• RSS
  • Twitter
  • FaceBook

ISAserver.org Blogs

ISA Server News Archive

TMG Firewall Policy Tips and Tricks
Date - Apr 30th, 2013
Author - Debra Shinder
Here’s a great article by Richard Hicks on TMG firewall policy tips and tricks! Definitely worth a read! http://www.isaserver.org/tutorials/Forefront-TMG-2010-Policy-Configuration-Management-Tips-Tricks.html HTH, Deb DEBRA LITTLEJOHN SHINDERMVP (Enterprise Security)“MS SECURITY”dshinder@isaserver.org. more...
DirectAccess and NAT
Date - Apr 29th, 2013
Author - Debra Shinder
Have you ever wanted to deploy DirectAccess behind a NAT? If you did, and you tried to use UAG, you were welcomed to a big disappoint, because that scenario just wasn’t support. So while you would have loved to have DirectAccess, there was no way you could support the public IP address requirement. more...
Known Issues–ESET Gateway Security for TMG
Date - Apr 29th, 2013
Author - Debra Shinder
The Release Candidate of ESET Gateway Security for Microsoft Forefront Threat Management Gateway has some known issues, which are documented on the ESET web site. If you’re running (or considering running) the RC beta, you’ll want to check these out so you’ll know what to expect: http://kb.eset.com/esetkb/index?page=content&id=SOLN3331&locale=en_US. more...
ISA/TMG admins looking for new IT certs?
Date - Apr 29th, 2013
Author - Debra Shinder
You’ve had time to work through the stages of grief: You can no longer deny that Microsoft really is discontinuing TMG. You’ve come to realize that being angry at the company for a business decision really doesn’t accomplish anything. You know there’s no use in trying to bargain with them to change their minds. You’ve gotten past the depressed feeling that you might never find another job after devoting a big chunk of your career to learning ISA/TMG. more...
UAG DirectAccess DirectAccess Clients and Repeated OTP prompts
Date - Apr 22nd, 2013
Author - Debra Shinder
OTP support for DirectAccess is a nice feature included in the SP2 release of the UAG DirectAccess Server. However, in certain scenarios, the OTP process can go haywire and stop working and cause multiple OTP prompts. more...
Fastvue TMG Reporter 2.1 now available
Date - Apr 18th, 2013
Author - Debra Shinder
Fastvue TMG Reporter is a great reporting add on for the TMG firewall. While the default logging and reporting tools are pretty nice, Fastvue gives you a complete solution that includes reports on just about anything you want to know as long as that information is included in the TMG firewall’s log files. more...
How to configure an authoritative time server in Windows Server
Date - Apr 17th, 2013
Author - Debra Shinder
What’s time got to do with TMG firewalls? Well, think log files. If you don’t have accurate time on your TMG firewalls, the log files are not going to be accurate and when you need to do forensics, and coordinate TMG log files with other log files on your network, you’re going to be in a world of hurt! Configuring the time server is a bit of a pain, given that you need to go into the registry and set a bunch of keys. more...
Site-to-Azure VPN using Windows Server 2012 RRAS
Date - Apr 15th, 2013
Author - Debra Shinder
Did you know that you can use RRAS in Windows Server 2012 to connect to Azure Virtual Networks? Yes you can! With the recent GA release of Windows Azure Infrastructure Services, you can use RRAS to connect your on premises network to the Azure Virtual Network. They even provide you a script that will enable you to use PowerShell to configure the RRAS server. more...
Firewall Exceptions to allow SCCM Remote Control for DirectAccess clients
Date - Apr 12th, 2013
Author - Debra Shinder
Here’s a great article by Microsoft MVP Shannon Fritz on what firewall exemptions you need to make to support SCCM remote control of DirectAccess clients. Check it out on the Concurrency blog at: http://blog.concurrency.com/featured-post/firewall-exceptions-to-allow-sccm-remote-control-for-directaccess-clients/ HTH, Deb DEBRA LITTLEJOHN SHINDERMVP (Enterprise Security)“MS SECURITY”dshinder@isaserver.org. more...
How to configure the TMG Service Account to avoid problem with logging on SQL Server
Date - Apr 10th, 2013
Author - Debra Shinder
With TMG Firewall’s Service Park 2 you could start using Kerberos authentication when using NLB. This wasn’t something you could do before. Part of the trick to making this work was to enable the TMG firewall service to run under a domain account. However, you always need to consider unintended consequences. Once unintended consequence of running the firewall service under a domain account relates to account names that are used for SQL Server Logging with the TMG firewall. more...

Receive all the latest articles by email!

Receive Real-Time & Monthly ISAserver.org article updates in your mailbox. Enter your email below!
Click for Real-Time sample & Monthly sample

Become an ISAserver.org member!

Discuss your ISA Server issues with thousands of other ISA Server experts. Click here to join!