Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

How to make ISA do mail relay with one NIC?

Status
Not open for further replies.

voirin

Technical User
May 15, 2003
29
AU
Hi, is it possible to do mail relay on the ISA server using one NIC?

The present network has a PIX utilising 3 of its ethernet ports: outside,
DMZ and inside.

The ISA server sits wholly in the DMZ
The mail server sits wholly in the 'inside'.

We want to have smtp mail coming from the 'outside' through to the DMZ. The
ISA server picks up the request and relays it via the PIX to the mail server
on the 'inside'.

The current ISA config is set up with the default 3 services: firewall, web
and cache.

The ISA server currently has 2 NIC's, one with two IP addresses bound to it,
and the other with a single IP address. All 3 ip addresses lie in the same
network (DMZ). The reason for this config is because IIS is also running on
the ISA server, and we have one ip bound to the web server.

So, is it possible to set up mail relay on the ISA in this case? When i go
through the mail server wizard it says there is no external IP address.
Maybe shutting down the firewall service would allow me to set up mail
relay?

Any suggestions/help?

Thanks!
Voirin

 
In your current configuration, I don't think you are going to be able to do that. You are not really running in a Firewall type mode. Are you using the ISA server as a caching server? I am not sure why you would run it in this configuration.

Dan
 
I have the same issue as Voirin with the exception of having another NIC to use that is not enabled.

I would prefer not to put the ISA server inside the network at all so I was thinking of enabling the second nic with and IP on the same subnet but excluding it from the LAT. I could assign the second nic a ip from another subnet and place it on the same DMZ I guess but would rather not mess with the 3550 and vlans.

Any ideas for a nice easy solution? I would love to get my exchange 5.5 server relaying asap.

Thanks
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top