Microsoft Isa Server Control PanelWhich product replace TMG functionalityDenis You make some very good points here which I agree to yet there are some specialities of TMG that have to be taken into account In our corporation TMG has filled other gaps than that of a traditional proxy only we have separate content filter systems for regular web and e mail traffic 1. A useful helper to cope with the stubborn apps. Sprint Ends Merger Talks With TMobile Over Control. Microsoft Acquisition to Bring Living Photos to Skype. Microsoft Forefront Threat Management Gateway Forefront TMG, formerly known as Microsoft Internet Security and Acceleration Server ISA Server, is a network router. Although. NET is finally improving things a bit yet still there are so many little and bigger developer studios with specialized LOB applications that just arent able to properly cope with an. NTLM proxy. And even in. NET it is not a given that people use the Default. Network. Credentials of the Credential. Cache.  I strongly believe in role based concepts and sticking permissions to users, not IPs and have people and part time workers moving. TMG Client enables those problematic applications to still get online even as they do not support NTLM proxy servers. Publishing. TMG has become the enabler of a kind of enterprise portal with several web sitesapplications published for employees and specific partners. This includes EAS, RDWeb, OWA and several IIS sites. Fl Studio 9.1 Signature Bundle. I should also mention that most of them are full featured. Project Honolulu is a browserbased management platform that provides a centralized onpremises dashboard for common Windows Server administrative functions. The. Get fast, free assistance preview our new Virtual Agent today. Ask the Virtual Agent. I have the same problem. I have ISA Server 2006 and have set up VPN access. It worked fine, then one day I cant connect from my Win7 machines. Kerberos Constrained Delegation to cope eg. SQL backends and to ensure that the best security protocol in use. Exchange for example is mapped to different hostnames to enable testingtransitioning from account based. Asus G41 Motherboard Drivers For Xp. EAS to certificate based EAS. The VPN functionality using PEAP has solved many remote access needs for certain managers and partners where stuff like our Cisco VPN Client just was to clumsy and maintenance intensive on uncontrolledunknown PCs. Its a pity what happened to PPP and. PAPCHAP and PEAPEAP TLS yet I agree, something has to be done here in the near future. Point 3 is quite obvious and I have no doubt that almost any NGFW or whatever product can solve this. What we regrettably lose is a comfortout of the box experience VPN clients can be a challenge of their own, especially when multiple products. VPN systems. And the clients need to be NAT safe UDP encapsulated or HTTPS. But Im a bit doubtfulhesitant about 1 and 2 Point 1 needs some kind of client software provided by the NGFW manufacturer to force Win. SOCK API calls over the NGFW proxy instead of trying to go directly. Microsoft Isa Server Control System' title='Microsoft Isa Server Control System' />It seems Barracuda has something like this but I havent tested it yethavent checked to what degree. This can certainly be solved in other but clumsy and maintenance intensive ways like establishing a proxy service on a different port with only Basic Auth and requiring to configure all of these LOB apps manually. Point 2 is probably the most difficult to solve. Im not sure which of the manufactures provide proper KCD support, multiple listeners with different auth schemes for different scenarios and mapping single hosts in different ways. And if such a product exists. We are currently in progress migrating our Cisco PIX to Barracuda NG but still struggle with our partner to get the simple stuff firewall rules right so it remains to be seen what Barracuda can do for us on the TMG side. It may take some months or a year. I could let you know how we fared then. It just makes me a little bit nervous when people like KEMP have a TMG deprecation webcast about 2 months ago yet cant show their security module with Kerberos support which was at that time under development Technical realities and requirements. Sincerely. Markus.