÔ Áù¡¢²âÊÔ Æß¡¢ºó¼Ç ¡¡Ò»¡¢°²×°Windows net server 2003²¢ÇÒ½¨Á¢»ù±¾µÄÍøÂç½á¹¹
ºÍISA Server 2000Ò»Ñù£¬ISA Server 2004¶ÔÓ²¼þÒªÇó²»ÊǺܸߣ¬ÔÚCPU Pentium III 500+ MHz¡¢256MÄÚ´æ»·¾³Ï¶¼ÄÜÔËÐУ¬²»¹ýΪÁ˸üºÃµÄÐÔÄÜ£¬½¨ÒéÔö¼ÓCPUËÙÂʺÍÄÚ´æÈÝÁ¿¡£
°²×°ISA Server 2004µÄ»úÆ÷Ó¦¸ÃÓÐÖÁÉÙÓÐÁ½¸öÍø¿¨£¬Ò»¸öΪÍⲿ½Ó¿Ú£¬Ò»¸öΪÄÚ²¿½Ó¿Ú¡£µ«ÊǺÍISA Server 2000²»Ò»Ñù£¬ISA Server 2004ûÓб¾µØµØÖ·±í£¨Local Address Table£©£¬ËùÒÔÄã¿ÉÒÔ°²×°¶à¸öÄÚ²¿½Ó¿ÚÒÔÖ§³Ö¶à¸öÄÚ²¿ÍøÂ磬Firewall Access policy¿ØÖÆËùÓÐÍøÂç¼äµÄÊý¾Ý´«Êä¡£ ÏÂͼΪһ¸ö²âÊÔÍøÂ磬ISA Server×÷Ϊһ¸ö±ßÔµ·À»ðǽ£¨Edge Firewall£©£º












![]()

1¡¢½¨Á¢ÔÊÐíËùÓÐÁ÷³öÊý¾ÝµÄ·ÃÎʲßÂÔ
ΪÁËÈÃÊý¾ÝÄÜ·ÃÎÊÍâ²¿ÍøÂ磬Äã±ØÐëн¨Ò»Ìõ·ÃÎʲßÂÔ£¬Ö´ÐÐÒÔϲ½Ö裺
£¨1£©ÔÚMicrosoft Internet Security and Acceleration Server 2004¿ØÖÆÌ¨£¬Õ¹¿ªISA Server·þÎñÆ÷£¬ÓÒ»÷Firewall Policy£¬Ö¸ÏòNew ²¢µã»÷ Access Rule:

£¨2£©ÔÚWelcome to the New Access Rule Wizard Ò³£¬ÔÚAccess policy rule nameÖÐÊäÈë¡°All Open Outbound¡±£¬µã»÷OK£¬

£¨3£©ÔÚRule ActionÒ³£¬Ñ¡ÔñAllow £¬È»ºóµã»÷Next.

£¨4£©ÔÚProtocols Ò³£¬Ñ¡ÔñAll outbound protocolsÈ»ºóµã»÷Next.

£¨5£©ÔÚAccess Rule Sources Ò³£¬µã»÷Add£¬ÔÚAdd Network Entities¶Ô»°¿òÖУ¬µã»÷Networks Ŀ¼£¬Ë«»÷Internal£¬È»ºóµã»÷Add Network Entities ¶Ô»°¿òÖеÄClose°´Å¥¡£È»ºóµã»÷Next.

£¨6£©ÔÚAccess Rule Destinations Ò³Öеã»÷Add°´Å¥£¬ÔÚAdd Network Entities¶Ô»°¿òÖУ¬µã»÷Networks Ŀ¼£¬Ë«»÷ External È»ºóµã»÷Close£¬×îºóµã»÷Next.

£¨7£©ÔÚUser SetsÒ³£¬½ÓÊÜĬÈϵÄAll Users.µã»÷Next.

£¨8£©ÔÚCompleting the New Access Rule WizardÒ³²é¿´ÄãµÄÉèÖÃ×îºóµã»÷Finish ¡£
£¨9£©µã»÷Ãæ°å¶¥²¿µÄApply°´Å¥£¬ÉèÖûáÂíÉÏÉúЧ¡£

´Ëʱ£¬ÄÚ²¿ÍøÂçµÄÓû§ÒѾ¿ÉÒÔÍêÈ«µÄ·ÃÎÊInternetÁË¡£

2¡¢½¨Á¢ÔÊÐíÄÚ²¿¿Í»§·ÃÎÊλÓÚISA Server ÉϵÄDNS·þÎñÆ÷µÄ²ßÂÔ
½ÓÏÂÀ´£¬ÄãÐèÒª½¨Á¢Ò»¸ö·ÃÎʲßÂÔ£¬ÒÔÔÊÐíÄÚ²¿ÍøÂç¿Í»§¿ÉÒÔÁ¬½ÓλÓÚISA Server ÉϵÄDNS·þÎñÆ÷¡£ÕâµãÊÇISA Server 2004ºÍISA Server 2000µÄ²»Í¬Ö®´¦£ºISA Server 2000¶ÔÓÚÄÚ²¿½Ó¿Ú£¬ÊDz»ÐèÒªÉèÖ÷ÃÎʲßÂԵ쬵«ÊÇÔÚISA Server 2004ÖУ¬ÄÚ²¿½Ó¿ÚÒ²Êܵ½·ÃÎʲßÂԵı£»¤£¬ËùÒÔÄã±ØÐëÏÔʽµÄÔÊÐíÄÚ²¿¿Í»§µÄ·ÃÎÊ¡£
Ö÷Òª²½ÖèºÍ½¨Á¢Allow open outboundÒ»Ñù£¬²»Ò»ÑùµÄµØ·½£º
1¡¢ÐÒéname £ºDNS from Internal Network£»
2¡¢ÔÚProtocolsÒ³£¬Ñ¡ÔñInfrastructureϵÄDNSÐÒ飬ÈçÏÂͼ£º

3¡¢ÔÚAccess Rule SourcesÒ³£¬Ñ¡ÔñInternal£»
4¡¢ÔÚAccess Rule DestinationsÒ³£¬Ñ¡ÔñLocal Host£»

×îºóµã»÷Apply¡£
Îå¡¢½¨Á¢Ò»Ìõ×èÖ¹HTTPÏÂÔØµÄHTTP²ßÂÔ
ISA Server 2004µÄHttp²ßÂÔÔÊÐíÄã½øÐÐϸ΢µÄ¿ØÖÆ£¬Äã¿ÉÒÔʹÓÃHttp²ßÂÔÀ´×èÖ¹Óû§·ÃÎÊÈκÎÕ¾µã¡¢ÄÚÈÝ£¬»òÕßÔÚHttpÍ·ÖгöÏÖµÄÈκÎÐÒé¡£ÕâÌõ²ßÂÔ½«×èÖ¹.zipºÍÖ´ÐÐÎļþµÄÏÂÔØ£¬°´ÒÔϲ½ÖèÆôÓòßÂÔ£º
1¡¢ÓÒ»÷ All Open Outbound ·ÃÎʲßÂÔÈ»ºóµã»÷ Configure HTTPÃüÁ

2¡¢ÔÚ Configure HTTP policy for rule µÄGeneralÒ³£¬Ñ¡Ôñ Block responses with Windows executable content £¬µã»÷Apply£¬×îºóµã»÷OK¡£

3¡¢×îºóµã»÷ApplyʹÐÞ¸ÄÉúЧ¡£
¡¡
ÖÁ´Ë£¬ISA Server 2004µÄÅäÖÃÒѾ»ù±¾Íê³É£¬ÎÒÃÇÏÖÔÚʹÓÃһ̨ÄÚ²¿¿Í»§»úÀ´²âÊÔһϣº
´ò¿ªä¯ÀÀÆ÷£¬ÊäÈëhttp://www.microsoft.com/downloads/details.aspx?FamilyID=2f92b02c-ac49-44df-af6c-5be084b345f9&DisplayLang=en £¬Äã¿ÉÒÔ¿´¼ûÏÂͼ£º

¡¡
ÏÖÔÚÎÒÃǵã»÷isafp1.exe£¬ÒòΪÎÒÃǵÄÅäÖã¬ISA Server 2004·À»ðǽ½«×èÖ¹¿ÉÖ´ÐÐÎļþµÄÏÂÔØ£¬ÈçÏÂͼ£º

¡¡
ÖÁ´Ë£¬ISA Server 2004µÄÅäÖÃÒÑ»ù±¾Íê³É¡£
¡¡
µ±ÎÒ½«ISA Server 2004³É¹¦ÅäÖÃÖ®ºó£¬¸Ð¾õÈ´ÊÇ£ºISA Server Ô½À´Ô½ÏñKWFÁË¡£³ýÁËISA Server 2004ÔÚVPN·½Ãæ×öÁËÇ¿»¯ÅäÖÃÍ⣬ÆäËû·½Ã棬ISA Server ºÍKWFµÄ¹¦ÄÜÌ«ÏàËÆÁË£¬¶øÇÒÓÐЩµØ·½»¹²»ÈçKWF£¬ÈçÎÞDHCP·þÎñ£¬²»ÄÜת·¢DNS²éѯµÈµÈ£¬¶øÇÒ´ÓÐÒéµÄÅäÖÃÉÏÀ´Ëµ£¬Ò²±ÈKWFÂé·³¶àÁË¡£ÓÉÓÚ»¹ÊǸöbeta°æ±¾£¬ËùÒÔ²»¿É±ÜÃâµÄ´æÔÚBug£¬ÈçÎÒÏÖÔÚ¾ÍÓиöÎÊÌ⣬ͬÑùµÄCisco VPN²¦ºÅ³ÌÐò£¬ÔÚ98Ï¿ÉÒԳɹ¦Á¬½Ó£¬µ«ÊÇÔÚÎÒµÄ2000ÉÏȴʼÖÕ²»ÄÜÕý³£Á¬½Ó£¬ÔÒò»¹ÔÚsearching¡¡µ«ÊÇ´ÓÎȶ¨ÐÔ¼°ÏµÍ³µÄ¼æÈÝÐÔÉÏ¿´£¬ISA Server 2004×öµÄÏ൱³öÉ«£¬±ÈÆðISA Server 2000¸Ä½øÏ൱´ó¡£Î¢Èí×Ô¼ºµÄ²úÆ·£¬¼æÈÝÐÔ²»ÓÃ˵ÁË£¬¶øÇÒ±ÈÆðISA Server 2000£¬2004Õ¼ÓÃϵͳ×ÊÔ´Òª¸üÉÙ¡£Õâ¸ö°æ±¾ÊDZê×¼°æ£¬ÓÐЩ¹¦ÄÜ£¬ÈçISA Server 2000ÆóÒµ°æÖеĴø¿í¿ØÖƺÍCache¼à¿Ø±»È¡Ïû£¬¿ÉÄÜÔÚÕýʽÆóÒµ°æÍƳöºó»áÌṩ¡£
×ÜÌåÀ´¿´£¬ISA Server 2004ÊÇÊÀ½çµÚÒ»Á÷µÄÈí¼þ·À»ðǽ£¬ÎÞÀ¢ÓÚÎÒ¶ÔËüµÄϲ°®!
, ,| ×ÔÓÉ¹ã¸æÇø |
| ¡¡ |