. The commands NETSH ras set tracing * enabled and NETSH ras set tracing *
disabled can be used to enable and disable RRAS tracing.
. Check the Windows Application Event log to view RRAS-specific information that
may not be listed in the ISA logs.
. The command netsh ipsec dynamic set config ikelogging 1 can be used to turn
on IKE logging. The log file is located in C:\WINDOWS\debug\oakley.log. The
command netsh ipsec dynamic set config ikelogging 0 can be used to turn off
IKE logging.
. Use L2TP encryption with PKI certificates whenever possible, rather than PPTP or
L2TP with shared key.
This page intentionally left blank
CHAPTER 11
Understanding Client
Deployment Scenarios
with ISA Server 2006
IN THIS CHAPTER:
. Outlining Client Access with ISA
Server 2006
. Preparing an ISA Environment
for the Firewall Client
. Installing the ISA Firewall Client
. Working with the ISA Firewall
Client There is much confusion about the concept of ISA clients.
For many administrators, the concept of a client often
conjures up images of software components that constantly
need updating, overwriting operating system files, and
clients requiring constant maintenance.
Pages:
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505