Microsoft Forefront Threat Management Gateway

Last updated

Microsoft Forefront Threat Management Gateway 2010
Microsoft Forefront Threat Management Gateway logo.png
Microsoft Forefront TMG Console.png
Microsoft Forefront Threat Management Gateway 2010 management console
Developer(s) Microsoft
Initial release1 January 1997 (1997-01-01)
Final release
2010 / 10 October 2011;10 years ago (2011-10-10) [1]
Operating system Windows Server 2008
Platform x86-64
Available inEnglish, Chinese (Simplified), Chinese (Traditional), French, German, Italian, Japanese, Korean, Portuguese (Brazil), Russian and Spanish [2]
Type Router, firewall, antivirus program, VPN server, web cache
License Trialware
Website www.microsoft.com/tmg

Microsoft Forefront Threat Management Gateway (Forefront TMG), formerly known as Microsoft Internet Security and Acceleration Server (ISA Server), is a discontinued network router, firewall, antivirus program, VPN server and web cache from Microsoft Corporation. It ran on Windows Server and works by inspecting all network traffic that passes through it. [3]

Contents

Features

Microsoft Forefront TMG offers a set of features which include: [4]

  1. Routing and remote access features: Microsoft Forefront TMG can act as a router, an Internet gateway, a virtual private network (VPN) server, a network address translation (NAT) server and a proxy server.
  2. Security features: Microsoft Forefront TMG is a firewall which can inspect network traffic (including web content, secure web content and emails) and filter out malware, attempts to exploit security vulnerabilities and content that does not match a predefined security policy. In technical sense, Microsoft Forefront TMG offers application layer protection, stateful filtering, content filtering and anti-malware protection.
  3. Network performance features: Microsoft Forefront TMG can also improve network performance: It can compress web traffic to improve communication speed. It also offers web caching: It can cache frequently-accessed web content so that users can access them faster from the local network cache. Microsoft Forefront TMG 2010 can also cache data received through Background Intelligent Transfer Service, such as updates of software published on Microsoft Update website.

History

Microsoft Proxy Server

The Microsoft Forefront Threat Management Gateway product line originated with Microsoft Proxy Server. Developed under the code-name "Catapult", [5] Microsoft Proxy Server v1.0 was first launched in January 1997, [6] and was designed to run on Windows NT 4.0. Microsoft Proxy Server v1.0 was a basic product designed to provide Internet Access for clients in a LAN Environment via TCP/IP. Support was also provided for IPX/SPX networks (primarily used in legacy Novell NetWare environments), through a WinSock translation/tunnelling client which allowed TCP/IP applications, such as web browsers, to operate transparently without any TCP/IP on the wire. Although well-integrated into Windows NT4, [7] Microsoft Proxy Server v1.0 only had basic functionality, and came in only one edition. Extended support for Microsoft Proxy Server v1.0 ended on 31 March 2002. [6]

Microsoft Proxy Server v2.0 was launched in December 1997, [8] and included better NT Account Integration, improved packet filtering support, and support for a wider range of network protocols. Microsoft Proxy Server v2.0 exited the extended support phase and reached end of life on 31 December 2004. [8]

ISA Server 2000

On 18 March 2001, Microsoft launched Microsoft Internet Security and Acceleration Server 2000 (ISA Server 2000). [9] ISA Server 2000 introduced the Standard and Enterprise editions, with Enterprise-grade functionality such as High-Availability Clustering not included in the Standard Edition. ISA Server 2000 required Windows 2000 (any edition), and will also run on Windows Server 2003. In accordance with Microsoft's Support Lifecycle Policy, ISA Server 2000 was the first ISA Server product to use the 10-year support lifecycle with 5 years of Mainstream support and five years of Extended support. ISA Server 2000 reached End of Life on 12 April 2011. [9]

ISA Server 2004

Microsoft Internet Security and Acceleration Server 2004 (ISA Server 2004) was released on 8 September 2004. [10] ISA Server 2004 introduced multi-networking support[ clarification needed ], integrated virtual private networking configuration, extensible user and authentication models, application layer firewall support, Active Directory integration, SecureNAT [ clarification needed ], and improved reporting and management features. The rules based configuration was also considerably simplified over ISA Server 2000 version.

ISA Server 2004 Enterprise Edition included array support, integrated Network Load Balancing (NLB), and Cache Array Routing Protocol (CARP). One of the core capabilities of ISA Server 2004, dubbed Secure Server Publishing, was its ability to securely expose their internal servers to Internet. For example, some organizations use ISA Server 2004 to publish their Microsoft Exchange Server services such as Outlook Web Access (OWA), Outlook Mobile Access (OMA) or ActiveSync. Using the Forms-based Authentication (FBA) authentication type, ISA Server can be used to pre-authenticate web clients so that traffic from unauthenticated clients to published servers is not allowed.

ISA Server 2004 is available in two editions, Standard and Enterprise. Enterprise Edition contains features enabling policies to be configured on an array level, rather than on individual ISA Servers, and load-balancing across multiple ISA Servers. Each edition of ISA Server is licensed per processor. (The version included in Windows Small Business Server 2000/2003 Premium includes licensing for 2 processors.)

ISA Server 2004 runs on Windows Server 2003 Standard or Enterprise Edition. Appliance hardware containing Windows Server 2003 Appliance Edition and ISA Server Standard Edition is available from a variety of Microsoft Partners. [11]

ISA Server 2006

Microsoft Internet Security and Acceleration Server 2006 (ISA Server 2006) was released on 17 October 2006. [12] It is an updated version of ISA Server 2004, and retains all features from ISA Server 2004 except Message Screener.

ISA Server 2006 introduced new features including:

ISA Server Appliance Edition Microsoft also offered ISA Server 2006 Appliance Edition. It was designed to be pre-installed onto OEM hardware (server appliances) that are sold by hardware manufacturers as a stand-alone firewall type device. [14] Along with Appliance Edition, ISA server 2006 Standard Edition and Enterprise Edition were available in preconfigured hardware. [13] :76

Microsoft Forefront TMG MBE

Microsoft Forefront Threat Management Gateway Medium Business Edition (Forefront TMG MBE) is the next version of ISA Server which is also included with Windows Essential Business Server. This version only runs on the 64-bit edition of Windows Server 2008 and does not support Enterprise edition features such as array support or Enterprise policy. Mainstream support for Forefront TMG MBE ended on 12 November 2013. [15]

Microsoft Forefront TMG 2010

Microsoft Forefront Threat Management Gateway 2010 (Forefront TMG 2010) was released on 17 November 2009. [16] It is built on the foundation of ISA Server 2006 and provides enhanced web protection, native 64-bit support, support for Windows Server 2008 and Windows Server 2008 R2, malware protection and BITS caching. Service Pack 1 for this product was released on 23 June 2010. [17] It includes several new features to support Windows Server 2008 R2 and SharePoint 2010 lines of products. [18] Service Pack 2 for this product was released on 10 October 2011. [1] On 9 September 2012 Microsoft announced no further development will take place on Forefront Threat Management Gateway 2010 and the product will no longer be available for purchase as of 1 December 2012. Mainstream support ceased on 14 April 2015 and extended support has ended on 14 April 2020. [19]

See also

Related Research Articles

<span class="mw-page-title-main">Proxy server</span> Computer server that makes and receives requests on behalf of a user

In computer networking, a proxy server is a server application that acts as an intermediary between a client requesting a resource and the server providing that resource.

<span class="mw-page-title-main">Windows Server 2003</span> Server operating system by Microsoft released in 2003

Windows Server 2003 is the sixth version of Windows Server operating system produced by Microsoft. It is part of the Windows NT family of operating systems and was released to manufacturing on March 28, 2003 and generally available on April 24, 2003. Windows Server 2003 is the successor to the Server editions of Windows 2000 and the predecessor to Windows Server 2008. An updated version, Windows Server 2003 R2, was released to manufacturing on December 6, 2005. Windows Server 2003 is based on the consumer operating system, Windows XP.

SOCKS is an Internet protocol that exchanges network packets between a client and server through a proxy server. SOCKS5 optionally provides authentication so only authorized users may access a server. Practically, a SOCKS server proxies TCP connections to an arbitrary IP address, and provides a means for UDP packets to be forwarded.

<span class="mw-page-title-main">Internet security</span> Branch of computer security

Internet security is a branch of computer security. It encompasses the Internet, browser security, web site security, and network security as it applies to other applications or operating systems as a whole. Its objective is to establish rules and measures to use against attacks over the Internet. The Internet is an inherently insecure channel for information exchange, with high risk of intrusion or fraud, such as phishing, online viruses, trojans, ransomware and worms.

Smoothwall is a Linux distribution designed to be used as an open source firewall. Smoothwall is configured via a web-based GUI and requires little or no knowledge of Linux to install or use.

Microsoft Servers is a discontinued brand that encompasses Microsoft software products for server computers. This includes the Windows Server editions of the Microsoft Windows operating system, as well as products targeted at the wider business market. Microsoft has since replaced this brand with Microsoft Azure, Microsoft 365 and Windows 365.

<span class="mw-page-title-main">Windows Server Essentials</span>

Windows Server Essentials is an integrated server suite from Microsoft for businesses with no more than 25 users or 50 devices. It includes Windows Server, Exchange Server, Windows SharePoint Services, and Microsoft Outlook. Application server technologies are tightly integrated to provide and offer management benefits such as integrated setup, enhanced monitoring, Remote Web Workplace, a unified management console, and remote access.

<span class="mw-page-title-main">Windows Server 2008</span> Server operating system by Microsoft released in 2008

Windows Server 2008 is the fourth release of the Windows Server operating system produced by Microsoft as part of the Windows NT family of the operating systems. It was released to manufacturing on February 4, 2008, and generally to retail on February 27, 2008. Derived from Windows Vista, Windows Server 2008 is the successor of Windows Server 2003 and the predecessor to Windows Server 2008 R2.

<span class="mw-page-title-main">F5, Inc.</span> U.S. information technology company

F5, Inc. is an American technology company specializing in application security, multi-cloud management, online fraud prevention, application delivery networking (ADN), application availability & performance, network security, and access & authorization.

Microsoft Forefront is a discontinued family of line-of-business security software by Microsoft Corporation. Microsoft Forefront products are designed to help protect computer networks, network servers and individual devices. As of 2015, the only actively developed Forefront product is Forefront Identity Manager.

There are a number of security and safety features new to Windows Vista, most of which are not available in any prior Microsoft Windows operating system release.

BorderManager is a multi purpose network security application developed by Novell, Inc. BorderManager is designed as a proxy server, firewall, and VPN access point. Novell has announced that migration to SuperLumin 4.0 Proxy Cache is "Novell's preferred firewall and proxy solution for NetWare customers upgrading to Novell Open Enterprise Server on Linux."

<span class="mw-page-title-main">Windows IoT</span> Embedded operating system by Microsoft

Windows IoT, formerly Windows Embedded, is a family of operating systems from Microsoft designed for use in embedded systems. Microsoft currently has three different subfamilies of operating systems for embedded devices targeting a wide market, ranging from small-footprint, real-time devices to point of sale (POS) devices like kiosks. Windows Embedded operating systems are available to original equipment manufacturers (OEMs), who make it available to end users preloaded with their hardware, in addition to volume license customers in some cases.

<span class="mw-page-title-main">SharePoint</span> Web application platform

SharePoint is a web-based collaborative platform that integrates natively with Microsoft Office. Launched in 2001, SharePoint is primarily sold as a document management and storage system, but the product is highly configurable and its usage varies substantially among organizations.

Windows Essential Business Server 2008 was Microsoft's server offering for mid-size businesses. It was released to manufacturing on 15 September 2008 and was officially launched on 12 November 2008. It was discontinued on 30 June 2010.

<span class="mw-page-title-main">Windows Server 2008 R2</span> Server operating system by Microsoft released in 2009

Windows Server 2008 R2 is the fifth version of the Windows Server operating system produced by Microsoft and released as part of the Windows NT family of operating systems. It was released to manufacturing on July 22, 2009, and became generally available on October 22, 2009, shortly after the completion of Windows 7. It is the successor to Windows Server 2008, which is derived from the Windows Vista codebase, released the previous year, and was succeeded by the Windows 8-based Windows Server 2012.

Microsoft Forefront Unified Access Gateway (UAG) is a discontinued software suite that provides secure remote access to corporate networks for remote employees and business partners. Its services include reverse proxy, virtual private network (VPN), DirectAccess and Remote Desktop Services. UAG was released in 2010, and is the successor for Microsoft Intelligent Application Gateway (IAG) which was released in 2007. UAG is part of the Microsoft Forefront offering. Microsoft discontinued the product in 2014, although the Web Application Proxy feature of Windows Server 2012 R2 and later offers some of its functionalities.

<span class="mw-page-title-main">Blue Coat Systems</span> American cybersecurity and network management company

Blue Coat Systems was a company that provided hardware, software, and services designed for cybersecurity and network management. In 2016, it was acquired by and folded into Symantec.

Check Point GO is a USB drive that combines an encrypted USB flash drive with virtualization, VPN and computer security technologies to turn a PC into a secure corporate desktop. By plugging Check Point GO into the USB port of a Microsoft Windows OS-based PC or laptop, users can launch a secure virtual workspace that is segregated from the host PC. This allows users to securely access company files and applications from any remote location, including insecure host environments such as a hotel business center or Internet café.

<span class="mw-page-title-main">Endian Firewall</span> Linux distribution

Endian Firewall is an open-source router, firewall and gateway security Linux distribution developed by the South Tyrolean company Endian. The product is available as either free software, commercial software with guaranteed support services, or as a hardware appliance.

References

  1. 1 2 "Download details: Microsoft Forefront Threat Management Gateway (TMG) 2010 Service Pack 2". Microsoft Download Center. Microsoft corporation. 10 October 2011. Retrieved 17 November 2011.
  2. "Download Microsoft Forefront Threat Management Gateway 2010". Microsoft corporation. Retrieved 26 March 2010.
  3. "Forefront Threat Management Gateway: Overview". Microsoft . Retrieved 1 March 2010.
  4. "Forefront Threat Management Gateway: Features". Microsoft corporation. Retrieved 1 March 2010.
  5. "Microsoft Ships Proxy Server 1.0". News Center. Microsoft. 29 October 1996. Archived from the original on 26 October 2012. Retrieved 10 June 2017.
  6. 1 2 "Microsoft Support Lifecycle" . Retrieved 5 June 2007.
  7. "Microsoft ISA Server". 30 July 2002. Retrieved 5 June 2007.
  8. 1 2 "Microsoft Support Lifecycle: Proxy Server 2.0 Standard Edition" . Retrieved 5 June 2007.
  9. 1 2 "Microsoft Support Lifecycle ISA 2000" . Retrieved 9 March 2009.
  10. "Microsoft Support Lifecycle ISA 2004" . Retrieved 9 March 2009.
  11. "Deploy ISA Server and IAG in Minutes with Hardware Solutions". Microsoft . Retrieved 5 June 2007.
  12. "Microsoft Support Lifecycle ISA 2006" . Retrieved 9 March 2009.
  13. 1 2 3 4 5 6 7 "Microsoft ISA Server 2006 Evaluation Guide". Microsoft. July 2006. Archived from the original (DOC) on 2 September 2006. Retrieved 31 August 2018.
  14. "Internet Security and Acceleration Server: hardware partners". Microsoft. Archived from the original on 30 January 2009. Retrieved 21 January 2009.
  15. "Search Product and Services Lifecycle Information - Microsoft Lifecycle".
  16. "Forefront Threat Management Gateway 2010 Release". Forefront TMG (ISA Server) team blog. Microsoft corporation. 17 November 2009. Retrieved 26 March 2010. It is our pleasure to announce that Forefront Threat Management Gateway (TMG) 2010 was released to manufacturing yesterday (Nov 16th, 2009) [~snip~]
  17. "Download details: Microsoft Forefront Threat Management Gateway (TMG) 2010 Service Pack 1". Microsoft Download Center. Microsoft corporation. 23 June 2010. Retrieved 15 July 2010.
  18. "What's new in Forefront TMG 2010 SP1". Microsoft TechNet . Microsoft Corporation. 15 June 2010. Retrieved 15 July 2010.
  19. "Important Changes to Forefront Product Roadmaps". Microsoft TechNet . Microsoft Corporation. 12 September 2012. Archived from the original on 10 October 2012. Retrieved 22 September 2012.