Index
F
fault tolerance, firewall comparisons, 153
FBA (Forms-based Authentication), 894
features of ISA Server 2004, new and improved, 56-65
File and Printer sharing, and Firewall client, 385
file extensionscontrolling HTTP downloads by, 125
MIME, 549-554
file shredder software, 1020File Transfer Protocol. See FTP
filter definitions, monitoring sessions using, 972-974
filteringALF (Application Layer Filtering). See ALF (Application Layer Filtering)application-layer (ALF), 639-640
application-layer filtering (ALF), 46
dynamic packet-, 22
firewall sessions, 119-120
HTTP on per-rule basis, 62
log information, 983-985, 983-985
multilayered, 44-47
packet, firewalls, 37
per-rule HTTP, 125
stateful, 826
filtersApplication, 826-846
HTTP, 107, 170
Link Translation, 171
managing Web, 97
RPC, 126-127
Secure Exchange RPC, 171
Web, 846-881
firewall chainingconfiguring, 97
as form of network routing, 349-351, 355
ISA firewall routing method, 546
Firewall clientsadvanced settings, 398-400
advantages of configuration (table), 381-382
Autodiscovery support, 418
automating installation, 438-448
automating provisioning, 417-438
client-side settings, 393-396
configuration, 388-390
configuration at ISA 2004 firewall, 401-402
configuration file settings (table), 399-400
configuration files, 396-398
control channel, 383
described, 7-8
installing, 385-388
introduction to, 377-381
silent installation script, 446-447
software, 172, 387
summary, 452
workings described, 383-384
firewall comparisonscost of operations, 147-152
general specifications and features, 152-156
ISA 2004 to Blue Coat SG, 214-218
ISA 2004 to Check Point, 178-182
ISA 2004 to Cisco PIX, 182-187
ISA 2004 to low-cost, 231-232
ISA 2004 to NetScreen, 187-192
ISA 2004 to open source, 218-220
ISA 2004 to SonicWall, 192-200
ISA 2004 to Symantec Enterprise Firewall, 207-214
ISA 2004 to WatchGuard, 200-207
ISA Server 2004 comparative points, 159-177
issues involved, 144-147, 225-227
VPN features, 156-157
firewall policiesapplied to VPN client, site-to-site connections, 713-715
available for Back Firewall Template (table), 323-325
available for trihomed (3-leg) Network Template (table), 315-316, 320-321
available with Edge Firewall Template (table), 311-312
configuring, 93-94, 124
ISA Server 2004 improvements, 110-111
MSN Messenger, blocking, 587-588
firewall policy node, ISA Server 2004, 93-94
firewall rule base, 167
Firewall Rules, creating, 107
firewall sessions, filtering, 119-120
Firewall System Policy, 140, 385
firewall user groups, 60
firewallsBackbone Edge, 242-243
configuring policy rules, 84
connecting multiple, 100
defense-in-depth security, 66-75
and defense-in-depth security, 237-247
fallacies about, 65-66
function of, 43
history, philosophy of, 38-39
on Intel PC-based platforms, 23
intrusion detection and prevention, 48-49
ISA Server. See ISA firewall
multilayered filtering, 44-47
packet-filtering, 37
placement of, 53-54
real-time monitoring of log entries, 63
and security breaches, 37
using multiple, 36
using with ISA Server, 24-25
VPN gateways, 47-48
vs. ALF, 124
web caching, 49-52
Forms-based Authentication, 894
forums, ISA Server, 3
forward caching, 50, 157, 177, 899, 904, 936
forwarding support, Web Publishing Rules, 637, 643
FQDNs (Fully Qualified Domain Names) and Web Publishing Rules, 642-643, 645, 658
fraggle attacks, 887, 1034front-end firewalls, 53
Front Firewall Network Template, 318-322
FTP (File Transfer Protocol)Access Application Filter, 366
and application filtering, 46
caching, 55
configuring Access Rule, 570, 627
downloads, and Web Proxy clients, 404
policy control over downloads, 126
setting policy, 63
FTP Access filter, 843-444
FTP Server Publishing Rules, creating, 108
fully-qualified domain names (FQDNs), 390, 642-643, 645, 658
FWTK firewall, 234