Quantcast
Channel: Forefront Edge Security – DirectAccess, UAG and IAG フォーラム
Viewing all articles
Browse latest Browse all 1485

Direct Access with two network adapters assistance

$
0
0

Hi All

I can get direct access working great with the single adapter option. We use nat from the WAN-LAN dns for the external url and open port 443.

However, when i introduce the DMZ in there i encounter problems.

I have tranferred the NAT address to the DMZ and created the relevant firewall rules

I removed the default gateway from the LAN card and ensured the DMZ card has this gateway and created static routes on the DA server so it can contact resources internally, and i have tested this and it seems ok.

The problems i encounter when i set it up this way is my DA Client upon getting the policy does not seem to differentiate internet from corporate, i have specified the corporate only servers via ping. I can see the client trying to connect to DA regardless. Its really wierd and i had this setup working about 2 weeks ago and i had to rebuild and i know im doing something silly, i just need a fresh brain to say have you done A,B,C. 

Any ideas would be great.

Cheers

Julian


Viewing all articles
Browse latest Browse all 1485

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>