Spoof detection in ISA 2004 firewalls is a handy feature that helps protect the firewall from spoof attacks. However, there are some circumstances that generate spurious spoofs , such as when implementing NLB. No problem! Here's the fix, courtesy of our good friend, Barclay Neira:
284811 HOW TO: Disable the IP Spoofing Detection Feature in Internet Security and Acceleration Server
http://support.microsoft.com/?id=284811
Here is the location you would need to update. All other information is the same:
HKEY_LOCAL_MACHINE/SYSTEM/CurrentControlSet/Services/FwEng/Parameters
Thanks Barclay!
Posted
Apr 29 2004, 02:31 AM
by
shinder