DC DNS Today’s focus is UAG DirectAccess Web responder Teredo Server IPv4 Internet IPsec DoS Protect ion Server NAT Remote Host Corporate Network (IPv4 infrastructure) Possible IPv4 Connection Teredo Relay HTTP Proxy ISATAP Router 6to4 Router IPv6 Internet Remote Host Server IPsec Gateway Server HTTP Proxy IP-TLS IPsec Gateway Corporate Network (IPv6 infrastructure)

Download Report

Transcript DC DNS Today’s focus is UAG DirectAccess Web responder Teredo Server IPv4 Internet IPsec DoS Protect ion Server NAT Remote Host Corporate Network (IPv4 infrastructure) Possible IPv4 Connection Teredo Relay HTTP Proxy ISATAP Router 6to4 Router IPv6 Internet Remote Host Server IPsec Gateway Server HTTP Proxy IP-TLS IPsec Gateway Corporate Network (IPv6 infrastructure)

DC
DNS
Today’s focus is UAG DirectAccess
Web
responder
Teredo
Server
IPv4
Internet
IPsec
DoS
Protect
ion
Server
NAT
Remote
Host
Corporate
Network
(IPv4 infrastructure)
Possible IPv4
Connection
Teredo Relay
HTTP
Proxy
ISATAP
Router
6to4
Router
IPv6
Internet
Remote
Host
Server
IPsec
Gateway
Server
HTTP
Proxy
IP-TLS
IPsec
Gateway
Corporate
Network
(IPv6 infrastructure)
public IP address
address)
NAT (assigned private
IPv6 Transition Technology of “last resort”
TIP: Do not disable IPv6 on ISATAP hosts
Translation
Available with UAG only!
the only
Windows Server 2008 R2 server on the network
NEW!
NEW!
DirectAccess Infrastructure Tunnel
DirectAccess Intranet Tunnel
NEW!
www.contoso.com
these turn on the infrastructure and intranet tunnels
Success turns off NRPT
RESULT: Domain WFAS Profile activated and NRPT disabled –No DA tunnels
RESULT: Public or Private Profile activated and NRPT enabled – DA tunnels
activated
DirectAccess clients
DirectAccess servers
Application Servers
UAG DirectAccess Step by Step Guide
UAG DirectAccess Design Guide
UAG DirectAccess Deployment Guide
DirectAccess Troubleshooting Guide
DirectAccess Connectivity Assistant (DCA)
TechNet DirectAccess Landing Page
Mega DirectAccess Design and Deployment Guide (WinDA)
Infrastructure Planning and Design Guide for DirectAccess
SIA320 |Business Ready Security: Protecting Endpoints from Advanced Threats with Microsoft's Secure Endpoint
Solution
SIA301 |Secure Endpoint: DirectAccess and Microsoft Forefront Unified Access Gateway 2010, the Complete
Remote Access Solution
SIA308 | Secure Endpoint: Advanced Protection from Dynamic Threats, a Microsoft Forefront Threat
Management Gateway 2010 Deep Dive
SIA309 |Secure Endpoint: What’s in Microsoft Forefront Endpoint Protection 2010 - A Deep Dive into the
Features and Protection Technologies
SIA325 | Secure Endpoint: Virtualizing Microsoft Forefront Threat Management Gateway (TMG)
SIA02-INT | Secure Endpoint: Planning DirectAccess Deployment with Microsoft Forefront Unified Access
Gateway
SIA07-INT | Secure Endpoint: Architecting Forefront Endpoint Protection 2010 on Microsoft System Center
Configuration Manager
SIA05-HOL | Microsoft Forefront Threat Management Gateway Overview
SIA09-HOL | Secure Endpoint Solution: Business Ready Security with Microsoft Forefront and Active Directory
SIA11-HOL | Microsoft Forefront Unified Access Gateway (UAG) and Direct Access: Better Together
Red SIA-3 | Microsoft Forefront Secure Endpoint Solution
Learn more about our solutions:
http://www.microsoft.com/forefront
Try our products:
http://www.microsoft.com/forefront/trial
www.microsoft.com/teched
www.microsoft.com/learning
http://microsoft.com/technet
http://microsoft.com/msdn
Sign up for Tech·Ed 2011 and save $500
starting June 8 – June 31st
http://northamerica.msteched.com/registration
You can also register at the
North America 2011 kiosk located at registration
Join us in Atlanta next year