ISA550 permit HTTPS inbound, error that SSLVPN is already using port
I'm trying to permit HTTPS from anywhere to an internal web server. The ISA is running SSLVPN on one IP address. I am trying to create an ACL and NAT that allows HTTPS on a totally different IP address than the SSLVPN runs on. If I go to Firewall>NAT>Port Forwarding and create a port forwarding rule as follows:
Original Service: HTTPS
Translated Service: HTTPS
Translated IP: Internal server IP address
WAN IP: External server IP address - not the same as the interface IP address
I get the following error:
The service HTTPS already is used by SSLVPN. Please use another service.
I feel like I'm missing something simple/stupid as I can't imagine that you can't have both SSLVPN and an internal HTTPS server running on two totally different IP addresses at the same time. TIA.
The problem is that the original service needs to be HTTPS. I can't use a different port number for that, and I also can't run the VPN on a different port. I would think that since I'm using 2 different IP addresses, it would work just fine. I know with an ASA I can have as many HTTPS rules as I have unique external IP addresses. Thanks for the response though!
ISA500 series small business integrated security appliances can be
accessed, monitored and managed remotely. The below articles will give
you an insight of remote administration settings on ISA500 series
devicesCisco OnPlus Settings on ISA500 Series Integ...
A VPN or Virtual Private Network is a secure network over an unsecure
environment like internet. The VPN allows the remote clients to access
the internal network resources (private network) over the Internet
(public). These are the most common VPN article...
Captive portal is an additional authentication step that can used for
both guests and authenticated users. Clients will see a special web page
for authentication purposes before they are allowed to use the internet
normally. Captive portal makes use of th...