IPSec / SSL VPN, Security

Microsoft UAG – Invalid External Port bug

René Jorissen on November 2, 2011 4 Comments • Tags: #2010 #a #access #activated #address #be #cannot #choose #different #due #external #following #forefront #gateway #invalid #microsoft #port #sp1 #the #to #uag #unified

Last week I have installed a Microsoft UAG array. I installed Microsoft ForeFront Unified Access Gateway 2010 including Service Pack 1. When using an array configuration you have to deploy Microsoft’s Network Load Balancing (NLB) for redundancy and load balancing purposes. I configured NLB with multicast and IGMP support. I had configured some HTTPS trunks … Read More

Configuration Example

Microsoft CA certificate validity period

René Jorissen on June 15, 2009 0 Comments • Tags: #ca #certificate #client #microsoft #period #registry #validity

Using a Microsoft CA is very common in network to issue self-signed certificates. Last week I had to configure a Windows IIS server with client certificate authorization. Remote people (non Active Directory users) need a client certificate to browse to a specific website. The communication between the remote user and the website is secure by … Read More

IPSec / SSL VPN, Proxy

Microsoft IAG

René Jorissen on November 25, 2008 0 Comments • Tags: #appliance #application #cag #cisco #csg #gateway #iag #intelligent #isa #juniper #microsoft #sa #ssl #vpn #webvpn

It has been a while since my last post, but time is short these days. Today I had to troubleshoot a Microsoft IAG appliance. Microsoft IAG stands for Microsoft Intelligent Application Gateway. And indeed, intelligent it is. NOT. I have seen and configured multiple SSL VPN solutions like Juniper SA, Citrix Access Gateway, Citrix Secure … Read More

Firewalling, IPSec / SSL VPN

Microsoft Outlook through Citrix Access Gateway SSL IP VPN

René Jorissen on October 31, 2008 1 Comment • Tags: #135 #1536 #access #administrator #ampr #amprinter #cag #citrix #epmap #exchange #gateway #inter #ip #microsoft #outlook #ssl #tcp #vpn

One of our customers wants you use their locally installed Microsoft Outlook through a Citrix Access Gateway (CAG). Sales people from that customer travel through the country and use the Outlook offline to read or prepare e-mail to send later. These people use UMTS technology to connect their laptops to the Internet. The customers wants … Read More

Other stuff...

Exchange 2007 with ISA 2006

René Jorissen on May 5, 2008 2 Comments • Tags: #2006 #2007 #access #active #exchange #isa #isaserverorg #ldaps #microsoft #outlook #owa #publish #radius #server #sync #web

Today I have be working on publishing Microsoft Exchange Outlook WebAccess and Active Sync to the Internet. We had some discussions with some Microsoft Consultants about a secure way to publish Outlook Web Access to the Internet, especially the authentication part of such a solution. Some people are talking about publishing OWA directly to the … Read More