Ahmed Hussein Online

Deploying TMG Array in DMZ ( Workgroup ) Part 2

now we have our TMG installed and our certificates ready in my previous post

next step is to install the certificate on the array manager

from the TMG console select system then select the array manager  you will find install server certificate on the right

you will get the below box (don’t select Automatically create the root ….etc. ) most of the time it fails

clip_image004

now the TMG will become unresponsive for while that’s normal

 

now we need to make sure that the server has the Certificates installed correctly so we add the service Certificates MMC

clip_image006

clip_image008

clip_image010

clip_image012

if the install certificate was successfully installed  you should see it if not manually import it

clip_image014

clip_image016

clip_image018

clip_image020

now wait a bit until the TMG server synchronize and all become green

next step to join the node to the array 

before you joining please make sure that

  • the ROOT CA installed on all nodes
  • all nodes can resolve the FQDN of the other node (by using DNS or hosts file )
  • don’t disable the IPv6
  • the the user account you logged on with are the same on both nodes (same name and password )

 

clip_image022

clip_image024

clip_image026

clip_image034

 

clip_image038

now after you join the node please restart all server (array manager and the nodes )

after the systems back up set up the authentication account

clip_image040

clip_image042

 

Creating TMG NLB

go to networking and select enable NLB

image

image

 

image

Multicast or unicast is based on your network system . but most of the time multicast will do (I always recommend independent NIC for NLB but most of the times you don’t have this option

image

you can do both internal and external at the same time

image

image

ignore the scary massage

image

image

after 10 Minutes you will have a valid NLB

now we create a rule between both nodes in the array so the NLB console can detect the other node

image

image

image

image

 

image

image

image

image

that’s all now we have a functional TMG array

Related Posts

One Response to “Deploying TMG Array in DMZ ( Workgroup ) Part 2”


  1. santhosh sivaraman

    Nice one BOSS!!!!
    This article was really useful for me.
    Do post articles like this.
    Many Thanks……….

Leave a Reply

*