IIS-based computer that hosts the RPC proxy site
1. Start Microsoft Internet Information Services (IIS) Manager. To do this, click Start, point to Administrative Tools, and then click Internet Information Services (IIS) Manager.
2. Expand the computer node, expand Web Sites, right-click the Web site that you want to export the certificate from, and then click Properties.
3. Click the Directory Security tab, and then click View Certificate.
4. In the properties of the certificate, make sure that the certificate says "You have a private key that corresponds to this certificate."
5. Click the Details tab, click Issuer, and then click Copy to File.
6. Click Next, click Yes, export the private key, and then click Next.
7. In the Export File Format dialog box, click Personal Information Exchange – PKCS #12 (.PFX).
8. Click to select the Include all certificate in the certification path if possible check box.
9. Make sure that the Enable strong protection (requires IE 5.0, NT 4.0 SP4 or above) check box and the Delete the private key if the export is successful check box are cleared.
10. On the Password page, type a password, and then confirm the password.
11. On the File to Export page, type the location where you want to save the exported certificate, and then click Next. For example, type c:\webcert.pfx, and then click next.
12. On the Completing the Certificate Export Wizard page, click Finish.
13. When the Certificate Export Wizard dialog box informs you that the export was successful, click OK
14.Click OK to close the Default Web Site Properties dialog box.
Place the ISA Server CD-ROM into the domain controller and perform the following steps:
The “autorun” menu will be appeared automatically. If it does not, open Windows Explorer and double-click the “ISAAutorun.exe” file
In the Microsoft ISA Server 2004 Setup dialog box, click the “Install ISA Server 2004” link. On the Welcome to the Installation Wizard for Microsoft ISA Server 2004 page, click “Next”.
On the License Agreement page, read the license agreement. Then select the “I accept the terms in the license agreement” option and click “Next”.
On the “Customer Information” page, enter your User Name, Organization, and Product Serial Number. Click “Next”. Make a new array. There are no default arrays, so you should create a new array to which you will apply firewall policy.
-
Configure “array properties”. There are many characteristics that define an array. The first step after creating a new array is to define these array-specific characteristics, such as addresses used for intra-array communications.
-
Make the “intra-array network”. Each array member in the sample network used in this ISA Server 2004 Enterprise Edition Configuration Guide has three network adapters. One network adapter is connected to the External network, another adapter is connected to the default internal network, and the third adapter is connected to a network dedicated to intra-array communications.
-
This intra-array communications network is required because you may change “enable Network Load Balancing” (NLB) for the array. A dedicated network adapter is required because ISA Server 2004 Enterprise Edition integrated NLB uses only nicest mode NLB.
Configure the “Remote Management Computers” computer set. After creating the array, several network objects are included by default. One of these network objects is the Remote Management Computers computer set. You need to add the Configuration Storage server, on which you run ISA Server Management, to this computer set so that it can manage computers in the ISA Server array
Create an array access rule. You will create an HTTP-only access rule to demonstrate how to create an array-level rule, and then
In the “ISA Server 2004 Enterprise Edition console”, expand the arrays node, and then click the “Main Array” node. Click the “Tasks tab” in the task pane, and then click the “Configure Array Properties” link.
In the Main Array dialog box, click the “Configuration Storage tab”.
On the “Configuration Storage tab”, enter the fully qualified domain name of the Configuration Storage server in the Configuration Storage server text box. Click “Apply”
On the “Configuration Storage tab”, click the “Select” button
|
|