SIA301: Secure Endpoint: DirectAccess and Microsoft Forefront

advertisement

DC

DNS

Today’s focus is UAG DirectAccess

IPv4

Internet

Remote

Host

NAT

HTTP

Proxy

IPv6

Internet

Remote

Host

HTTP

Proxy

Teredo

Server

IPsec

DoS

Protect ion

Server

Teredo Relay

Web responder

Possible IPv4

Connection

Corporate

Network

(IPv4 infrastructure)

ISATAP

Router

Server

6to4

Router

IPsec

Gateway

Server

IP-TLS

IPsec

Gateway

Corporate

Network

(IPv6 infrastructure)

public IP address

address)

NAT (assigned private

IPv6 Transition Technology of “last resort”

TIP: Do not disable IPv6 on ISATAP hosts

Available with UAG only!

Translation

the only

Windows Server 2008 R2 server on the network

NEW!

NEW!

DirectAccess Infrastructure Tunnel

DirectAccess Intranet Tunnel

NEW!

www.contoso.com

Success turns off NRPT these turn on the infrastructure and intranet tunnels

RESULT: Domain WFAS Profile activated and NRPT disabled –No DA tunnels

RESULT: Public or Private Profile activated and NRPT enabled – DA tunnels activated

DirectAccess clients

DirectAccess servers

Application Servers

UAG DirectAccess Step by Step Guide

UAG DirectAccess Design Guide

UAG DirectAccess Deployment Guide

DirectAccess Troubleshooting Guide

DirectAccess Connectivity Assistant (DCA)

TechNet DirectAccess Landing Page

Mega DirectAccess Design and Deployment Guide (WinDA)

Infrastructure Planning and Design Guide for DirectAccess

SIA320 |Business Ready Security: Protecting Endpoints from Advanced Threats with Microsoft's Secure Endpoint

Solution

SIA301 |Secure Endpoint: DirectAccess and Microsoft Forefront Unified Access Gateway 2010, the Complete

Remote Access Solution

SIA308 | Secure Endpoint: Advanced Protection from Dynamic Threats, a Microsoft Forefront Threat

Management Gateway 2010 Deep Dive

SIA309 |Secure Endpoint: What’s in Microsoft Forefront Endpoint Protection 2010 - A Deep Dive into the

Features and Protection Technologies

SIA325 | Secure Endpoint: Virtualizing Microsoft Forefront Threat Management Gateway (TMG)

SIA02-INT | Secure Endpoint: Planning DirectAccess Deployment with Microsoft Forefront Unified Access

Gateway

SIA07-INT | Secure Endpoint: Architecting Forefront Endpoint Protection 2010 on Microsoft System Center

Configuration Manager

SIA05-HOL | Microsoft Forefront Threat Management Gateway Overview

SIA09-HOL | Secure Endpoint Solution: Business Ready Security with Microsoft Forefront and Active Directory

SIA11-HOL | Microsoft Forefront Unified Access Gateway (UAG) and Direct Access: Better Together

Red SIA-3 | Microsoft Forefront Secure Endpoint Solution

Learn more about our solutions: http://www.microsoft.com/forefront

Try our products: http://www.microsoft.com/forefront/trial

www.microsoft.com/teched http://microsoft.com/technet www.microsoft.com/learning http://microsoft.com/msdn

Sign up for Tech·Ed 2011 and save $500 starting June 8 – June 31

st

http://northamerica.msteched.com/registration

You can also register at the

North America 2011 kiosk located at registration

Join us in Atlanta next year

Download