Showing posts with label Create Array in EMS TMG 2010. Show all posts
Showing posts with label Create Array in EMS TMG 2010. Show all posts

Monday, December 30, 2013

Add TMG to an EMS Managed Array

In the last post we looked into the steps of adding an Array or Creating an Array. This article will describe steps in adding an TMG to an Array.

You will need the following before going further:

1. Two computers running windows 2008 R2.One running EMS and another running TMG all are in domain.
2.An array created in the EMS
3.Both TMG and EMS are connected to each other over the network.
4. A DNS entries of all the servers to resolve each other.
5. A Privileged account to install or add TMG [ We will discuss these later]

Now, lets go through the steps:

Step1:

Open Forefront TMG from Start Programs on the System with TMG installed [ which will be joined to the EMS]



Step2:

There are two ways of making TMG know that you want to add it to an Array.

1. Right click on Forefront TMG [servername] as shown below and click join array
2.In the Right Pane Click on Join Array.



Step3:

A Wizard appears on screen to join the TMG to the array.Click Next.



In the next window, you will have to choose how the array configuration is. That is, whether it is EMS Managed or Standalone. In our case we are joining it to EMS so Lets select EMS and click next.



Step4:

Make sure the FQDN of EMS is resolving to proper EMS server and Type the FQDN of the EMS server in the next screen as below.The other point to note here is that i am using Domain Administrator account to install everything and hence i will leave the Account rights option intact and will not modify for now. We will read the Accounts management in next posts.



As soon as u hit Next, a wizard will check the connectivity to the EMS Server



Step5:
Once the Connectivity check is successful, in the next window, you will need to select which array you want TMG to get added to. You can check how to add the Array  here. We have discussed this in last post.

Step6:

Press Next once you choose the Array you want to add and you will be shown the Completion wizard with summary.



Press on Finish and then the wizard starts joining the TMG to an array selected

 



Press Ok and observe the changes in the Console of the TMG Server as below. It now shows you the EMS server you are connected to and an Array you are a part of, at the top left.



The other way of finding if the addition of TMG to an array is succesful or not is go to Monitoring Pane on the Left and click on Configuration tab in the middle Pane and see what you have got.In my case, i can see the TMG server that is MALTMG01 is in the Array and has got the configuration from EMS [ The sync status shows whether the configuration is available to Node MALTMG01 and if it has got the configuration copied to it from EMS].



So that covers the addition of TMG Server to an EMS Managed array, you can also add other nodes
to join an array.

Create a New Array from EMS in TMG

This article outlines the creation steps of an new Array in the EMS Console of Threat Management Gateway

Before going further, you will need:

1. Windows 2008 Server R2 installed as an Operating System and connected to Domain.
2. EMS installed and running on the host OS
3. A Network Card with an assigned static address and a DNS Entry

Now lets go through the steps involved in adding an Array

Step1:

Go to start and click on Forefront TMG Management on the EMS Server[if you dont find it as shown in the figure below, go to start all programs, you can view it under Microsoft Forefront TMG]



Once you click, you should be able to see the EMS Console as shown below



Step2:

Right click on Array on the left pane or click on Create New Array on the Right pane




A Wizard window opens as below



Give the Array name of your choice and press Next



Press Next

Step3:

In the next step, you will need to enter the DNS name of the array.Make sure you have a DNS Entry of the IP you will use for the array [ usually used during NLB]



Press Next

Step4:

In the Next step, you will need to assign Enterprise policy for the New array you are configuring, you will have a  drop down selection menu to select the policies you want to apply. If in case there are no policy defined already , you will have no options as below and you can only select default policy.You can change this Policy applied to the new array later.



Press Next

Step5:

Next, you will have to select the Firewall Policy rules that can be applied to this new array [Later]. By default, all the options are ticket. i would leave as is.



Press Next and you will be presented on screen with the wizard completion summary



Once you press Finish, an array creation progress bar will be shown on screen.

 



Once the array is created, Press on Ok.

Step6:

Once you press ok, the Main console is seen on screen again or if it is minimized, bring it on screen by maximizing. Now in the middle pane, click on the Apply button to apply the changes you have made.

 

Once you click Apply, a configuration change description windows pops up where, you can input the changes you have made.



Once you click on Apply, the changes will be made as shown below. Click on OK.



Now Press Ok and go back to your Console and you should now see the New Array created. You can also view the Array Name which is Wineng Array in my case and the Configuration storage server is MALEMS01.WINENG.IN which is where i have installed my EMS



So that is it about creating Arrays in EMS of TMG