How to configure a firewall installed on Win2000


Summary: This article describes how to install Internet Security and Acceleration (ISA) Server and configure the firewall. To install the ISA Server schema to Active Directory, you must be a local administrator on the computer. In addition, you must be Enterprise Admins and Schema Admins members of both groups. You must be for the entire enterprise or organization will install the ISA Server schema only once to Active Directory.

WARNING: ISA Server Enterprise Initialization process structure information will be copied to the Active Directory. Because Active Directory does not support the deletion of schema objects, the enterprise initialization process is irreversible.

How to install ISA Server as a firewall

To install the ISA Server firewall, follow these steps:

1. Click Start, click Run, in the Open text box, type cmd, and then click OK.
2. At the command prompt, type PathISAi386Msisaent.exe (where Path is pointing to ISA Server installation path to the file). Please note that the path may be the ISA Server CD-ROM's root folder, it may be a network file contains the ISA Server shared folders.
3. Click the Microsoft ISA Server Setup dialog box to continue.
4. Read the End User License Agreement (EULA), and then click I agree.
5. According to need, choose an installation option.
6. Click the "firewall mode", then click Continue.
7. When you are prompted to allow Setup to stop Internet Information Services (IIS), click OK.
8. To automatically build Internet Protocol (IP) address, click the establishment of the table, click a server connected to your network card, and then click OK.
9. Click OK to start the Configuration Wizard.

How to configure firewall protection
To configure the firewall protection, follow these steps:
1. Click Start, point to Programs, point to Microsoft ISA Server, and then click ISA Management.
2. In the console tree, click to expand server_name Access Policy (where server_name is the name of the server), right-click IP Packet Filters, point to New, and then click Filter.
3. In the "IP packet filter name" box, type the name of the packet filter, and then click Next.
4. Click to allow or block to allow or block the packet, and then click Next.
5. Predefined acceptable option, then click Next.
6. Click the option for the application of packet filters select the way you want, and then click Next.
7. Click the remote computer, and then click Next.
8. Click Finish.
Note: You can also edit other services (such as Dynamic Host Configuration Protocol (DHCP) and Domain Name System (DNS)) of the property is in the configuration box, double-click the corresponding service.