Module 1:
Overview of Microsoft
ISA Server 2004
Overview
Introducing Microsoft ISA Server 2004
Deployment Scenarios for ISA Server 2004
Lesson: Introducing ISA Server 2004
What Are the Benefits of ISA Server 2004?
Multimedia: Overview of ISA Server 2004 Functionality
ISA Server 2004 Management Interface
ISA Server 2004 Enterprise Edition Features
Differences Between ISA Server 2000 and
ISA Server 2004
What Are the Benefits of ISA Server 2004?
Advanced
Protection
Advanced
Protection
Multi-layer packet inspection
Unified firewall and VPN server
Multi-networking
Application-layer filtering
Multi-layer packet inspection
Unified firewall and VPN server
Multi-networking
Application-layer filtering
Ease of Use
Ease of Use
Efficient management tools
Network templates
Product integration
Ease of use for clients
Efficient management tools
Network templates
Product integration
Ease of use for clients
Enhanced
Performance
Enhanced
Performance
Optimized for performance
Integrated functionality
Scalability
Web caching
Optimized for performance
Integrated functionality
Scalability
Web caching
Multimedia: Overview of ISA Server 2004 Functionality
ISA Server 2004 Management Interface
ISA Server 2004 Enterprise Edition Features
ISA Server 2004 Enterprise Edition provides enhanced
scalability by:
Providing centralized storage and configuration of the ISA
Server configuration data
Supporting CARP for distributed caching
Providing NLB integration
Differences Between ISA Server 2000 and ISA Server 2004
Multiple network support
Policies assigned per network
Routed and NAT network relationships
Extended protocol support
Advanced application filtering
Enhanced authentication options
VPN and quarantine integration
Stateful inspection for VPN
Export and import
Delegated permissions wizard for firewall
administrator roles
Lesson: Deployment Scenarios for ISA Server 2004
How ISA Server Works as an Internet Edge Firewall
How ISA Server Works as a Back-End Firewall
How ISA Server Works as a Branch Office Firewall
How ISA Server Works as an Integrated Firewall, Proxy,
and Caching Server
How ISA Server Works as a Proxy- and Caching-Only
Server
How ISA Server Works as an Internet Edge Firewall
Use ISA Server to:
Block all Internet traffic unless explicitly allowed
Publish internal servers such as Web or Exchange servers
Provide a VPN gateway for remote users
Provide proxy and caching services
User Exchange Server
Web
Server
ISA Server
Server
LAN
Web
Server
VPN
Internet
Remote User
How ISA Server Works as a Back-End Firewall
Use ISA Server to:
Securely publish Exchange servers
Securely publish other internal Web servers
Provide proxy and caching services
Remote User
Internet
User Exchange Server
Web Server
Server
LAN
Web
Server
Firewall
ISA Server
Web Server
User
LAN
ISA Server
or other
VPN gateway
How ISA Server Works as a Branch Office Firewall
Use ISA Server to:
Create an IPSec tunnel-mode VPN between offices
Create a PPTP or L2TP with IPSec VPN between offices
Inspect and filter all traffic between offices
Provide secure access to the Internet at the branch office
Corporate
Headquarters
Corporate
Headquarters
Server
Internet
LAN
ISA Server
VPN Tunnel
Branch Office
Branch Office
How ISA Server Works as an Integrated Firewall, Proxy,
and Caching Server
Use ISA Server to:
Provide proxy and caching services to conserve Internet bandwidth
Configure dial-up connections to the Internet
Block all inbound network traffic
Provide secure configurations using network templates and server
publishing wizards
User
LAN
Server
ISA Server
Internet
ISP Server
Web Server
How ISA Server Works as a Proxy- and
Caching-Only Server
Use ISA Server with a single network adapter to
provide proxy and caching services
Deploying ISA Server with a single network
adapter means that it does not provide
additional security functionality
User
LAN
Server
ISA Server
Internet
Web
Server
Firewall
Lab: Designing an ISA Server 2004 Implementation
Exercise 1: Designing an ISA Server
Deployment at Contoso Pharmaceuticals
Exercise 2: Designing an ISA Server
Deployment at Blue Yonder Airlines