Solved

ForeFront TMG Multiple Gateways

Posted on 2010-09-08
6
1,562 Views
Last Modified: 2013-11-16
Hi Guys,

Is it possible to configure 2 x gateways in Forefront TMG,
We have two routers onsite to the internet.
We want to allocate some users to the one gateway and a group of more users to use the second gateway.

Could this be configured in ForeFront TMG?  I realize that the box will require 3 x network cards;
(1 x internal, 2 x external)
0
Comment
Question by:Rupert Eghardt
  • 4
  • 2
6 Comments
 
LVL 51

Expert Comment

by:Keith Alabaster
ID: 33629225
No - it can't. ISA and FTMG have no concept of protocol or user based routing in this context. You can route to different external gateways based on the destination IP address but this is more on the OS routing table rather than anything clever in ISA/FTMG.

Even using the ISP Failover/load-balancing options that now come with FTMG, the balancing is by traffic, not by source user or protocol.

Keith
0
 
LVL 10

Expert Comment

by:simonlimon
ID: 33635543
Maybe you could try using Networking rules, but you will have to filter by Source IPs and not by Usernames.
0
 
LVL 51

Expert Comment

by:Keith Alabaster
ID: 33635868
I say again, it will not work. Period.
0
PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

 
LVL 10

Expert Comment

by:simonlimon
ID: 33635901
You can also try using ISP redundancy mode as explained, I know the question was different and this will be done dynamically.

http://www.isaserver.org/tutorials/Microsoft-Forefront-TMG-ISP-Redundancy-Mode.html
0
 
LVL 51

Accepted Solution

by:
Keith Alabaster earned 500 total points
ID: 33640740
ISP redundancy only uses the alternative route if the primnary fails. ISP load-balancing allows the two connections to be used concurrently but splits the traffic either 50-50 or on a percentage basis selectable by the operator. It will not make decisions based upon protocol, source ip address, or other criteria.

Not trying to rain on anyone's parade but neither ISA or FTMG is geared to do what is being asked.
0
 
LVL 51

Expert Comment

by:Keith Alabaster
ID: 33689365
Are we done here?
0

Featured Post

Does Powershell have you tied up in knots?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Layer 2 versus layer 3 10 41
P2P and MPLS 3 41
PCI Compliance Free scan 2 74
Sonicwall blocks a site 49 43
If you're not part of the solution, you're part of the problem.   Tips on how to secure IoT devices, even the dumbest ones, so they can't be used as part of a DDoS botnet.  Use PRTG Network Monitor as one of the building blocks, to detect unusual…
For many of us, the  holiday season kindles the natural urge to give back to our friends, family members and communities. While it's easy for friends to notice the impact of such deeds, understanding the contributions of businesses and enterprises i…
This tutorial will show how to configure a new Backup Exec 2012 server and move an existing database to that server with the use of the BEUtility. Install Backup Exec 2012 on the new server and apply all of the latest hotfixes and service packs. The…
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.

939 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now