1 / 22

Demystifying Forefront Edge Security Technologies – TMG and UAG

SIA208. Demystifying Forefront Edge Security Technologies – TMG and UAG. Richard Hicks Director – Sales Engineering Celestix Networks, Inc. Agenda. Forefront Protection Technologies What is TMG? What is UAG? Typical Deployment Scenarios TMG features UAG features TMG or UAG?.

keira
Télécharger la présentation

Demystifying Forefront Edge Security Technologies – TMG and UAG

An Image/Link below is provided (as is) to download presentation Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author. Content is provided to you AS IS for your information and personal use only. Download presentation by click this link. While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server. During download, if you can't get a presentation, the file might be deleted by the publisher.

E N D

Presentation Transcript


  1. SIA208 Demystifying Forefront Edge Security Technologies – TMG and UAG Richard Hicks Director – Sales Engineering Celestix Networks, Inc.

  2. Agenda • Forefront Protection Technologies • What is TMG? • What is UAG? • Typical Deployment Scenarios • TMG features • UAG features • TMG or UAG?

  3. What You Will Learn • High-Level Understanding of Forefront Protection Technologies • Understand Features and Capabilities of Forefront TMG 2010 • Understand Features and Capabilities of Forefront UAG 2010 • Describe the Similarities and Differences Between Forefront TMG and UAG • Identify Which Solution Best Meets Deployment Requirements

  4. Forefront Protection Technologies • Server Protection • Exchange • SharePoint • OCS/Lync • Identity and Access • Identity Manager • Edge Security • Threat Management Gateway (TMG) • Unified Access Gateway (UAG)

  5. What is Forefront TMG? • Forefront Threat Management Gateway (TMG) 2010 • Integrated edge security gateway • Enterprise-class firewall (Common Criteria EAL4+) • Proxy (forward and reverse) • Web content cache • VPN (remote access, site-to-site) • Successor to ISA Server 2006 • Standard and Enterprise editions

  6. What is Forefront UAG? • Forefront Unified Access Gateway (UAG) 2010 • Premium remote access gateway • SSL VPN web portal • Reverse proxy • Client access VPN • DirectAccess gateway • Successor to IAG 2007

  7. Common Deployment Scenarios • Forefront TMG • Secure web gateway • Protect internal clients • Basic remote access • Forefront UAG • Remote access gateway • Secure application publishing • Advanced remote access • DirectAccess

  8. Forefront TMG and UAG • Forefront TMG • Keeps the bad guys out • Forefront UAG • Lets the good guys in

  9. Forefront TMG – Firewall • Stateful Packet Inspection • Deep Application Layer Inspection • Active Directory Integrated • Transparent authentication using NTLM and Kerberos • Intrusion Detection and Prevention • Behavioral • Vulnerability

  10. Forefront TMG – Secure Web Gateway • Advanced Web Protection • URL filtering • Reputation-based access control • Reduced risk, increased productivity • Web anti-virus/malware • Prevent file-based attacks • Network Inspection System (NIS) • Prevent protocol attacks • HTTPS inspection • Eliminates the SSL blind spot

  11. demo Forefront TMG Advanced Web Protection Richard Hicks Director – Sales Engineering Celestix Networks, Inc.

  12. Forefront UAG – SSL VPN • Premium Remote Access Solution • SSL VPN • Web application portal • Support for publishing non-web applications • Legacy remote access VPN • Fine-grained access control • Device type • Endpoint health detection • UAG policies and NAP integration • Session cleanup • Prevent residual data loss

  13. demo Forefront UAG Web Application Portal Richard Hicks Director – Sales Engineering Celestix Networks, Inc.

  14. Forefront UAG – DirectAccess Gateway • Simplified DirectAccess Deployment • Reduced infrastructure requirements • No intranet IPv6 • No Windows Server 2008/R2 (other than the DA GW) • Includes IPv6 transition technologies • DNS64 • NAT64 • Improved scalability • Load-balanced arrays

  15. TMG or UAG? • TMG • Outbound access • Site-to-site VPN • Legacy client VPN • UAG • Web application portal • Granular access control • DirectAccess gateway

  16. TMG or UAG? • Licensing Considerations • TMG – per processor • Web protection service subscription CAL • UAG – per server • Requires client access licenses (CAL) • Users or devices (not concurrent) • External connector • Required for anonymous access • Enterprise CAL (E-CAL) includes… • TMG web protection service subscription • UAG client access license (CAL)

  17. TMG or UAG? • Publishing Exchange or SharePoint • TMG – Provides basic remote access • UAG – Portal with granular access control • Performance Considerations • TMG – High performance • UAG – Additional hardware requirements

  18. SIA, WSV, and VIR Track Resources Talk to our Experts at the TLC #TESIA208 Hands-On Labs DOWNLOAD Windows Server 2012 Release Candidate microsoft.com/windowsserver DOWNLOAD Microsoft System Center 2012 Evaluation microsoft.com/systemcenter

  19. Resources Learning TechNet • Connect. Share. Discuss. • Microsoft Certification & Training Resources http://europe.msteched.com www.microsoft.com/learning • Resources for IT Professionals • Resources for Developers • http://microsoft.com/technet http://microsoft.com/msdn

  20. Evaluations Submit your evals online http://europe.msteched.com/sessions

  21. © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

More Related