MSMVPS.COM
The Ultimate Destination for Blogs by Current and Former Microsoft Most Valuable Professionals.

Disabling Spoof Detection in ISA 2004 Firewalls

Spoof detection in ISA 2004 firewalls is a handy feature that helps protect the firewall from spoof attacks. However, there are some circumstances that generate spurious spoofs , such as when implementing NLB. No problem! Here's the fix, courtesy of our good friend, Barclay Neira:

284811 HOW TO: Disable the IP Spoofing Detection Feature in Internet Security and Acceleration Server

http://support.microsoft.com/?id=284811

Here is the location you would need to update. All other information is the same:

HKEY_LOCAL_MACHINE/SYSTEM/CurrentControlSet/Services/FwEng/Parameters

Thanks Barclay!


Posted Apr 29 2004, 02:31 AM by shinder
Filed under:

Comments

shinder wrote re: Disabling Spoof Detection in ISA 2004 Firewalls
on 10-26-2004 8:36
Are you sure this is ISA 2004 related? The article 284811 subject is ISA 2000. I think ISA 2004 doesn't support NLB (see http://support.microsoft.com/?id=884319). Or can I apply this on ISA 2004 and can handle NLB after it?
TrackBack wrote re:Disabling Spoof Detection in ISA 2004 Firewalls
on 05-19-2005 19:43
^_~,pretty good!csharpsseeoo
TrackBack wrote re:Disabling Spoof Detection in ISA 2004 Firewalls
on 07-22-2005 10:13
Disabling Spoof Detection in ISA 2004 Firewallsooeess

Add a Comment

(required)  
(optional)
(required)  
Remember Me?


Copyright © is the original authors. Blog site is an independent site not sponsored by Microsoft. The Yoda blog server and the Brianna SQL server would like to thank www.ownwebnow.com and www.exchangedefender.com. They wouldn't be here and broadcasting without the generosity of Vlad Mazek and his companies.

Powered by Community Server (Commercial Edition), by Telligent Systems