SlideShare a Scribd company logo
Overview
Forefront Unified Access Gateway 2010
delivers comprehensive, secure remote
access to corporate resources for employees,
partners, and vendors from a diverse range
of endpoints and locations, including
managed and unmanaged PCs and
mobile devices.
Building on the secure remote access
capabilities in Microsoft Intelligent
Application Gateway 2007, Forefront UAG
draws on a combination of connectivity
options, ranging from SSL VPN to
Windows® DirectAccess, as well as built-in
configurations and policies These enable
Forefront UAG to provide centralized and
easy management and thereby reduce
management costs. In addition, Forefront
UAG integrates a deep understanding of the
applications published, the state of health of
the devices being used to gain access, and
the user’s identity to enforce granular access
controls and policies.
Key Features and Benefits
Access anywhere
Empowers users to be productive from
virtually any device or location
Forefront UAG acts as a consolidated gateway
from a diverse range of endpoints and
locations, providing access through a single
Microsoft® Forefront™ Unified
Access Gateway 2010 delivers
secure, anywhere-access to
messaging, collaboration, and
other resources, increasing
productivity while maintaining
compliance with policy.
Forefront Unified Access
Gateway provides a single
solution for administrators to
deliver access and implement
granular policies based on the
user’s identity and the health
of the device.
www.microsoft.com/uag
Comprehensive, secure remote access to corporate resources
SSL•VPN
Windows 7
DirectAccess DirectAccess
DirectAccessSSL • VPN
PDA
SSL • VPN
Windows Vista /
Windows XP
Windows Server 2008 R2 Direct Access Server
+
Microsoft Forefront Unified Access Gateway
Windows
Server 2008 R2
Windows
Server 2008 R2
Windows
Server 2008 R2
Windows
Server 2003
Legacy
Application Server
Non-Windows
Server
IPv6 IPv6
IPv4IPv4
or
IPv6
Always On
Seamless and secure remote connectivity with DirectAccess
With DirectAccess in Windows 7 and
Windows Server® 2008 R2, mobile workers
can seamlessly and securely access the entire
corporate network—file shares, intranet, and
line-of-business applications—wherever they
have an Internet connection. Forefront UAG
works with DirectAccess to:
n	 Extend these benefits to legacy
applications and resources, and support
down-level
and non-Windows clients through
integrated SSL VPN capabilities and
other connectivity options.
n	 Limit exposure associated with connecting
unmanaged, down-level, and non-
Windows clients through granular access
controls and policies.
n	 Protect the DirectAccess gateway with
a hardened edge solution and built-in
firewall.
n	 Simplify deployment using built-in
wizards and tools.
n	 Support scalabilty and ongoing
administration through built-in
array management and integrated
load balancing.
portal. Remote users—employees, partners,
and customers—can access Web and non-
Web applications and gain full VPN access
to corporate networks including internal file
shares and client server applications.
Simplifies secure remote access
Forefront UAG supports a wide range of
Microsoft applications, including Microsoft
SharePoint®, Microsoft Exchange Server,
Remote Desktop Services, and Microsoft
Dynamics® CRM through predefined
optimizer modules. These modules include
optimum settings and rules for securing
specific applications and are based on
deep research into application behavior,
browser–server interactions, and endpoint
requirements. UAG also supports third-party
applications such as CRM, ERP, and HR.
Administrators can publish the following
types of applications using Forefront UAG:
n	 Web applications and Web farms via
reverse proxy.
n	 RemoteApps through a Forefront UAG
portal by using Remote Desktop Services
(Terminal Services) with an integrated
Remote Desktop Services Gateway.
n	 Non-Web applications over a
secure connection using socket or
port forwarding as well as VPN
connections.
Extends Windows DirectAccess
Forefront UAG delivers DirectAccess to
legacy applications and resources running
on existing infrastructure and supports
down-level and non-Windows clients
through integrated SSL VPN capabilities
and other connectivity options.
Integrated security
Enhances security and increases
corporate compliance
n	 Limits exposure through a combination
of granular access policies, deep
endpoint health inspection, and user
authorization information.
n	 Enables administrators to set up policies
that specify prerequisites that endpoints
must meet for each transaction. They can
implement these using built-in Forefront
UAG or Network Access Protection (NAP)
policies downloaded from a Network
Policy Server (NPS).
Enables a variety of strong
authentication methods
n	 Integrates with Active Directory® and
easily overlays a wide variety of 	
third-party authentication solutions and
repositories, allowing for strong
authentication and enforcement
through granular policies. This helps
ensure that only authorized users or
groups can access particular applications
or execute transactions.
n	 Leverages credentials provided during
a session to enable single sign-on to
internal applications.
Simplified management
Reduces total cost of ownership by
consolidating infrastructure
Delivers remote access connectivity
through a combination of VPN, SSL VPN,
Web publishing, and DirectAccess. This
enables organizations to standardize and
consolidate a disparate infrastructure onto
one cost-effective platform.
Simplifies deployment and ongoing
management
n	 Offers flexibility through a variety
of form factors including hardware
appliance (through OEM partners),
virtual machines, and server software.
n	 Facilitates the grouping of multiple
Forefront UAG servers into an array.
All array members share the same
configuration and can be managed as
a single entity.
n	 Uses wizards to simplify initial
deployment and key ongoing tasks.
n	 Easily integrates Forefront UAG logging
through Microsoft SQL Server® and
management through System Center
Operations Manager.
Reduces support costs by simplifying
connectivity for users
Typically security and access technologies
are fragmented, resulting in a complex user
experience. Forefront UAG consolidates
access to corporate resources, simplifying
the user’s experience and reducing support
calls and their costs.
For more information about
Forefront Unified Access Gateway
2010, visit www.microsoft.com/uag
©2010 Microsoft Corporation. All rights reserved. This document is for informational purposes only. MICROSOFT MAKES NO WARRANTIES, EXPRESS OR IMPLIED, IN THIS SUMMARY.
Internet
Network Access
Endpoint Browser
DirectAccess
Mobile
Microsoft
Applications
LOB
Applications
Corporate Network
Remote
Desktop
Services
Endpoint
Access
Control
Authentication
Home Computer
Extranet Partners
Employees
Managed Machines
HTTPS / HTTP
System Requirements
Features and functionality described require a 2.66 GHz or faster processor with dual core CPU; 4 GB RAM; 30 GB available hard-disk space; Windows
Server 2008 R2 Standard (RTM release) or Windows Server 2008 R2 Enterprise (RTM release) X64 bit editions; at least two network adapters.

More Related Content

Similar to Forefront Unified Access Gateway

Bc product overview_v2c
Bc product overview_v2cBc product overview_v2c
Bc product overview_v2c
Saurav Aich
 
Cloudflare Access
Cloudflare AccessCloudflare Access
Cloudflare Access
Meghan Weinreich
 
Benefits of Fortigate Firewall Solutions for Remote Workforces.pptx
Benefits of Fortigate Firewall Solutions for Remote Workforces.pptxBenefits of Fortigate Firewall Solutions for Remote Workforces.pptx
Benefits of Fortigate Firewall Solutions for Remote Workforces.pptx
Trustly Technology Solutions Pvt. Ltd.
 
Securing Internal Applications with Cloudflare Access - April 2018
Securing Internal Applications with Cloudflare Access - April 2018Securing Internal Applications with Cloudflare Access - April 2018
Securing Internal Applications with Cloudflare Access - April 2018
Meghan Weinreich
 
Brochure stonegate sslvpn-x_a4x
Brochure stonegate sslvpn-x_a4xBrochure stonegate sslvpn-x_a4x
Brochure stonegate sslvpn-x_a4x
RyanPaul Mandel
 
Fortinet vs Instasafe Zero Trust - A Comparative Guide
Fortinet vs Instasafe Zero Trust - A Comparative GuideFortinet vs Instasafe Zero Trust - A Comparative Guide
Fortinet vs Instasafe Zero Trust - A Comparative Guide
InstaSafe Technologies
 
Forti os ngfw
Forti os ngfwForti os ngfw
Forti os ngfw
Nicolas su
 
Securing Internal Applications with Cloudflare Access
Securing Internal Applications with Cloudflare AccessSecuring Internal Applications with Cloudflare Access
Securing Internal Applications with Cloudflare Access
Cloudflare
 
SECURE ACCESS GATEWAYS
SECURE ACCESS GATEWAYSSECURE ACCESS GATEWAYS
SECURE ACCESS GATEWAYS
Array Networks
 
WEB SERVERS
WEB SERVERSWEB SERVERS
WEB SERVERS
webhostingguy
 
Microsoft Forefront - Unified Access Gateway 2010 Datasheet
Microsoft Forefront - Unified Access Gateway 2010 DatasheetMicrosoft Forefront - Unified Access Gateway 2010 Datasheet
Microsoft Forefront - Unified Access Gateway 2010 Datasheet
Microsoft Private Cloud
 
2010fall ch31 naymka
2010fall ch31 naymka2010fall ch31 naymka
2010fall ch31 naymka
Bayarmaa GBayarmaa
 
Array Networks - Secure Access Gateways
Array Networks - Secure Access GatewaysArray Networks - Secure Access Gateways
Array Networks - Secure Access Gateways
Array Networks
 
Identity Manager & AirWatch Cloud Mobile App - Infographic
Identity Manager & AirWatch Cloud Mobile App - InfographicIdentity Manager & AirWatch Cloud Mobile App - Infographic
Identity Manager & AirWatch Cloud Mobile App - Infographic
VMware Academy
 
3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...
3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...
3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...
Jürgen Ambrosi
 
Get more versatile and scalable protection with F5 BIG-IP
Get more versatile and scalable protection with F5 BIG-IPGet more versatile and scalable protection with F5 BIG-IP
Get more versatile and scalable protection with F5 BIG-IP
F5NetworksAPJ
 
Sangfor SSL VPN Brochure
Sangfor SSL VPN BrochureSangfor SSL VPN Brochure
Sangfor SSL VPN Brochure
Sangfor Technologies USA
 
IronNetworks-MCE-Appliance-Gateway-Datasheet
IronNetworks-MCE-Appliance-Gateway-DatasheetIronNetworks-MCE-Appliance-Gateway-Datasheet
IronNetworks-MCE-Appliance-Gateway-Datasheet
Vishal Mittal
 
what are the security features provided by Mendix for application development...
what are the security features provided by Mendix for application development...what are the security features provided by Mendix for application development...
what are the security features provided by Mendix for application development...
kzayra69
 
RETOS ACTUALES E INNOVACIÓN SOBRE EL CONTROL DE ACCESOS PRIVILEGIADOS.
RETOS ACTUALES  E INNOVACIÓN  SOBRE EL CONTROL DE ACCESOS PRIVILEGIADOS.RETOS ACTUALES  E INNOVACIÓN  SOBRE EL CONTROL DE ACCESOS PRIVILEGIADOS.
RETOS ACTUALES E INNOVACIÓN SOBRE EL CONTROL DE ACCESOS PRIVILEGIADOS.
Cristian Garcia G.
 

Similar to Forefront Unified Access Gateway (20)

Bc product overview_v2c
Bc product overview_v2cBc product overview_v2c
Bc product overview_v2c
 
Cloudflare Access
Cloudflare AccessCloudflare Access
Cloudflare Access
 
Benefits of Fortigate Firewall Solutions for Remote Workforces.pptx
Benefits of Fortigate Firewall Solutions for Remote Workforces.pptxBenefits of Fortigate Firewall Solutions for Remote Workforces.pptx
Benefits of Fortigate Firewall Solutions for Remote Workforces.pptx
 
Securing Internal Applications with Cloudflare Access - April 2018
Securing Internal Applications with Cloudflare Access - April 2018Securing Internal Applications with Cloudflare Access - April 2018
Securing Internal Applications with Cloudflare Access - April 2018
 
Brochure stonegate sslvpn-x_a4x
Brochure stonegate sslvpn-x_a4xBrochure stonegate sslvpn-x_a4x
Brochure stonegate sslvpn-x_a4x
 
Fortinet vs Instasafe Zero Trust - A Comparative Guide
Fortinet vs Instasafe Zero Trust - A Comparative GuideFortinet vs Instasafe Zero Trust - A Comparative Guide
Fortinet vs Instasafe Zero Trust - A Comparative Guide
 
Forti os ngfw
Forti os ngfwForti os ngfw
Forti os ngfw
 
Securing Internal Applications with Cloudflare Access
Securing Internal Applications with Cloudflare AccessSecuring Internal Applications with Cloudflare Access
Securing Internal Applications with Cloudflare Access
 
SECURE ACCESS GATEWAYS
SECURE ACCESS GATEWAYSSECURE ACCESS GATEWAYS
SECURE ACCESS GATEWAYS
 
WEB SERVERS
WEB SERVERSWEB SERVERS
WEB SERVERS
 
Microsoft Forefront - Unified Access Gateway 2010 Datasheet
Microsoft Forefront - Unified Access Gateway 2010 DatasheetMicrosoft Forefront - Unified Access Gateway 2010 Datasheet
Microsoft Forefront - Unified Access Gateway 2010 Datasheet
 
2010fall ch31 naymka
2010fall ch31 naymka2010fall ch31 naymka
2010fall ch31 naymka
 
Array Networks - Secure Access Gateways
Array Networks - Secure Access GatewaysArray Networks - Secure Access Gateways
Array Networks - Secure Access Gateways
 
Identity Manager & AirWatch Cloud Mobile App - Infographic
Identity Manager & AirWatch Cloud Mobile App - InfographicIdentity Manager & AirWatch Cloud Mobile App - Infographic
Identity Manager & AirWatch Cloud Mobile App - Infographic
 
3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...
3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...
3° Sessione - VMware Airwatch, la gestione della mobilità nelle organizzazion...
 
Get more versatile and scalable protection with F5 BIG-IP
Get more versatile and scalable protection with F5 BIG-IPGet more versatile and scalable protection with F5 BIG-IP
Get more versatile and scalable protection with F5 BIG-IP
 
Sangfor SSL VPN Brochure
Sangfor SSL VPN BrochureSangfor SSL VPN Brochure
Sangfor SSL VPN Brochure
 
IronNetworks-MCE-Appliance-Gateway-Datasheet
IronNetworks-MCE-Appliance-Gateway-DatasheetIronNetworks-MCE-Appliance-Gateway-Datasheet
IronNetworks-MCE-Appliance-Gateway-Datasheet
 
what are the security features provided by Mendix for application development...
what are the security features provided by Mendix for application development...what are the security features provided by Mendix for application development...
what are the security features provided by Mendix for application development...
 
RETOS ACTUALES E INNOVACIÓN SOBRE EL CONTROL DE ACCESOS PRIVILEGIADOS.
RETOS ACTUALES  E INNOVACIÓN  SOBRE EL CONTROL DE ACCESOS PRIVILEGIADOS.RETOS ACTUALES  E INNOVACIÓN  SOBRE EL CONTROL DE ACCESOS PRIVILEGIADOS.
RETOS ACTUALES E INNOVACIÓN SOBRE EL CONTROL DE ACCESOS PRIVILEGIADOS.
 

More from Microsoft Norge AS

Microsoft Dynamics AX 2012 brosjyre
Microsoft Dynamics AX 2012 brosjyreMicrosoft Dynamics AX 2012 brosjyre
Microsoft Dynamics AX 2012 brosjyre
Microsoft Norge AS
 
Micr00542 komm brosj_3101_godkjent
Micr00542 komm brosj_3101_godkjentMicr00542 komm brosj_3101_godkjent
Micr00542 komm brosj_3101_godkjent
Microsoft Norge AS
 
Microsoft dynamics crm brosjyre 2011
Microsoft dynamics crm brosjyre 2011Microsoft dynamics crm brosjyre 2011
Microsoft dynamics crm brosjyre 2011Microsoft Norge AS
 
Norske skog finansavisen jan 24 2011
Norske skog finansavisen jan 24 2011Norske skog finansavisen jan 24 2011
Norske skog finansavisen jan 24 2011Microsoft Norge AS
 
Sparer 15 millioner på ny ikt plattform
Sparer 15 millioner på ny ikt plattformSparer 15 millioner på ny ikt plattform
Sparer 15 millioner på ny ikt plattformMicrosoft Norge AS
 
Ms webfourm nettskyen okt2010
Ms webfourm   nettskyen okt2010Ms webfourm   nettskyen okt2010
Ms webfourm nettskyen okt2010
Microsoft Norge AS
 
Microsoft Dynamics CRM
Microsoft Dynamics CRMMicrosoft Dynamics CRM
Microsoft Dynamics CRM
Microsoft Norge AS
 
Sony vaio tilbud
Sony vaio tilbudSony vaio tilbud
Sony vaio tilbud
Microsoft Norge AS
 
Seniornett åpner klubb nummer 100
Seniornett åpner klubb nummer 100Seniornett åpner klubb nummer 100
Seniornett åpner klubb nummer 100Microsoft Norge AS
 
Hvorfor vi vedder alt på nettskyen, og hvilke fordeler det kan gi deg
Hvorfor vi vedder alt på nettskyen, og hvilke fordeler det kan gi degHvorfor vi vedder alt på nettskyen, og hvilke fordeler det kan gi deg
Hvorfor vi vedder alt på nettskyen, og hvilke fordeler det kan gi degMicrosoft Norge AS
 
Iam
IamIam
Communications server 14 ep groadmap3
Communications server 14 ep groadmap3Communications server 14 ep groadmap3
Communications server 14 ep groadmap3
Microsoft Norge AS
 
Iam
IamIam
Communications server 14 ep groadmap3
Communications server 14 ep groadmap3Communications server 14 ep groadmap3
Communications server 14 ep groadmap3
Microsoft Norge AS
 
Service Manager Cloud Seminar introcustext
Service Manager Cloud Seminar introcustextService Manager Cloud Seminar introcustext
Service Manager Cloud Seminar introcustext
Microsoft Norge AS
 
Part2 DC Man Vision and Roadmap Finalcustext
Part2 DC Man Vision and Roadmap FinalcustextPart2 DC Man Vision and Roadmap Finalcustext
Part2 DC Man Vision and Roadmap Finalcustext
Microsoft Norge AS
 
Case dagens it - grønn it konkurranse - final
Case   dagens it - grønn it konkurranse - finalCase   dagens it - grønn it konkurranse - final
Case dagens it - grønn it konkurranse - finalMicrosoft Norge AS
 

More from Microsoft Norge AS (20)

Microsoft Dynamics AX 2012 brosjyre
Microsoft Dynamics AX 2012 brosjyreMicrosoft Dynamics AX 2012 brosjyre
Microsoft Dynamics AX 2012 brosjyre
 
Micr00542 komm brosj_3101_godkjent
Micr00542 komm brosj_3101_godkjentMicr00542 komm brosj_3101_godkjent
Micr00542 komm brosj_3101_godkjent
 
Microsoft dynamics crm brosjyre 2011
Microsoft dynamics crm brosjyre 2011Microsoft dynamics crm brosjyre 2011
Microsoft dynamics crm brosjyre 2011
 
Nyhetsbrev IKT i samfunnet
Nyhetsbrev IKT i samfunnetNyhetsbrev IKT i samfunnet
Nyhetsbrev IKT i samfunnet
 
Norske skog finansavisen jan 24 2011
Norske skog finansavisen jan 24 2011Norske skog finansavisen jan 24 2011
Norske skog finansavisen jan 24 2011
 
Sparer 15 millioner på ny ikt plattform
Sparer 15 millioner på ny ikt plattformSparer 15 millioner på ny ikt plattform
Sparer 15 millioner på ny ikt plattform
 
Exchange online test pc world
Exchange online test pc worldExchange online test pc world
Exchange online test pc world
 
Ms webfourm nettskyen okt2010
Ms webfourm   nettskyen okt2010Ms webfourm   nettskyen okt2010
Ms webfourm nettskyen okt2010
 
Microsoft Dynamics CRM
Microsoft Dynamics CRMMicrosoft Dynamics CRM
Microsoft Dynamics CRM
 
Sony vaio tilbud
Sony vaio tilbudSony vaio tilbud
Sony vaio tilbud
 
Seniornett i hundre
Seniornett i hundreSeniornett i hundre
Seniornett i hundre
 
Seniornett åpner klubb nummer 100
Seniornett åpner klubb nummer 100Seniornett åpner klubb nummer 100
Seniornett åpner klubb nummer 100
 
Hvorfor vi vedder alt på nettskyen, og hvilke fordeler det kan gi deg
Hvorfor vi vedder alt på nettskyen, og hvilke fordeler det kan gi degHvorfor vi vedder alt på nettskyen, og hvilke fordeler det kan gi deg
Hvorfor vi vedder alt på nettskyen, og hvilke fordeler det kan gi deg
 
Iam
IamIam
Iam
 
Communications server 14 ep groadmap3
Communications server 14 ep groadmap3Communications server 14 ep groadmap3
Communications server 14 ep groadmap3
 
Iam
IamIam
Iam
 
Communications server 14 ep groadmap3
Communications server 14 ep groadmap3Communications server 14 ep groadmap3
Communications server 14 ep groadmap3
 
Service Manager Cloud Seminar introcustext
Service Manager Cloud Seminar introcustextService Manager Cloud Seminar introcustext
Service Manager Cloud Seminar introcustext
 
Part2 DC Man Vision and Roadmap Finalcustext
Part2 DC Man Vision and Roadmap FinalcustextPart2 DC Man Vision and Roadmap Finalcustext
Part2 DC Man Vision and Roadmap Finalcustext
 
Case dagens it - grønn it konkurranse - final
Case   dagens it - grønn it konkurranse - finalCase   dagens it - grønn it konkurranse - final
Case dagens it - grønn it konkurranse - final
 

Recently uploaded

Columbus Data & Analytics Wednesdays - June 2024
Columbus Data & Analytics Wednesdays - June 2024Columbus Data & Analytics Wednesdays - June 2024
Columbus Data & Analytics Wednesdays - June 2024
Jason Packer
 
Monitoring and Managing Anomaly Detection on OpenShift.pdf
Monitoring and Managing Anomaly Detection on OpenShift.pdfMonitoring and Managing Anomaly Detection on OpenShift.pdf
Monitoring and Managing Anomaly Detection on OpenShift.pdf
Tosin Akinosho
 
AppSec PNW: Android and iOS Application Security with MobSF
AppSec PNW: Android and iOS Application Security with MobSFAppSec PNW: Android and iOS Application Security with MobSF
AppSec PNW: Android and iOS Application Security with MobSF
Ajin Abraham
 
Astute Business Solutions | Oracle Cloud Partner |
Astute Business Solutions | Oracle Cloud Partner |Astute Business Solutions | Oracle Cloud Partner |
Astute Business Solutions | Oracle Cloud Partner |
AstuteBusiness
 
GraphRAG for LifeSciences Hands-On with the Clinical Knowledge Graph
GraphRAG for LifeSciences Hands-On with the Clinical Knowledge GraphGraphRAG for LifeSciences Hands-On with the Clinical Knowledge Graph
GraphRAG for LifeSciences Hands-On with the Clinical Knowledge Graph
Neo4j
 
Mutation Testing for Task-Oriented Chatbots
Mutation Testing for Task-Oriented ChatbotsMutation Testing for Task-Oriented Chatbots
Mutation Testing for Task-Oriented Chatbots
Pablo Gómez Abajo
 
A Deep Dive into ScyllaDB's Architecture
A Deep Dive into ScyllaDB's ArchitectureA Deep Dive into ScyllaDB's Architecture
A Deep Dive into ScyllaDB's Architecture
ScyllaDB
 
Dandelion Hashtable: beyond billion requests per second on a commodity server
Dandelion Hashtable: beyond billion requests per second on a commodity serverDandelion Hashtable: beyond billion requests per second on a commodity server
Dandelion Hashtable: beyond billion requests per second on a commodity server
Antonios Katsarakis
 
LF Energy Webinar: Carbon Data Specifications: Mechanisms to Improve Data Acc...
LF Energy Webinar: Carbon Data Specifications: Mechanisms to Improve Data Acc...LF Energy Webinar: Carbon Data Specifications: Mechanisms to Improve Data Acc...
LF Energy Webinar: Carbon Data Specifications: Mechanisms to Improve Data Acc...
DanBrown980551
 
Main news related to the CCS TSI 2023 (2023/1695)
Main news related to the CCS TSI 2023 (2023/1695)Main news related to the CCS TSI 2023 (2023/1695)
Main news related to the CCS TSI 2023 (2023/1695)
Jakub Marek
 
Nordic Marketo Engage User Group_June 13_ 2024.pptx
Nordic Marketo Engage User Group_June 13_ 2024.pptxNordic Marketo Engage User Group_June 13_ 2024.pptx
Nordic Marketo Engage User Group_June 13_ 2024.pptx
MichaelKnudsen27
 
Northern Engraving | Modern Metal Trim, Nameplates and Appliance Panels
Northern Engraving | Modern Metal Trim, Nameplates and Appliance PanelsNorthern Engraving | Modern Metal Trim, Nameplates and Appliance Panels
Northern Engraving | Modern Metal Trim, Nameplates and Appliance Panels
Northern Engraving
 
High performance Serverless Java on AWS- GoTo Amsterdam 2024
High performance Serverless Java on AWS- GoTo Amsterdam 2024High performance Serverless Java on AWS- GoTo Amsterdam 2024
High performance Serverless Java on AWS- GoTo Amsterdam 2024
Vadym Kazulkin
 
Must Know Postgres Extension for DBA and Developer during Migration
Must Know Postgres Extension for DBA and Developer during MigrationMust Know Postgres Extension for DBA and Developer during Migration
Must Know Postgres Extension for DBA and Developer during Migration
Mydbops
 
[OReilly Superstream] Occupy the Space: A grassroots guide to engineering (an...
[OReilly Superstream] Occupy the Space: A grassroots guide to engineering (an...[OReilly Superstream] Occupy the Space: A grassroots guide to engineering (an...
[OReilly Superstream] Occupy the Space: A grassroots guide to engineering (an...
Jason Yip
 
Y-Combinator seed pitch deck template PP
Y-Combinator seed pitch deck template PPY-Combinator seed pitch deck template PP
Y-Combinator seed pitch deck template PP
c5vrf27qcz
 
Freshworks Rethinks NoSQL for Rapid Scaling & Cost-Efficiency
Freshworks Rethinks NoSQL for Rapid Scaling & Cost-EfficiencyFreshworks Rethinks NoSQL for Rapid Scaling & Cost-Efficiency
Freshworks Rethinks NoSQL for Rapid Scaling & Cost-Efficiency
ScyllaDB
 
Demystifying Knowledge Management through Storytelling
Demystifying Knowledge Management through StorytellingDemystifying Knowledge Management through Storytelling
Demystifying Knowledge Management through Storytelling
Enterprise Knowledge
 
Christine's Product Research Presentation.pptx
Christine's Product Research Presentation.pptxChristine's Product Research Presentation.pptx
Christine's Product Research Presentation.pptx
christinelarrosa
 
"Scaling RAG Applications to serve millions of users", Kevin Goedecke
"Scaling RAG Applications to serve millions of users",  Kevin Goedecke"Scaling RAG Applications to serve millions of users",  Kevin Goedecke
"Scaling RAG Applications to serve millions of users", Kevin Goedecke
Fwdays
 

Recently uploaded (20)

Columbus Data & Analytics Wednesdays - June 2024
Columbus Data & Analytics Wednesdays - June 2024Columbus Data & Analytics Wednesdays - June 2024
Columbus Data & Analytics Wednesdays - June 2024
 
Monitoring and Managing Anomaly Detection on OpenShift.pdf
Monitoring and Managing Anomaly Detection on OpenShift.pdfMonitoring and Managing Anomaly Detection on OpenShift.pdf
Monitoring and Managing Anomaly Detection on OpenShift.pdf
 
AppSec PNW: Android and iOS Application Security with MobSF
AppSec PNW: Android and iOS Application Security with MobSFAppSec PNW: Android and iOS Application Security with MobSF
AppSec PNW: Android and iOS Application Security with MobSF
 
Astute Business Solutions | Oracle Cloud Partner |
Astute Business Solutions | Oracle Cloud Partner |Astute Business Solutions | Oracle Cloud Partner |
Astute Business Solutions | Oracle Cloud Partner |
 
GraphRAG for LifeSciences Hands-On with the Clinical Knowledge Graph
GraphRAG for LifeSciences Hands-On with the Clinical Knowledge GraphGraphRAG for LifeSciences Hands-On with the Clinical Knowledge Graph
GraphRAG for LifeSciences Hands-On with the Clinical Knowledge Graph
 
Mutation Testing for Task-Oriented Chatbots
Mutation Testing for Task-Oriented ChatbotsMutation Testing for Task-Oriented Chatbots
Mutation Testing for Task-Oriented Chatbots
 
A Deep Dive into ScyllaDB's Architecture
A Deep Dive into ScyllaDB's ArchitectureA Deep Dive into ScyllaDB's Architecture
A Deep Dive into ScyllaDB's Architecture
 
Dandelion Hashtable: beyond billion requests per second on a commodity server
Dandelion Hashtable: beyond billion requests per second on a commodity serverDandelion Hashtable: beyond billion requests per second on a commodity server
Dandelion Hashtable: beyond billion requests per second on a commodity server
 
LF Energy Webinar: Carbon Data Specifications: Mechanisms to Improve Data Acc...
LF Energy Webinar: Carbon Data Specifications: Mechanisms to Improve Data Acc...LF Energy Webinar: Carbon Data Specifications: Mechanisms to Improve Data Acc...
LF Energy Webinar: Carbon Data Specifications: Mechanisms to Improve Data Acc...
 
Main news related to the CCS TSI 2023 (2023/1695)
Main news related to the CCS TSI 2023 (2023/1695)Main news related to the CCS TSI 2023 (2023/1695)
Main news related to the CCS TSI 2023 (2023/1695)
 
Nordic Marketo Engage User Group_June 13_ 2024.pptx
Nordic Marketo Engage User Group_June 13_ 2024.pptxNordic Marketo Engage User Group_June 13_ 2024.pptx
Nordic Marketo Engage User Group_June 13_ 2024.pptx
 
Northern Engraving | Modern Metal Trim, Nameplates and Appliance Panels
Northern Engraving | Modern Metal Trim, Nameplates and Appliance PanelsNorthern Engraving | Modern Metal Trim, Nameplates and Appliance Panels
Northern Engraving | Modern Metal Trim, Nameplates and Appliance Panels
 
High performance Serverless Java on AWS- GoTo Amsterdam 2024
High performance Serverless Java on AWS- GoTo Amsterdam 2024High performance Serverless Java on AWS- GoTo Amsterdam 2024
High performance Serverless Java on AWS- GoTo Amsterdam 2024
 
Must Know Postgres Extension for DBA and Developer during Migration
Must Know Postgres Extension for DBA and Developer during MigrationMust Know Postgres Extension for DBA and Developer during Migration
Must Know Postgres Extension for DBA and Developer during Migration
 
[OReilly Superstream] Occupy the Space: A grassroots guide to engineering (an...
[OReilly Superstream] Occupy the Space: A grassroots guide to engineering (an...[OReilly Superstream] Occupy the Space: A grassroots guide to engineering (an...
[OReilly Superstream] Occupy the Space: A grassroots guide to engineering (an...
 
Y-Combinator seed pitch deck template PP
Y-Combinator seed pitch deck template PPY-Combinator seed pitch deck template PP
Y-Combinator seed pitch deck template PP
 
Freshworks Rethinks NoSQL for Rapid Scaling & Cost-Efficiency
Freshworks Rethinks NoSQL for Rapid Scaling & Cost-EfficiencyFreshworks Rethinks NoSQL for Rapid Scaling & Cost-Efficiency
Freshworks Rethinks NoSQL for Rapid Scaling & Cost-Efficiency
 
Demystifying Knowledge Management through Storytelling
Demystifying Knowledge Management through StorytellingDemystifying Knowledge Management through Storytelling
Demystifying Knowledge Management through Storytelling
 
Christine's Product Research Presentation.pptx
Christine's Product Research Presentation.pptxChristine's Product Research Presentation.pptx
Christine's Product Research Presentation.pptx
 
"Scaling RAG Applications to serve millions of users", Kevin Goedecke
"Scaling RAG Applications to serve millions of users",  Kevin Goedecke"Scaling RAG Applications to serve millions of users",  Kevin Goedecke
"Scaling RAG Applications to serve millions of users", Kevin Goedecke
 

Forefront Unified Access Gateway

  • 1. Overview Forefront Unified Access Gateway 2010 delivers comprehensive, secure remote access to corporate resources for employees, partners, and vendors from a diverse range of endpoints and locations, including managed and unmanaged PCs and mobile devices. Building on the secure remote access capabilities in Microsoft Intelligent Application Gateway 2007, Forefront UAG draws on a combination of connectivity options, ranging from SSL VPN to Windows® DirectAccess, as well as built-in configurations and policies These enable Forefront UAG to provide centralized and easy management and thereby reduce management costs. In addition, Forefront UAG integrates a deep understanding of the applications published, the state of health of the devices being used to gain access, and the user’s identity to enforce granular access controls and policies. Key Features and Benefits Access anywhere Empowers users to be productive from virtually any device or location Forefront UAG acts as a consolidated gateway from a diverse range of endpoints and locations, providing access through a single Microsoft® Forefront™ Unified Access Gateway 2010 delivers secure, anywhere-access to messaging, collaboration, and other resources, increasing productivity while maintaining compliance with policy. Forefront Unified Access Gateway provides a single solution for administrators to deliver access and implement granular policies based on the user’s identity and the health of the device. www.microsoft.com/uag Comprehensive, secure remote access to corporate resources SSL•VPN Windows 7 DirectAccess DirectAccess DirectAccessSSL • VPN PDA SSL • VPN Windows Vista / Windows XP Windows Server 2008 R2 Direct Access Server + Microsoft Forefront Unified Access Gateway Windows Server 2008 R2 Windows Server 2008 R2 Windows Server 2008 R2 Windows Server 2003 Legacy Application Server Non-Windows Server IPv6 IPv6 IPv4IPv4 or IPv6 Always On Seamless and secure remote connectivity with DirectAccess With DirectAccess in Windows 7 and Windows Server® 2008 R2, mobile workers can seamlessly and securely access the entire corporate network—file shares, intranet, and line-of-business applications—wherever they have an Internet connection. Forefront UAG works with DirectAccess to: n Extend these benefits to legacy applications and resources, and support down-level and non-Windows clients through integrated SSL VPN capabilities and other connectivity options. n Limit exposure associated with connecting unmanaged, down-level, and non- Windows clients through granular access controls and policies. n Protect the DirectAccess gateway with a hardened edge solution and built-in firewall. n Simplify deployment using built-in wizards and tools. n Support scalabilty and ongoing administration through built-in array management and integrated load balancing.
  • 2. portal. Remote users—employees, partners, and customers—can access Web and non- Web applications and gain full VPN access to corporate networks including internal file shares and client server applications. Simplifies secure remote access Forefront UAG supports a wide range of Microsoft applications, including Microsoft SharePoint®, Microsoft Exchange Server, Remote Desktop Services, and Microsoft Dynamics® CRM through predefined optimizer modules. These modules include optimum settings and rules for securing specific applications and are based on deep research into application behavior, browser–server interactions, and endpoint requirements. UAG also supports third-party applications such as CRM, ERP, and HR. Administrators can publish the following types of applications using Forefront UAG: n Web applications and Web farms via reverse proxy. n RemoteApps through a Forefront UAG portal by using Remote Desktop Services (Terminal Services) with an integrated Remote Desktop Services Gateway. n Non-Web applications over a secure connection using socket or port forwarding as well as VPN connections. Extends Windows DirectAccess Forefront UAG delivers DirectAccess to legacy applications and resources running on existing infrastructure and supports down-level and non-Windows clients through integrated SSL VPN capabilities and other connectivity options. Integrated security Enhances security and increases corporate compliance n Limits exposure through a combination of granular access policies, deep endpoint health inspection, and user authorization information. n Enables administrators to set up policies that specify prerequisites that endpoints must meet for each transaction. They can implement these using built-in Forefront UAG or Network Access Protection (NAP) policies downloaded from a Network Policy Server (NPS). Enables a variety of strong authentication methods n Integrates with Active Directory® and easily overlays a wide variety of third-party authentication solutions and repositories, allowing for strong authentication and enforcement through granular policies. This helps ensure that only authorized users or groups can access particular applications or execute transactions. n Leverages credentials provided during a session to enable single sign-on to internal applications. Simplified management Reduces total cost of ownership by consolidating infrastructure Delivers remote access connectivity through a combination of VPN, SSL VPN, Web publishing, and DirectAccess. This enables organizations to standardize and consolidate a disparate infrastructure onto one cost-effective platform. Simplifies deployment and ongoing management n Offers flexibility through a variety of form factors including hardware appliance (through OEM partners), virtual machines, and server software. n Facilitates the grouping of multiple Forefront UAG servers into an array. All array members share the same configuration and can be managed as a single entity. n Uses wizards to simplify initial deployment and key ongoing tasks. n Easily integrates Forefront UAG logging through Microsoft SQL Server® and management through System Center Operations Manager. Reduces support costs by simplifying connectivity for users Typically security and access technologies are fragmented, resulting in a complex user experience. Forefront UAG consolidates access to corporate resources, simplifying the user’s experience and reducing support calls and their costs. For more information about Forefront Unified Access Gateway 2010, visit www.microsoft.com/uag ©2010 Microsoft Corporation. All rights reserved. This document is for informational purposes only. MICROSOFT MAKES NO WARRANTIES, EXPRESS OR IMPLIED, IN THIS SUMMARY. Internet Network Access Endpoint Browser DirectAccess Mobile Microsoft Applications LOB Applications Corporate Network Remote Desktop Services Endpoint Access Control Authentication Home Computer Extranet Partners Employees Managed Machines HTTPS / HTTP System Requirements Features and functionality described require a 2.66 GHz or faster processor with dual core CPU; 4 GB RAM; 30 GB available hard-disk space; Windows Server 2008 R2 Standard (RTM release) or Windows Server 2008 R2 Enterprise (RTM release) X64 bit editions; at least two network adapters.