Sign in
Bienvenue, on Frédéric ESNOUF's Web Log
Microsoft EMEA/Security/IDA
Translate This Page
Translate this page
Powered by
Microsoft® Translator
Common Tasks
Blog Home
Email Blog Author
OK
RSS for comments
RSS for posts
Atom
Search
Tags
ADRMS
FIMScripting
howto-ApplicationSecurity
howto-authentication
Howto-client
howTo-Filters
IAG
tracing
Monthly Archives
Archives
May 2013
(2)
November 2012
(1)
June 2012
(4)
October 2011
(1)
July 2011
(1)
March 2011
(1)
February 2011
(3)
January 2011
(1)
December 2010
(3)
November 2010
(1)
October 2010
(3)
September 2010
(1)
July 2010
(1)
June 2010
(1)
March 2010
(6)
December 2009
(1)
August 2009
(8)
July 2009
(8)
March 2009
(1)
January 2009
(1)
December 2008
(3)
November 2008
(11)
TechNet Blogs
>
Bienvenue, on Frédéric ESNOUF's Web Log
Subscribe via RSS
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
Bienvenue, on Frédéric ESNOUF's Web Log
Understanding (and extending) UAG Web SSO capabilities
Posted
over 3 years ago
by
Frédéric ESNOUF
4
Comments
First of all, I would like to thank Matthieu Martineau ( matthieu.martineau@piservices.fr ) (Gold Partner, MCSE and MCT) with whom I had the opportunity to investigate some of the breaking scenarios I mention at the end of this post In the wide...
Bienvenue, on Frédéric ESNOUF's Web Log
how to address complex WebSSO scenarios with UAG and customization
Posted
over 3 years ago
by
Frédéric ESNOUF
3
Comments
This year, I will be at Tech Ready - a Microsoft internal event - giving a few sessions about Unified Access Gateway. One of them will be about Web Single Sign on , especially how UAG – using the internal engines and customization – can...
Bienvenue, on Frédéric ESNOUF's Web Log
How to debug IAG SP2 KCD
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
Introduction Since IAG SP2, Kerberos Constrained Delegation (KCD) it handled at IAG level (not anymore at ISA level). Even if KCD logic remains the same, the approach to trace and troubleshoot is now different. The purpose of this document is to give...
Bienvenue, on Frédéric ESNOUF's Web Log
UAG Activity Logging
Posted
over 3 years ago
by
Frédéric ESNOUF
0
Comments
When you connect an application through UAG, all the user activity will be logged by the system. The reason is that it is not only a “technical” gateway (that will pass back and forth the HTTP requests), but an “application layer” one (that will also...
Bienvenue, on Frédéric ESNOUF's Web Log
A great example of “a social engineering” attack : my Polynesian friend Marceline attacked me this morning !!
Posted
over 3 years ago
by
Frédéric ESNOUF
1
Comments
The context/purpose of this blog It is always interesting to use real world example s to explain security, especially how “bad guys” manipulate people to steal information. This is a true story, “My” True story. This morning, I was listening to a very...
Bienvenue, on Frédéric ESNOUF's Web Log
Tracing UAG : don’t be blind ;-)
Posted
over 3 years ago
by
Frédéric ESNOUF
3
Comments
Tracing a product is always a good thing. First , it helps you to understand how it works internally and so enhance your own skills… second , it helps you to understand why such expected feature or configuration is not working fine. With IAG (previous...
Bienvenue, on Frédéric ESNOUF's Web Log
Reverse engineering: Understanding application (Web) complexity
Posted
over 3 years ago
by
Frédéric ESNOUF
0
Comments
Part 1: the problem. With UAG, you can provide remote access towards many types of applications: · Web applications : The “client” is in this case a simple browser, and dialog with...
Bienvenue, on Frédéric ESNOUF's Web Log
Implementing UAG/SSO with SCOM (With VNEXT, France)
Posted
over 3 years ago
by
Frédéric ESNOUF
0
Comments
Note from Fred ESNOUF : This article has been written by Hicham Bardawil ( Hicham.Bardawil@vNext.fr ) UAG expert working for Vnext. I am just hosting his article since he used some of my previous posts to finalize his configuration. Congratulations Hicham...
Bienvenue, on Frédéric ESNOUF's Web Log
Introduction to application reverse engineering : The CWA (Communicator Web Access) R2 case.
Posted
over 4 years ago
by
Frédéric ESNOUF
2
Comments
By Lucimara Desiderá (MS Consultant, São Paulo) & Frédéric ESNOUF (MS Pre-sales IDA, Paris) Introduction Intelligent Application Gateway is a very powerful remote access solution which provides a wide range of technologies such as VPN...
Bienvenue, on Frédéric ESNOUF's Web Log
Strong authentication using your Brain : IAG and Gridsure.
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
Gridsure, a UK company, has created a very nice way to provide strong authentication. Strong authentication combines what you know (login, password) and what you have (something physical). In the long list of strong authentication mechanisms we know Smartacards...
Bienvenue, on Frédéric ESNOUF's Web Log
My machines : Lenovo T61P (Win2008/hyperV) and X61 (Tablet, Vista, day to day activity)
Posted
over 5 years ago
by
Frédéric ESNOUF
1
Comments
Lucky me, I have the chance to use 2 machines for my work. The big one (heavy, powerful) is a lenovo T61P laptop running windows 2008/HyperV. So far my 4 Go or RAM were sufficient to play with the different products. The biggest problem I am facing on...
Bienvenue, on Frédéric ESNOUF's Web Log
Speedup UAG in « offline » environment
Posted
over 3 years ago
by
Frédéric ESNOUF
1
Comments
Most of the time, when running a demo or POC, your environment is not connected to the internet. Maybe you have noticed that in this case, the demo is a bit slow . As an example, the first connection to UAG (after a long period or inactivity, or reboot...
Bienvenue, on Frédéric ESNOUF's Web Log
Installing win2008 Hyper V on my Lenovo T61p machine : Operating System part
Posted
over 5 years ago
by
Frédéric ESNOUF
1
Comments
As a step 1 in my lab, I had to install windows 2008 on my physical machine and also activate the HyperV role. First of all, I wanted to have a very stable machine so started Windowsupdate. After a few updates, my OS was not that good : As a matter of...
Bienvenue, on Frédéric ESNOUF's Web Log
BPOS and DNS Configuration : warning if your domain is at Gandi
Posted
over 4 years ago
by
Frédéric ESNOUF
1
Comments
Recently, I have decided to evaluate BPOS (Business Productivity Online Services), the Hosted offer of Microsoft. Basically, I want to use Exchange to host my personnal mail (OWA and Antivirus/Antispam) and also use Sharepoint/MOSS. With BPOS, you “rent...
Bienvenue, on Frédéric ESNOUF's Web Log
Hello Middle East and Africa, bye bye CEE
Posted
over 4 years ago
by
Frédéric ESNOUF
1
Comments
Last year I had a lot of pleasure to work for the Central and Eastern Europe Region. I had the opportunity to visit several countries and collaborate with partners and customers. What a great experience. This year I will be working for Middle East and...
Bienvenue, on Frédéric ESNOUF's Web Log
GEMALTO (Gemplus / Axalto Merger)
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
GEMALTO authentication server is called Protiva. It is a global authentication solution which can especially provide OTP (One Time Password) authentication. The integration is very simple since the protocol used between IAG and Protiva server is...
Bienvenue, on Frédéric ESNOUF's Web Log
Extending client-side analyzis (example : Test Registry Key)
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
IAG is able to inspect your workstation and then later, per application, verify if you are compatible with the security policy. For example, you want to make sure that only “corporate” machine can access ApplicationA, but everybody (of course...
Bienvenue, on Frédéric ESNOUF's Web Log
Installing win2008 Hyper V on my Lenovo T61p machine : HyperV Network Part
Posted
over 5 years ago
by
Frédéric ESNOUF
2
Comments
Before even working on VMs, we need to configure the network properly. The big challenge here is to understand the interaction between the physical machine and the HyperV environment. For my LAB, I have 1 Laptop with 2 NICs : an Ethernet one, and a Wifi...
Bienvenue, on Frédéric ESNOUF's Web Log
Understanding workstation analysis and security policy
Posted
over 3 years ago
by
Frédéric ESNOUF
0
Comments
Workstation analysis and security policy are the key features proposed by UAG to provide security at the application layer. Whereas firewall will operate at the network layer (filter by IP or TCP Port range), the application layer will look at “what”...
Bienvenue, on Frédéric ESNOUF's Web Log
A good phishing example. How is structured this kind of attack
Posted
over 3 years ago
by
Frédéric ESNOUF
0
Comments
A few weeks ago, I had the opportunity to write a blog about a very nice experience I had – during a presentation in Copenhagen – where hacker tried to fake an identity and tried to force me via communicator to install a malware on my machine. I wrote...
Bienvenue, on Frédéric ESNOUF's Web Log
Shalom ‘Haver Eli
Posted
over 2 years ago
by
Frédéric ESNOUF
0
Comments
For all the good moments we had together. Steve Ballmer support Microsoft emplyees bone marrow registration drive video :
Bienvenue, on Frédéric ESNOUF's Web Log
Red Alert: Eifel tower lost her head due to bad weather conditions
Posted
over 3 years ago
by
Frédéric ESNOUF
0
Comments
Merry Christmas !!
Bienvenue, on Frédéric ESNOUF's Web Log
ISA ? TMG ? IAG ? TMG ?
Posted
over 4 years ago
by
Frédéric ESNOUF
1
Comments
This December, a lot of changes happened in the Microsoft security portfolio. After more than 1 year of strong investments, Microsoft launched the “2010” versions of both “ISA” and “IAG” : * IAG Server becomes now “Forefront Unified Access Gateway...
Bienvenue, on Frédéric ESNOUF's Web Log
Books and online material to ramp up on “Identity Management”
Posted
over 3 years ago
by
Frédéric ESNOUF
0
Comments
Hi all, This is a very frequent question from customers and partners. How can I discover and train myself on IDentity and Access (IDA)products ? Here is a link of books and online training for that. Hope this helps ! ForeFront Identity Manager...
Bienvenue, on Frédéric ESNOUF's Web Log
Publishing web applications though IAG : what if it fails ?
Posted
over 4 years ago
by
Frédéric ESNOUF
0
Comments
Microsoft IAG (Intelligent Application Gateway) is a powerful “mobility” gateway capable of providing remote access to different kind of people: employees, partners, customers, … It introduces several approaches to provide this mobility: · ...
Page 1 of 3 (63 items)
1
2
3