Saturday, February 16, 2013 12:36 PM
I'm battling to install a Forefront TMG in my Branch office, here is the setup and dificulty I'm experiencing.
Primary Internet Gateway with Hosted Firewall---------------- Hosted servers
Cape Town Branch (Soon to install TMG)------------MPLS Network----------------Johannesburg Branch (With Fortigate firewall)
Durban Branch (Currently installing TMG)
Durban Branch layout
Router (192.168.70.1 - Gateway to network and breakout)
TMG Server (2 NICS) Would like to allocate NIC 1 with IP 70.9(Going to switch with routers) NIC 2 with 70.10 (to user and server network)
Users and local servers
I just can't seem to set it up this way. I only have today and tomorrow, and i would really like to not have to get my SP to change the IP's on the routers and build a back end network just to do this.
Any suggestions on how to do this?
- Edited by ShaunCro102 Saturday, February 16, 2013 12:38 PM
Saturday, February 16, 2013 1:17 PM
if I understand your setup correctly you want route IP traffic between NIC1 and NIC2? That will not work if both NICs are in the same IP subnet.
- Marked As Answer by ShaunCro102 Saturday, February 16, 2013 2:22 PM
Saturday, February 16, 2013 2:22 PM
Yeah that's it exactly.
Damn, so it will never be a real firewall then. Very disapointed you can't configure it in "transparent" mode like with most hardware solutions.
Saturday, February 16, 2013 4:49 PM
can't you use different ip subnets? I am not very familar with a MPLS network but I assume you have in each branch a router.
e.g. Durban branch computer has the TMG NIC1 as default gateway, NIC2 goes to the MPLS router, ...