您的位置:首页 > 其它

ForeFront TMG -- ISA 2008功能介绍

2008-04-25 11:37 246 查看
www.isaserver.org上前些日子登出了TOM写的关于下一代ISA 防火墙测试版发布的新闻及功能简要介绍

Introducing the Future of the ISA Firewall — The Forefront Threat Management Gateway (Forefront TMG)

If
you haven’t already heard about this from reading the industry news
that took place last week at the RSA conference, this will come as a
surprise to you. It was announced at RSA that the ISA Firewall’s life
will end with ISA Server 2006. As an ISA 2006 firewall admin, you are
now administering the last version of the ISA Firewall. In the future,
the ISA Firewall will be renamed the Forefront Threat Management
Gateway, or TMG.

I’ve been with you from the beginning of the
life of the ISA Firewall. We here at ISAserver.org supported ISA 2000
from the start, got you up to speed when ISA 2004 introduced wide
sweeping changes to the ISA Firewall’s networking architecture, and
then moved you up to the latest rev of the ISA Firewall, ISA Server
2006.

It’s a bit sad for me to share this news with you. I’ve
lived and breathed ISA for the last 8 years. I’ve worked hard to help
you understand the ISA Firewall and how to configure it in the most
secure fashion, so that you could show the network guys that the ISA
Firewall is the most secure firewall on the market today.

With
the changes coming with the upcoming Forefront TMG, we might need to
start rethinking how we deploy the TMG. For example, should we think of
the TMG as a firewall? Is it something else? Should it be on the edge?
Should be use it as an internal firewall/gateway to protect network
security zones from other network security zones?

These are
hard questions to answer, because the full feature set of the TMG isn’t
in the public domain. I can tell you that I had the opportunity to
learn quite a bit about what’s coming in the future for the TMG and the
upcoming upgrade of the IAG 2007 product while visiting the MS Research
and Development facilities for both the ISA/TMG and IAG products, and I
can tell you that you will definitely see original methods of
significantly increasing the security of your network by upgrading.
While I wish I could share with you all the details, I cannot because
all this information is under a non-disclosure agreement. However, as
soon as I get the OK to share, you will be the first ones to know!

The
TMG is also part of a larger effort, which is code named “Stirling”. I
also had a chance to learn a LOT about the Stirling security solution,
and it’s truly amazing. You might have heard about the concept of the
“Dynamic Systems Initiative” in the past, but we really never saw
anything that looked very dynamic until Stirling. From what I’ve seen
of Stirling, I think you’ll find that it will significantly reduce
administrator overhead for dealing with network security events and
will also provide you with a much clearly view of your current network
security status.

If you want to check out Stirling, you can download it at:

http://technet.microsoft.com/en-us/evalcenter/cc33...9.aspx


To
learn more about TMG and the future of the ISA Firewall, check out the
ISA Server Team Blog for what David Cross has to say about it at:

https://blogs.technet.com/isablog/archive/2008/04/...r.aspx

HTH,

Tom

Thomas W Shinder, M.D.
Site: http://www.isaserver.org/
Blog: http://blogs.isaserver.org/shinder/
GET THE NEW BOOK! Go to http://tinyurl.com/2gpoo8
Email: [email]tshinder@isaserver.org[/email]
MVP — Microsoft Firewalls (ISA)
内容来自用户分享和网络整理,不保证内容的准确性,如有侵权内容,可联系管理员处理 点击这里给我发消息
标签:  休闲 ForeFront TMG ISA2008