Avatar of ACS2012
ACS2012
 asked on

restrict the communication between the TMG servers and the domain controllers

Dear All,

I’m planning to install TMG 2010 servers standalone array in our DMZ and we will join it to our domain, in the internal network we have 6 windows 2008 R2 domain controllers, I’m looking for a way to restrict the communication between the TMG servers and the domain controllers so TMG servers will only communicate two selected domain controllers, not all DC’s, that’s required by the security and network departments.
Can I do that?

Please help.

Thanks
Microsoft Forefront ISA ServerWindows Server 2008Active Directory

Avatar of undefined
Last Comment
pwindell

8/22/2022 - Mon
SOLUTION
Bawer

Log in or sign up to see answer
Become an EE member today7-DAY FREE TRIAL
Members can start a 7-Day Free trial then enjoy unlimited access to the platform
Sign up - Free for 7 days
or
Learn why we charge membership fees
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.
Not exactly the question you had in mind?
Sign up for an EE membership and get your own personalized solution. With an EE membership, you can ask unlimited troubleshooting, research, or opinion questions.
ask a question
ACS2012

ASKER
hi Bawer,

thanks for your reply.

could you please provide me more information like how to do that from the system config? and do i have to make it in TMG  or DC's?

regarding the "you cannot block the authentication of TMG if TMG is requesting the domain for authentication ", what if i colse this by the network so the TMG can communicate two of the domain controllers only?
SOLUTION
GeoTV

Log in or sign up to see answer
Become an EE member today7-DAY FREE TRIAL
Members can start a 7-Day Free trial then enjoy unlimited access to the platform
Sign up - Free for 7 days
or
Learn why we charge membership fees
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.
Not exactly the question you had in mind?
Sign up for an EE membership and get your own personalized solution. With an EE membership, you can ask unlimited troubleshooting, research, or opinion questions.
ask a question
ACS2012

ASKER
that's from TMG, how i can make it also from windows? i need to restrict everything, windows and TMG.
GeoTV

When you installs TMG then Windows Firewall control was taken by TMG.  Whatever you control from TMG is also work for Windows as well.
Your help has saved me hundreds of hours of internet surfing.
fblack61
ASKER CERTIFIED SOLUTION
Log in to continue reading
Log In
Sign up - Free for 7 days
Get an unlimited membership to EE for less than $4 a week.
Unlimited question asking, solutions, articles and more.