Quantcast
Viewing all 3822 articles
Browse latest View live

allowing https sites

Recently i install isa 2004 in win server 2003. But i m not able to allow only https site. Could any one help me. Thank you

TMG Problems 10060

Hello All,

we are with a new application here, but whem we try to acess it trough the TMG proxy it don't complete the request.

Follow the error

Could you help me?
 
Failed Connection
Attempt
<id id="L_LogPane_LogType">Log type:</id><id id="L_LogPane_WebProxyForward">Web
Proxy (Forward)</id>
<id id="L_LogPane_Status">Status:
</id>10060 A connection attempt failed because the connected party did
not properly respond after a period of time, or established connection failed
because connected host has failed to respond.
<id id="L_LogPane_Rule">Rule:</id>TUDO
<id id="L_LogPane_Source">Source:</id>Internal
<id id="L_LogPane_Destination">Destination:</id>External
Protocol:SSL-tunnel
<id id="L_LogPane_User">
</id>

TMG blocks iOS update

TMG blocks iOS update

Please help

Failed Connection Attempt MIR 10/22/2015 9:33:13 AM
Log type: Web Proxy (Forward)
Status: 12210 An Internet Server API (ISAPI) filter has finished handling the request. Contact your system administrator.  
Rule: Mismunya
Source: Internal (10.55.2.158:49287)
Destination: External (188.43.74.187:80)
Request: GET http://188.43.74.187/ios9.1/031-41419-20151021-CD547CC8-7438-11E5-A856-C338EA3307CC/com_apple_MobileAsset_SoftwareUpdate/1e57f72fdc1e5f88283e30a588521532e399bab5.zip
Filter information: Req ID: 0c1eae26; Compression: client=No, server=Yes, compress rate=0% decompress rate=0%
Protocol: http
User: anonymous

Error: Daily Summary last success date does not exist for server

We are running Forefront Threat Management Gateway 2010 SP1 and monitoring it with System Center Operations Manager 2007R2 (RU4). All of the reporting appears to be working correctly, but I am showing an error in SCOM that states: Error: Daily Summary last success date does not exist for server. How can I clear this error? Can you send me a kb fix?

List Internal IP clients

Hello!

I have a question about listing all internal users that are passing through Forefornt TMG.

We have a network protected and filtered with Forefront TMG. I would like to list all internal clients connected to the internet at the particular moment. So is it possible to get the list off all internal IPs that are currently connected to internet. I am not interested in all connections and sessions, but only list of currently connected internal IP addresses.

Thank you!

Inbound SMTP traffic to multiple CAS servers

Hi,

I have multiple Exchange 2013 CAS server for HA. How do I configure firewall rule for inbound SMTP traffic so that mail flow will not be interrupted when the primary CAS server has an issue? Thanks for the advise.

Jim

Forefron tmg access rule

Hello

I created Access rule on port 3389 from my one IP adress to TMG server, and it's work, but When I created rule from internal network to TMG, from only domain admins it does not work, please give me a solution

internal server cant able to telnet to GMAIL SMTP

Hello All,

I have a UXIX servers and that server Internet traffic going through to TMG 2010 with One lan card,

I have a problem facing when i want to access GMAIL SMTP through TELNET 25 port from my server....its not connected time out error message generated...

I want to take GMAIL-SMTP telnet acess from my HPUX servers...

Please help here...



DVR Mobile App

Any one tell me the DVR App

DVR 

TMG 2010 Web Chaining (Upstream Proxy Server)

Hi all,

I was hoping someone could clear up some confusion we have in relation to the failover mechanism employed by TMG 2010 (Standard Edition) in forwarding traffic to an upstream proxy server. Our TMG instance forwards traffic to a pair of Cisco IronPort Web Security Appliances (Primary & Secondary). We also have Connectivity Verifiers to these appliances to ensure they are still available.

My question is this. Do the Connectivity Verifiers influence the TMG mechanism that decides when to failover from the primary upstream proxy to the secondary? My reason for asking is that, recently we have observed TMG switching from primary to secondary for a short period of time (2-3 minutes) even when the primary upstream proxy is still available. If I increased the threshold in the Connectivity Verifier would this reduce the number of failovers?

Any assistance would be much appreciated.

John P

Allowing Dropbox in TMG

Does anyone know how to allow desktop dropbox application on TMG. 

Is TMG (Reverse Proxy) compatible with SHA-02 certificates

I have been asked to upgrade SHA-01 certificates to SHA-02 which are mapped to TMG 2010 Listeners.

I am not sure If TMG supports SHA-02. Can anyone please confirm if TMG Supports SHA-02.  I am only concerned about TMG as a  Reverse proxy

Thanks,

Guru

Forefront TMG Denied Connection

TNet,

I posted a picture below of the Connection Denied message I receive from Forefront TMG when connecting to OWA from an external network via CAC card. It works without CAC. I have tried recreating the rule in every combination possible and receive no errors on the "rule test" however, the logging options shows Connection Denied after inputting my PIN. It never seems to pass it off to the TMG server inside address but does hit the TMG outside private address. What I find weird is that the website is HTTPS as you can see the request but the GET statement in the embeded picture shows GET HTTP. We aren't sure if that's where our problem lies. I don't believe it to be a rule issue as it stopped working without user intervention. Also, the logs don't show what rule it's hitting unless it doesn't get far enough

Some things I've tried

1) Check time/date of both client/server

2) Removed the firewall GPO conflicting with the TMG firewall

3) Enable CAPI2 and look at application logs

Any help is appreciated

The CACI log shows the below error:

Error Description: 0x800B010F: The certificate's CN name does not match the passed value

In case you can't see the embeded file, it says Status:12302 The server denied the specified Unform Resource Locater (URL). Contact the server administrator
Request: GET http://webmail/OWA

Image may be NSFW.
Clik here to view.




I cant open certain website cause of TMG

Hi there 

i am using TMG 2010 and am applying some policies for allowing and denying and every thing fine,,

recently a one of the users tried to open www.kswc.gov.sd/new ,,, but he could not , and when i tried to open it from TMG i got the erroe code  

  • Error Code 10060: Connection timeout
  • Background: The gateway could not receive a timely response from the website you are trying to access. This might indicate that the network is congested, or that the website is experiencing technical 

then i tried to make a new role policy for just allowing the internal and local host to go to the specific URL (www.kswc.gov.sd/new)

but still cannot access ,,,,

and for records it works (www.kswc.gov.sd/new) when i open it without TMG 

dont know what to do

waiting for help

Vpn Error Code 800

hello,

i am enabled VPn throw TMG2010 it working fine till yesterday,

today i give one user access vpn to access something form outside, but complain to me he cannot connected 

also i tried to connect but no luck, i disabled vpn client and enabled again but not working.

please help me to solve this problem 


ISA Report Cannot show Data

Dear All Member

I using ISA for the internet access very month i generate report automatic is OK but this october 2015  Data is not show on format html

Please help to advise ?

Image may be NSFW.
Clik here to view.

tmg edge server not allowing outlook clients my email server is hosted any where else

tmg edge server not allowing outlook clients my email server is hosted any where else is there any setting, i have create rule smtp pop3 imap4 from internal to external, any other settings in any are 

TMG2010 3-Leg Network topology Problem with Primeter Network Internet Access

I am facing a Very Strange Issue I am using TMG2010 with 3leg network template, I have 4 NIC'S to my TMG2010, and also TMG2010 is on server2008 with Active Directory on Server2012. now everything works just fine if i use clients on Internal Network on which DC, TMG resides, but when i try to put network on Primeter Network which is 172.16.0.x/24 Network, Even if i add this primeter Network to NAT (FROM INTERNAL/PRIMETER -> External). when i see logs it says rule denied (From Primeter to Localhost)

HTTP proxy... Now i not only enabled web proxy on this NIC but also created a Rule with Allow having protocols like DNS,HTTP,HTTPS FROM Primeter to LocalHost but it doesent work?

Which Rule am i missing here and why is this rule is blocked when i created manually it and applied it ????

I need help on that!

Looking forward

S.jalal haider

problem loading documents

In the company is protected by a Forefront TMG 2010 server, users upload .doc .pdf documents to be sent to remote servers. mentioned document can not be sent because the connection closes foreront giving the following error:

Error Code 64: Host not available

Context: The gateway or proxy server lost connection to the web server.

Server: PROXY.poli.local

Please let me be wanting to rule that the burden is satisfactory.

Error Code 10061: Connection refused

Intermitent error accessing Facebook

Failed Connection Attempt

10061 No connection coulld be made because target machine actively refuse it

Source Internal 10.197.4.2:17782

Destination Local Host 127.0.0.1:443

Request es-la.facebook.com:443

Protocol SSL-Tunnel

TMG2010 over 20087 R2 64 Bits

Viewing all 3822 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>