Bypass Microsoft Threat Management Gateway 2010 Proxy

建议的答复 Bypass Microsoft Threat Management Gateway 2010 Proxy

  • Friday, December 07, 2012 4:08 AM
     
     
    I am currently bypassing some external websites, servers, ip using internet explorer using bypass settings. I want to bypass this traffic from TMG program directly instead of explorer because i want to reroute all my HTTP traffic from core switch instead of client redirection. Any help will be really appreciated.

    Eric Kim

All Replies

  • Friday, December 07, 2012 6:00 AM
     
     Proposed

    Hi,

    you have to configure this sites for Direct access:
    http://www.isaserver.org/articles/2004directaccessp1.html (the same way in TMG)


    regards Marc Grote aka Jens Baier - www.it-training-grote.de - www.forefront-tmg.de - www.nt-faq.de

  • Friday, December 07, 2012 10:55 PM
     
     

    Thanks for your help, i did the same way, the only thing which i missed is did not rebooted my machine, thats why the new settings were not updated.

    I also want to know if i change the TMG2010 listning port to 80, will it cause any issue in the network. The dafault port is 8080.


    Eric Kim

  • Saturday, December 08, 2012 7:04 AM
     
     

    Hi,

    it is possible to change the port for the Webproxy on the TMG server to every port not in used but why do you want to change the port to port 80? I recommend to let the port unchanged


    regards Marc Grote aka Jens Baier - www.it-training-grote.de - www.forefront-tmg.de - www.nt-faq.de

  • Saturday, December 08, 2012 4:58 PM
     
     

    I want to redirect all my http traffic from core switch to the proxy server. The core switch has the capability to redirect all the http traffic to proxy using port 80 only. Any other way of doing this ?


    Eric Kim

  • Monday, December 10, 2012 9:07 AM
    Moderator
     
     Proposed

    Hi,

    Thank you for the post.

    I think we have two solution for this problem for now:

    1. Changed the default port 8080 for web proxy on TMG to 80.

    2. Involve core switch device support resource to stop using port 80 and change to 8080.

    Regards,


    Nick Gu - MSFT

  • Tuesday, December 11, 2012 5:58 PM
     
     
    Ok, i have changed the TMG port to 80, after redirecting the http traffic to TMG using core, the traffic is going fine, but the IE is not loading any page. The core team is saying the the proxy should be running in transparent mode that's why its not working ? Any recomendation to make this work ?


    • Edited by ekim786 Thursday, December 13, 2012 5:17 PM
    •  
  • Tuesday, December 18, 2012 2:56 PM
    Moderator
     
     Proposed

    Hi,

    Thank you for the update.

    Please refer to the following articles to configure the bypass settings:

    http://blogs.technet.com/b/sooraj-sec/archive/2010/06/19/by-pass-isa-tmg-server-part1.aspx

    http://blogs.technet.com/b/sooraj-sec/archive/2010/06/20/by-pass-isa-tmg-server-part-2.aspx

    Regards,


    Nick Gu - MSFT

  • Sunday, December 30, 2012 3:48 AM
     
     
    The goal is not to bypass proxy, but to redirect the http traffic without IE redirect to proxy.

    Eric Kim