配置ISA使用PPPoE连接
摘要
Some broadband (DSL, ADSL) Internet service providers (ISPs) require a special dial-up connection that uses Point-to-Point Protocol over Ethernet (PPPoE). This article describes how to configure Internet Security and Aclearcase/" target="_blank" >cceleration (ISA) Server to use this type of connection as the primary route to the internet. Please see your ISP's documentation for installation and configuration of the PPPoE software.
一些提供DSL和ADSL的宽带的ISP需要一个特殊的用于在Ethernet使用点对点协议(PPPoE)的拨号连接。这片文章描述了怎样配置ISA来使用这种类型的连接,参照ISP的文档和安装配置PPPoE的软件。
MORE INFORMATION
In this type of configuration, the ISA Server-based computer is configured with two network adapters (one on the internal network and one connected to the broadband modem) and a dial-up network adapter (the PPPoE adapter).
在这个配置的例子里面,基于ISA的服务器配置了两块网卡(一块连接着内网,一块连接着宽带猫)并且有一个拨号网络适配器(PPPoE 适配器)。
To properly configure ISA Server, add the dial-up entry, configure the Local Address Table (LAT), and then configure any routes to use the dial-up entry.
合理的配置ISA,添加拨号登陆,配置ISA中的LAT,然后配置所有的路由使用拨号登陆。
Part I: To Add the Dial-Up Entry to ISA Server
第一部分:在ISA上添加拨号登陆
Some PPPoE software (such as WinPoet) are represented by a dial up entry. To configure ISA to use this entry for internet access:
一些PPPoE软件(比如Winpoet)是支持拨号登陆的,使用这个互联网访问登陆来配置ISA。
1. In the ISA Management interface, expand Policy Elements.
在 ISA管理界面,展开Policy Elements。
2. Right-click Dial-up Entries, click New, and then click Dial-up Entry.
右键点击Dial-up Entries,点击New,再点击Dial-up Entry。
3. Type a name and description, click the PPPoE dial-up entry by clicking Select, and then specify the appropriate account information (user name and password for the PPPoE connection) by clicking Set Account.
输入描述的名字,点击PPPoE dial-up entry的Select,再点击Set Account指定适当的账号信息(使用PPPoE连接的用户名和密码)。
4. Click OK.
点击OK
Part II: To Construct the LAT
第二部分:创建LAT
When you construct the LAT, include only the network adapter that represents the internal local area network (LAN). The inclusion of the network adapter that is connected to the DSL modem does not prevent network access, but it does pose a security risk on the internal network.
当你创建LAT的时候,只包括内网范围的网卡,提供DSL猫连接的网卡不提供网络访问,但是他可能会导致内部网络的安全隐患。
Part III: To Configure Routing and Firewall/SecureNAT
第三部分:配置路由和防火墙/SecureNAT
The final step is to ensure that both Web and Firewall/Secure NAT clients are routed through the PPPoE connection.
最后的步骤是确认Web和Firewall/Secure NAT的客户端的路由经过PPPoE连接。
1. Right-click Network Configuration, click Properties.
右键点击Network Configuration,点击Properties.
2. Click to select Use Dial-up Entry check box.
点击选择Use Dial-up Entry 选框
3. Click OK.
点击OK
4. Expand Network Configuration.
展开Network Configuration.
5. Click Routing.
点击Routing
6. Right-click, and then click Properties of any routes that you have configured that require access through the PPPoE adapter.
右键,点击Properties,选择any routes that you have configured that require access through the PPPoE adapter.
7. On the Action tab, click to select the Use dial-up entry for primary route check box.
点击Action,点击选择Use dial-up entry for primary route选框
8. Click OK.
点击OK.