[There's a reason that Yoda is the unofficial mascot of SBS.  Size indeed matters not.] My ISA Server just got a smidge better [okay a lot better] - THE OFFICIAL BLOG OF THE SBS "DIVA"
Wednesday, December 07, 2005 8:11 PM bradley

My ISA Server just got a smidge better [okay a lot better]

So I ran a test install of the Scorpion Firewall Dashboard on a VMware SBS 2003 [yes with ISA as you can do two nics] at home and the install was so nice and clean and easy and just sooooo cool...and well while the reports were fun.... well.. being a vmware stuck behind a real SBS box and a firewall meant that ...well, quite frankly the logs kinda boring ...that I wanted to see was it was like on a more 'production' system.

Now keep in mind that at the office ISA is 'behind“ a hardware firewall... but it's one that quite honestly I don't patch that one as well as I do the ISA server one.

So imagine my surprise when the graph that came up indicates that the hardware router I have on the outside is pinging my poor SBS box to smithereens.  Dana says it looks like every 30 to 45 seconds a RIP request is being fired to the SBS box.  He said that there should be a setting in the router to not do dynamic routing on the internal interface.  That should stop all that icky traffic like that.

Did I know that was doing that?  Nope.  Once again proving the power of “in your face“ email reports.

Suddenly I get this overwhelming urge to go stand up ISA servers all over the place to get more data.  This is cool.  If you haven't checked it out.. do it... and while it works on other firewalls... you know me I'm kinda partial to ISA server.

Sign up for the beta...and get more 'in your face' reporting from your firewall.

P.S.  I'm now RIP-less... I'll let you know what the updated firewall email looks like.

Filed under: ,

# re: My ISA Server just got a smidge better [okay a lot better]

Thursday, December 08, 2005 8:14 AM by bradley

Now you need to show us a report since you turned off rip. I bet there is a significant drop in traffic :)

# re: My ISA Server just got a smidge better [okay a lot better]

Thursday, December 08, 2005 8:15 AM by bradley

I've also seen this coming from DSL modems. They've got a little nat-ing, filter thing going on and it causes the same problems.

# The result of the Firewall Dashboard

Thursday, December 08, 2005 3:02 PM by TrackBack