Summary
In this chapter we focused on the ISA firewall's networking capabilities. As a prelude to the discussion, we went over our concept of how the ISA firewall fits within an existing corporate firewall infrastructure. We then discussed the details of the sample lab network we used when developing the scenarios discussed in this book. Included in that discussion were detailed instructions in how to configure VMware virtual machines to support the ISA firewalls and other machines in our sample network.
We then drilled down on the ISA firewall's view of the network. The new ISA firewall breaks away from the ISA Server 2000 approach of internal and external networks, where internal networks were trusted and external networks as untrusted. The new ISA firewall does not trust any network, and the default Internal network is quite different from the concept of 'internal' network that previous versions of this product supported. We also went over all the ISA firewall Network Objects and the Network Templates that can be used to simplify configuration of the ISA firewall's network settings.
We finished up with a discussion of various topics related to the ISA firewall's networking feature sets, including Web Proxy chaining, Firewall chaining, and using the ISA firewall as a DHCP server.