Answered by:
Can we use same ISA for Ede and CWA?

Question
-
Hi, In my setup I already have Edge with ISA Reverse Proxy and pretty soon I am going to deploy CWA as well. I was just wondering, can I use same ISA server for CWA External which I used for Edge Server.
If yes, then do I need to assign another public IP to frontend NIC of ISA Server and get that address published on Public DNS for CWA. Is that how it works?
Or do I need to have a another server with ISA on it for CWA External Publishing?
Please help!
~Manish
Friday, October 9, 2009 3:26 AM
Answers
-
Manish, you can in face use the same ISA server, you'll just likely need to add another publishing rule and ideally under a new IP address. And yes, you can add another IP address to the ISA server to accomplish this. You can even use the same IP address and just use unsecured http for CWA but that isn't best practice
For instance, ideally you would have publishing rules as follows
1.1.1.1:443 ISA Reverse Proxy
1.1.1.2:443 CWA
Hope that makes sense, it's a fairly simple concept- Marked as answer by Manish Malik Friday, October 9, 2009 4:37 AM
Friday, October 9, 2009 4:30 AM
All replies
-
Manish, you can in face use the same ISA server, you'll just likely need to add another publishing rule and ideally under a new IP address. And yes, you can add another IP address to the ISA server to accomplish this. You can even use the same IP address and just use unsecured http for CWA but that isn't best practice
For instance, ideally you would have publishing rules as follows
1.1.1.1:443 ISA Reverse Proxy
1.1.1.2:443 CWA
Hope that makes sense, it's a fairly simple concept- Marked as answer by Manish Malik Friday, October 9, 2009 4:37 AM
Friday, October 9, 2009 4:30 AM -
Hey,
Thanks for your reply. I'll plan it that way.
Best Regards,
ManishFriday, October 9, 2009 4:39 AM -
Hi ON-IT,
So you can have ISA, OCS 2007 R2 EDGE and CWA all running on the same box? Just want to confirm. Thank you.Thursday, December 17, 2009 7:35 PM -
Maybe this will help regarding colocation.
http://technet.microsoft.com/hi-in/library/dd425201(en-us,office.13).aspx
Normally your CWA server would be running inside your network while the ISA and Edge server would be sitting in the DMZ. I don't believe that colocating these roles is a supported config.
Matt Nixon | http://unifiedmatt.blogspot.comFriday, December 18, 2009 3:51 AM