I am having trouble with an ISA install at a client site.
A little background info. This server had the motherboard get fried from a lightning strike that came in through the cable modem line, blew out router, blew out switch and blew out WAN connection on server which warranted the motherboard replacement in the server since it was onboard. We replaced the Motherboard, rebooted clients and clients could not talk to server, server could not talk to internet or talk to workstations. This occuring mid week and mid day and 25 users that could not work we uninstalled ISA. Did some research and was then confident we could reinstall ISA and get everything back up and running off hours.
After the reinstall and reconifguring some extra rules to allow Managed Workplace to function we thought everything was working fine until we had a wireless laptop that could not connect. We discoverd that the laptop could not DHCP. We also learned we could break additional computers by doing a DHCP release and renew. Result was limited or no connectivity. If we gave the devices static ips, everything appears well except for the fact that the clients can no longer autodetect the ISA server in the firewall client. on static clients I had to manually set the ISA server.
After more troubleshooting and watching the ISA log I am seeing that DHCP requests are getting denied. I connected to another known working ISA box and verified all the firewall pollicies and everything looks good but i still can not find why clients can not DHCP or autodetect ISA server. Below is the Denied message from ISA:
Denied Connection
Log Type: Firewall service
Status: The Policy rules do not all the user request.
Rule:
Source: Internal (0.0.0.0:68)
Destination: Local Host (255.255.255.255:67)
Protocol: DHCP (request)
User:
Any guidance would be appreciated.
|