Well over the Christmas holiday, one of our great volunteers and I finally, after two years of holding off for rediculous excuses put of firewall in place. We redid all the IP's of our internal and external network, moved all trafic over to ISA Server, and everything has been working great.
Just for some humor here is some of the mistakes we have made.
1. Made FTP read only
2. Accidentally blocked all traffic comming into the building
3. Had FTP and Web on the same ISA policy, blocking FTP traffic since web came first.
4. Trying many different ways to get VPN to work, none of which have been really sucessful. It seems to work some of the time but not all of the time. I am wondering if we really need to be running DNS and all those other services on the ISA box. That has worked the best so far. Any one else have any experience with this?
Well that was this last Christmas break...




