Why DA-Enable.vbs script doesn't make any changes into TMG rules on Direct Access server (UAG)? RRS feed

  • Question

  • Hello!

    There's a Direct Access server UAG+TMG 2010 SP1+ Win2k8R2.

    Script for creating basic ipv6 rules on TMG (DA-Enable.vbs) is not making any changes in TMG rules.

    I ran it (all from admin) from powershell (Cscript DA-Enable.vbs & just .\DA-Enable.vbs), usual cmd, just double clicked - nothing!



    set o = createobject("fpc.root")
    set arr = o.Arrays.Item(1)
    set policy = arr.ArrayPolicy
    set IPV6Settings = policy.IPv6Settings
    IPV6Settings.DirectAccessEnabled = vbTrue

    Best regards,

    Valeriy Vainkop

    Tuesday, July 3, 2012 7:42 AM


All replies

  • Hi Valeriy,

    That gudiance is specifically for a standalone version of TMG NOT when using UAG.

    With UAG, all DirectAccess configuration is done from within the UAG Management console and you don't need to manually configure TMG or run custom scripts.



    Jason Jones | Forefront MVP | Silversands Ltd | My Blogs: http://blog.msedge.org.uk and http://blog.msfirewall.org.uk

    Tuesday, July 3, 2012 12:15 PM
  • Hi Jason!

    UAG didn't create all the rules I saw in article about standalone version.

    Here're my TMG rules (first 3 were created by me):

    Here're rules from the article:

    So there're no teredo & many icmp rules in my config as you see, but why?

    Tuesday, July 3, 2012 2:15 PM