Sign in
Bienvenue, on Frédéric ESNOUF's Web Log
Microsoft EMEA/Security/IDA
Translate This Page
Translate this page
Powered by
Microsoft® Translator
Common Tasks
Blog Home
Email Blog Author
OK
RSS for comments
RSS for posts
Atom
Search
Tags
ADRMS
FIMScripting
howto-ApplicationSecurity
howto-authentication
Howto-client
howTo-Filters
IAG
tracing
Monthly Archives
Archives
May 2013
(2)
November 2012
(1)
June 2012
(4)
October 2011
(1)
July 2011
(1)
March 2011
(1)
February 2011
(3)
January 2011
(1)
December 2010
(3)
November 2010
(1)
October 2010
(3)
September 2010
(1)
July 2010
(1)
June 2010
(1)
March 2010
(6)
December 2009
(1)
August 2009
(8)
July 2009
(8)
March 2009
(1)
January 2009
(1)
December 2008
(3)
November 2008
(11)
TechNet Blogs
>
Bienvenue, on Frédéric ESNOUF's Web Log
Subscribe via RSS
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
Bienvenue, on Frédéric ESNOUF's Web Log
Understanding (and extending) UAG Web SSO capabilities
Posted
over 3 years ago
by
Frédéric ESNOUF
4
Comments
First of all, I would like to thank Matthieu Martineau ( matthieu.martineau@piservices.fr ) (Gold Partner, MCSE and MCT) with whom I had the opportunity to investigate some of the breaking scenarios I mention at the end of this post In the wide...
Bienvenue, on Frédéric ESNOUF's Web Log
Tracing UAG : don’t be blind ;-)
Posted
over 3 years ago
by
Frédéric ESNOUF
3
Comments
Tracing a product is always a good thing. First , it helps you to understand how it works internally and so enhance your own skills… second , it helps you to understand why such expected feature or configuration is not working fine. With IAG (previous...
Bienvenue, on Frédéric ESNOUF's Web Log
Changing the policy error message (graphical)
Posted
over 3 years ago
by
Frédéric ESNOUF
0
Comments
The purpose of UAG is to provide “remote access” (more an employee term) and “application publishing” (more a partner or customer term). This means that UAG has to be ready to “talk” to people that are not IT specialists at all. Security policy...
Bienvenue, on Frédéric ESNOUF's Web Log
Understanding workstation analysis, under the hood
Posted
over 3 years ago
by
Frédéric ESNOUF
0
Comments
When you connect UAG, in an internal phase called “install and detect” the UAG client will download from the UAG server a file named Detection.VBS. This Detection.vbs file contains all the “VBS” code that will analyze the client machine. This...
Bienvenue, on Frédéric ESNOUF's Web Log
Understanding workstation analysis and security policy
Posted
over 3 years ago
by
Frédéric ESNOUF
0
Comments
Workstation analysis and security policy are the key features proposed by UAG to provide security at the application layer. Whereas firewall will operate at the network layer (filter by IP or TCP Port range), the application layer will look at “what”...
Bienvenue, on Frédéric ESNOUF's Web Log
ISA ? TMG ? IAG ? TMG ?
Posted
over 4 years ago
by
Frédéric ESNOUF
1
Comments
This December, a lot of changes happened in the Microsoft security portfolio. After more than 1 year of strong investments, Microsoft launched the “2010” versions of both “ISA” and “IAG” : * IAG Server becomes now “Forefront Unified Access Gateway...
Bienvenue, on Frédéric ESNOUF's Web Log
Strong authentication using your Brain : IAG and Gridsure.
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
Gridsure, a UK company, has created a very nice way to provide strong authentication. Strong authentication combines what you know (login, password) and what you have (something physical). In the long list of strong authentication mechanisms we know Smartacards...
Bienvenue, on Frédéric ESNOUF's Web Log
BPOS and DNS Configuration : warning if your domain is at Gandi
Posted
over 4 years ago
by
Frédéric ESNOUF
1
Comments
Recently, I have decided to evaluate BPOS (Business Productivity Online Services), the Hosted offer of Microsoft. Basically, I want to use Exchange to host my personnal mail (OWA and Antivirus/Antispam) and also use Sharepoint/MOSS. With BPOS, you “rent...
Bienvenue, on Frédéric ESNOUF's Web Log
IAG KCD breaking due to missing “keep-alive” header. Why ?
Posted
over 4 years ago
by
Frédéric ESNOUF
1
Comments
A few days ago, I was working with Fadhel Ben Brahem, one of our IAG experts working for Dictao, a Microsoft Partner. IAG was implemented in a very complex LAN/Switches/LoadBalancer environnent. The goal, the failure The goal of our Proof Of Concept was...
Bienvenue, on Frédéric ESNOUF's Web Log
Unknown devide error when runing IAG Virtual Lab with “Windows Virtual PC” on Windows 7 RTM
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
I recently upgraded my machine to Windows 7 RTM, and have decided to also install the next version of Virtual PC named “Windows Virtual PC (WVPC)”. I am using a lot the Microsoft IAG Virtual Lab (downloadable online) for my day to day work (demo, dev...
Bienvenue, on Frédéric ESNOUF's Web Log
How to request for assistance when a Web Application is causing problems through IAG/UAG
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
On my blog, I have created a dedicated section (TAG = howTo-Filters) for IAG application filters. Every time I have to face a problem with a web application, I create a post on my blog, try to share the approach I used to identify the problem, and of...
Bienvenue, on Frédéric ESNOUF's Web Log
Hello Middle East and Africa, bye bye CEE
Posted
over 4 years ago
by
Frédéric ESNOUF
1
Comments
Last year I had a lot of pleasure to work for the Central and Eastern Europe Region. I had the opportunity to visit several countries and collaborate with partners and customers. What a great experience. This year I will be working for Middle East and...
Bienvenue, on Frédéric ESNOUF's Web Log
H1N1 and mobility : how to quickly implement a remote access solution
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
In my day to day activity, I frequently have to discuss with customers and partners about technology around mobility and security. In the last 4 weeks I had a lot of requests from customers in the context of H1N1 disease, this is why I created this...
Bienvenue, on Frédéric ESNOUF's Web Log
Introduction to application reverse engineering : The CWA (Communicator Web Access) R2 case.
Posted
over 4 years ago
by
Frédéric ESNOUF
2
Comments
By Lucimara Desiderá (MS Consultant, São Paulo) & Frédéric ESNOUF (MS Pre-sales IDA, Paris) Introduction Intelligent Application Gateway is a very powerful remote access solution which provides a wide range of technologies such as VPN...
Bienvenue, on Frédéric ESNOUF's Web Log
Publishing web applications though IAG : what if it fails ?
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
Microsoft IAG (Intelligent Application Gateway) is a powerful “mobility” gateway capable of providing remote access to different kind of people: employees, partners, customers, … It introduces several approaches to provide this mobility: · ...
Bienvenue, on Frédéric ESNOUF's Web Log
Mobility in the middle of your lifestyle
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
Lucky me, I am working for a company where mobility is truly part of the way we work. When I joined Microsoft, they gave me a “package” of technologies that I use every day. Check this picture: · A Laptop: running...
Bienvenue, on Frédéric ESNOUF's Web Log
GEMALTO (Gemplus / Axalto Merger)
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
GEMALTO authentication server is called Protiva. It is a global authentication solution which can especially provide OTP (One Time Password) authentication. The integration is very simple since the protocol used between IAG and Protiva server is...
Bienvenue, on Frédéric ESNOUF's Web Log
How to debug IAG SP2 KCD
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
Introduction Since IAG SP2, Kerberos Constrained Delegation (KCD) it handled at IAG level (not anymore at ISA level). Even if KCD logic remains the same, the approach to trace and troubleshoot is now different. The purpose of this document is to give...
Bienvenue, on Frédéric ESNOUF's Web Log
How to detect Skyrecon software in IAG
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
By default, IAG is capable of detecting a wide range of software on the client side. What happen if the software I want to check is not in the list ? I had that constraint with one of my partners, Skyrecon Here is the methodology we used : 1) asked the...
Bienvenue, on Frédéric ESNOUF's Web Log
Extending client-side analyzis (example : Test Registry Key)
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
IAG is able to inspect your workstation and then later, per application, verify if you are compatible with the security policy. For example, you want to make sure that only “corporate” machine can access ApplicationA, but everybody (of course...
Bienvenue, on Frédéric ESNOUF's Web Log
Tracing Client-side
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
When you connect IAG for the first time a “client” (in fact a bunch of sub components) are installed on the machine (there are other ways to install the client than online install). Later they will be loaded when needed when you connect IAG...
Bienvenue, on Frédéric ESNOUF's Web Log
Display end-point detection variables on the client-side
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
When you connect an IAG portal, a client-side component will inspect your workstation and will take a “technical picture” of your machine. This “picture” will contain by default more than 200 checks and can be extended quickly to cope with your...
Bienvenue, on Frédéric ESNOUF's Web Log
Hello SSD, good buy OCZ
Posted
over 4 years ago
by
Frédéric ESNOUF
3
Comments
As an IT PRO, I am spending most of my day with my laptop computer. It is used for basic things like email, Phone (VOIP), … but also for more stressful (my machine point of view) activities such as working on Virtual Machines. I wanted to “boost” my laptop...
Bienvenue, on Frédéric ESNOUF's Web Log
How to convert Technet "online" documentation in a file
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
Most of the products documentation are now online. this is very nice since it is centralized, and very easy to update, but on the other hand when working offline, you are stuck. This is the case for IAG that you can find here: http://technet.microsoft...
Bienvenue, on Frédéric ESNOUF's Web Log
IAG Service Pack 2 is now RTM (Part 2)
Posted
over 5 years ago
by
Frédéric ESNOUF
0
Comments
Intelligent Application Gateway 2007 Service Pack 2 is now available! Marking a significant milestone for this technology, Service Pack 2 brings with it a variety of enhancements that improve overall IAG scalability, interoperability, and...
Page 2 of 3 (63 items)
1
2
3