<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>eXtreme. tech. : Forefront</title><link>http://blogs.technet.com/extreme/archive/tags/Forefront/default.aspx</link><description>Tags: Forefront</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>Forefront Protection (vs Online) for Exchange – FPE vs FOPE</title><link>http://blogs.technet.com/extreme/archive/2009/08/24/forefront-protection-vs-online-for-exchange-fpe-vs-fope.aspx</link><pubDate>Tue, 25 Aug 2009 00:52:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3276490</guid><dc:creator>David Tesar</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/extreme/comments/3276490.aspx</comments><wfw:commentRss>http://blogs.technet.com/extreme/commentrss.aspx?PostID=3276490</wfw:commentRss><description>
&lt;p&gt;In this interview with Mike Chan, I help clarify when you might want to utilize Forefront Protection for Exchange versus Forefront Online Protection for Exchange – or use both.&amp;nbsp; Most of the video is spent white boarding out how things work between FPE / FOPE and Exchange 2010’s security.&lt;/p&gt;

&lt;object data="data:application/x-silverlight-2," type="application/x-silverlight-2" width="320" height="240"&gt;
&lt;param name="source" value="http://edge.technet.com/App_Themes/default/vp09_06_22.xap"&gt;
&lt;param name="initParams" value="m=mms://mschnlnine.wmod.llnwd.net/a1809/d1/edge/4/1/2/5/ForefrontProtectionExchange2010_s_edge.wmv,autostart=false,autohide=true,showembed=true, thumbnail=http://ecn.channel9.msdn.com/o9/edge/4/1/2/5/ForefrontProtectionExchange2010_large_edge.png, postid=5214"&gt;
&lt;param name="background" value="#00FFFFFF"&gt;
&lt;a href="http://go.microsoft.com/fwlink/?LinkID=124807" mce_href="http://go.microsoft.com/fwlink/?LinkID=124807" style="text-decoration: none;"&gt;
&lt;img src="http://go.microsoft.com/fwlink/?LinkId=108181" mce_src="http://go.microsoft.com/fwlink/?LinkId=108181" alt="Get Microsoft Silverlight" style="border-style: none;"&gt;
&lt;/a&gt;
&lt;/object&gt;
&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3276490" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/extreme/archive/tags/Forefront/default.aspx">Forefront</category><category domain="http://blogs.technet.com/extreme/archive/tags/Microsoft/default.aspx">Microsoft</category><category domain="http://blogs.technet.com/extreme/archive/tags/Security/default.aspx">Security</category><category domain="http://blogs.technet.com/extreme/archive/tags/FOPE/default.aspx">FOPE</category><category domain="http://blogs.technet.com/extreme/archive/tags/FPE/default.aspx">FPE</category></item><item><title>Forefront Stirling – Public Beta Overview</title><link>http://blogs.technet.com/extreme/archive/2008/04/16/forefront-stirling-public-beta-overview.aspx</link><pubDate>Thu, 17 Apr 2008 09:59:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3038226</guid><dc:creator>David Tesar</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/extreme/comments/3038226.aspx</comments><wfw:commentRss>http://blogs.technet.com/extreme/commentrss.aspx?PostID=3038226</wfw:commentRss><description>&lt;P&gt;With the launch of the 1&lt;SUP&gt;st&lt;/SUP&gt; public beta for Forefront Stirling on April 8&lt;SUP&gt;th&lt;/SUP&gt;, I thought it would be relevant to do a post this week on it. This release proves that the Stirling vision scenario in my &lt;A href="http://blogs.technet.com/extreme/archive/2007/09/28/forefront-stirling-the-possibilities.aspx" mce_href="http://blogs.technet.com/extreme/archive/2007/09/28/forefront-stirling-the-possibilities.aspx"&gt;previous blog article&lt;/A&gt; is becoming a reality. “Stirling” seems to be thrown around quite a bit and can be misunderstood, so let me 1&lt;SUP&gt;st&lt;/SUP&gt; clarify. Codename Stirling refers to the next wave of all Forefront products, scheduled to hit RTM in the 1&lt;SUP&gt;st&lt;/SUP&gt; half of 2009. This wave includes the “next version” of: &lt;/P&gt;
&lt;P&gt;· Forefront Client Security (FCS)&lt;BR&gt;· Forefront Security for Exchange Server (FSES), &lt;BR&gt;· Forefront Security for SharePoint (FSS)&lt;BR&gt;· ISA Server – new name Forefront Threat Management Gateway (TMG).&lt;/P&gt;
&lt;P&gt;Additionally, this wave includes a server and single management console to interact with all of the above, commonly referred to as the “Stirling” server and “Stirling” management console. The console and server can be run on the same or separate machines. Down the road, we’ll have an official name to replace “Stirling” and “next version of”.&lt;/P&gt;
&lt;P&gt;&lt;U&gt;Ok, so what is some cool stuff to check out with the public beta?&lt;/U&gt;&lt;/P&gt;
&lt;P&gt;· Dynamic response capabilities – see how the forefront products share information and interact with each other.&lt;BR&gt;· Single management console and reporting for the entire technology suite except FSS - get a security state assessment for all of the connected machines &amp;amp; specify how you want to remediate &lt;A href="http://technet.microsoft.com/en-us/library/cc441325.aspx" mce_href="http://technet.microsoft.com/en-us/library/cc441325.aspx"&gt;through forefront policy&lt;/A&gt;.&lt;BR&gt;· Integration with NAP – use &lt;A href="http://edge.technet.com/Media/NAP-clickthrough/" mce_href="http://edge.technet.com/Media/NAP-clickthrough/"&gt;NAP to remediate your machines&lt;/A&gt;&lt;BR&gt;· Integrated malware and anti-virus protection – check out how it downloads &amp;amp; pushes out the updates &lt;BR&gt;· Use powershell to manage it – by default Stirling uses powershell behind the scenes, but you can do it yourself if you feel inclined.&lt;/P&gt;
&lt;P&gt;&lt;U&gt;What are some things you can NOT you do &lt;I&gt;yet&lt;/I&gt;?&lt;/U&gt;&lt;/P&gt;
&lt;P&gt;· Install a topology which has more than one Stirling server&lt;BR&gt;· Install the Stirling server, console, or next version of FCS on Windows Server 2008&lt;BR&gt;· Install Terminal Services or a DC on the Stirling server&lt;BR&gt;· Install non-English versions&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;FONT size=4&gt;&lt;U&gt;Get started&lt;/U&gt;&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;B&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P&gt;Download the Stirling beta &lt;A href="http://www.microsoft.com/downloads/details.aspx?FamilyID=65bd5f8a-d94c-457a-9f88-2046597130e1" mce_href="http://www.microsoft.com/downloads/details.aspx?FamilyID=65bd5f8a-d94c-457a-9f88-2046597130e1"&gt;here&lt;/A&gt;.&lt;BR&gt;The most helpful pre-requisite page to install everything &lt;A href="http://technet.microsoft.com/en-us/library/cc441281.aspx" mce_href="http://technet.microsoft.com/en-us/library/cc441281.aspx"&gt;here&lt;/A&gt;.&lt;BR&gt;&lt;A href="http://www.microsoft.com/stirling" mce_href="http://www.microsoft.com/stirling"&gt;Stirling homepage&lt;/A&gt;&lt;BR&gt;&lt;A href="http://technet.microsoft.com/en-us/library/cc483122.aspx" mce_href="http://technet.microsoft.com/en-us/library/cc483122.aspx"&gt;TechNet technical documentation&lt;/A&gt; for deployment, operations, etc.&lt;BR&gt;&lt;A href="http://blogs.technet.com/stirling/" mce_href="http://blogs.technet.com/stirling/"&gt;Stirling blog&lt;/A&gt;&lt;BR&gt;Forefront &lt;A href="http://blogs.technet.com/forefront/" mce_href="http://blogs.technet.com/forefront/"&gt;team blog&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Note: this post can also be found on TechNet Edge &lt;A href="http://edge.technet.com/Media/Forefront-Stirling--Public-Beta-Overview/" target=_blank mce_href="http://edge.technet.com/Media/Forefront-Stirling--Public-Beta-Overview/"&gt;here&lt;/A&gt;.&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3038226" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/extreme/archive/tags/Forefront/default.aspx">Forefront</category><category domain="http://blogs.technet.com/extreme/archive/tags/Microsoft/default.aspx">Microsoft</category><category domain="http://blogs.technet.com/extreme/archive/tags/Stirling/default.aspx">Stirling</category><category domain="http://blogs.technet.com/extreme/archive/tags/Feature+of+the+Week/default.aspx">Feature of the Week</category></item><item><title>IT Pro Momentum Program (like a TAP or RDP)</title><link>http://blogs.technet.com/extreme/archive/2007/11/26/it-pro-momentum-program-like-a-tap-or-rdp.aspx</link><pubDate>Tue, 27 Nov 2007 02:21:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:2567054</guid><dc:creator>David Tesar</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/extreme/comments/2567054.aspx</comments><wfw:commentRss>http://blogs.technet.com/extreme/commentrss.aspx?PostID=2567054</wfw:commentRss><description>&lt;P&gt;Would you like to learn about or use Windows Server 2008, SQL Server 2008, or the next version of Forefront Edge? If you're based in USA and 'fit the bill', I'll get you an invite to the IT Pro Momentum portal.&amp;nbsp; If you're in Ireland - contact &lt;A href="http://blogs.technet.com/daven/archive/2007/09/14/it-pro-momentum.aspx" target=_blank mce_href="http://blogs.technet.com/daven/archive/2007/09/14/it-pro-momentum.aspx"&gt;Dave Northey&lt;/A&gt;.&amp;nbsp; You can profile a project which uses one of the above mentioned technologies in your company's environment and receive benefits as your project moves along from Evaluate, through Plan and Pilot.&amp;nbsp; Details below: 
&lt;P&gt;&lt;IMG height=178 alt=image src="http://blogs.technet.com/blogfiles/daven/WindowsLiveWriter/ITProMomentum_D5D7/image_thumb.png" width=489 border=0 mce_src="http://blogs.technet.com/blogfiles/daven/WindowsLiveWriter/ITProMomentum_D5D7/image_thumb.png"&gt; 
&lt;P&gt;And as soon as you're ready to share your experiences with the wider community, let me know and I can help you make that happen (include you in our TechNet newsletter, post details about you on my blog, help you find an attentive audience to listen to you, whatever).&amp;nbsp; 
&lt;P&gt;Also, if you have a great story about how your company is already using one of the above mentioned technologies - please let me know and I can help you out too. You can see a quick video of what some existing customers have already done here:&amp;nbsp; &lt;A title=http://wm.microsoft.com/ms/inetpub/momentum07.wmv href="http://go.microsoft.com/fwlink/?LinkId=104808" target=_blank&gt;Stories of IT Pros adopted new technologies through Momentum&lt;/A&gt;.&amp;nbsp; 
&lt;P&gt;Please &lt;A href="mailto:david.tesar@microsoft.com" target=_blank mce_href="mailto:david.tesar@microsoft.com"&gt;email me&lt;/A&gt; if you are interested. 
&lt;P&gt;Thanks, 
&lt;P&gt;Dave.&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=2567054" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/extreme/archive/tags/Forefront/default.aspx">Forefront</category><category domain="http://blogs.technet.com/extreme/archive/tags/Microsoft/default.aspx">Microsoft</category><category domain="http://blogs.technet.com/extreme/archive/tags/SQL/default.aspx">SQL</category><category domain="http://blogs.technet.com/extreme/archive/tags/Server+2008/default.aspx">Server 2008</category><category domain="http://blogs.technet.com/extreme/archive/tags/Edge/default.aspx">Edge</category></item><item><title>Forefront Stirling - The possibilities</title><link>http://blogs.technet.com/extreme/archive/2007/09/28/forefront-stirling-the-possibilities.aspx</link><pubDate>Fri, 28 Sep 2007 22:54:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:2069535</guid><dc:creator>David Tesar</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/extreme/comments/2069535.aspx</comments><wfw:commentRss>http://blogs.technet.com/extreme/commentrss.aspx?PostID=2069535</wfw:commentRss><description>&lt;P&gt;That's right it's Stirling, not Sterling like silver.&amp;nbsp; I'll cover the background behind the name perhaps in an interview with the product team.&amp;nbsp; 
&lt;P&gt;Forefront is categorized into three categories: Client, Server, and Edge. Currently, the client and server forefront products have two separate management consoles and Edge doesn’t have a management console. In June at TechEd 2007 Orlando, we announced Forefront “Stirling” which will be a central management console for all of our forefront line of products. The first CTP is scheduled to be released sometime by the end of this year. 
&lt;P&gt;Ok, so other than a central console, why should I care about it? Thinking about the scenario below will help you realize why it’s much bigger than this… 
&lt;P&gt;1) A client downloads a virus which is new and has an unknown signature by browsing the web through their ISA server (&lt;I&gt;scan 1 - missed&lt;/I&gt;). 
&lt;P&gt;2) The client executes the virus &lt;I&gt;(scan 2 – missed)&lt;/I&gt; and then the virus proceeds to attempt to send individual emails to all of their contacts and also tries to replicate itself to other client machines in the network over a specific port. 
&lt;P&gt;3) Forefront Exchange notices this behavior (&lt;I&gt;scan 3 – detected&lt;/I&gt;), immediately sends alerts to the IT staff via a pager/email/etc, automatically prohibits this client from sending those pieces of mail, and also takes action to stop this behavior by talking to the forefront client software. 
&lt;P&gt;4) Forefront client security detects (&lt;I&gt;scan 4 – successful&lt;/I&gt;) the rapid attempt to spread to other machines, sends notifications to IT staff, notifies ISA to not allow this file to be downloaded, and stops the behavior from spreading by stopping it locally and telling the FCS console the file is a virus (if it hasn’t already been stopped by the assistance from Forefront Exchange). 
&lt;P&gt;5) Finally, at any point the IT staff can quickly identify where the virus entered the network on the ISA server, see the behavior of the virus, see what machines in the network have been affected, and if necessary quickly tell all clients to block the specific port it is trying to replicate on for all machines in the environment. 
&lt;P&gt;Ok... I know it was long, but it gets you to think about the power Stirling could have. 
&lt;P&gt;&lt;STRONG&gt;Other cool tidbits about it:&lt;/STRONG&gt; 
&lt;P&gt;· Integration with SCCM 2007. So not only is it a central security console, it also is a central console for your entire enterprise’s computer management. 
&lt;P&gt;· Integration with AD. This might allow you to do cool stuff like roll out custom security policies to machines or users in specific OUs. 
&lt;P&gt;· The entire suite of products will be updatable via WSUS. 
&lt;P&gt;· Integration with NAP. 
&lt;P&gt;· Covers more than just viruses. Anti-malware, Anti-spyware, Anti-spam all included. 
&lt;P&gt;&lt;STRONG&gt;Get started:&lt;/STRONG&gt; 
&lt;P&gt;Unfortunately, there's not much out there publicly yet - but check here for some more info: &lt;A title=http://www.microsoft.com/forefront/prodinfo/roadmap/stirling.mspx href="http://www.microsoft.com/forefront/prodinfo/roadmap/stirling.mspx" mce_href="http://www.microsoft.com/forefront/prodinfo/roadmap/stirling.mspx"&gt;http://www.microsoft.com/forefront/prodinfo/roadmap/stirling.mspx&lt;/A&gt;&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=2069535" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/extreme/archive/tags/Forefront/default.aspx">Forefront</category><category domain="http://blogs.technet.com/extreme/archive/tags/Microsoft/default.aspx">Microsoft</category><category domain="http://blogs.technet.com/extreme/archive/tags/Stirling/default.aspx">Stirling</category></item><item><title>Forefront Server Security Management Console Beta 2 Released!</title><link>http://blogs.technet.com/extreme/archive/2007/06/07/forefront-server-security-management-console-beta-2-released.aspx</link><pubDate>Thu, 07 Jun 2007 20:00:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:1106384</guid><dc:creator>David Tesar</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/extreme/comments/1106384.aspx</comments><wfw:commentRss>http://blogs.technet.com/extreme/commentrss.aspx?PostID=1106384</wfw:commentRss><description>&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: 140%"&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: 'Tahoma','sans-serif'"&gt;In addition to centrally managing Forefront Security for Exchange Server, Forefront Security for SharePoint and Microsoft Antigen e-mail security products, the Beta 2 release will include new features that enable customers to:&lt;?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: 140%; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: 'Tahoma','sans-serif'"&gt;Use SQL Server 2005 for quarantine and reporting&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: 140%; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: 'Tahoma','sans-serif'"&gt;Provide redundancy of FSSMC in case of server failure&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: 140%; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: 'Tahoma','sans-serif'"&gt;Auto-discover new Exchange servers on the network&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: 140%; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: 'Tahoma','sans-serif'"&gt;Navigate to Exchange servers easier with new filter options &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: 140%; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: 'Tahoma','sans-serif'"&gt;Manage Forefront security for Exchange CCR clusters&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: 140%; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: 'Tahoma','sans-serif'"&gt;Deploy Forefront and Antigen hotfixes&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: 140%; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 140%; FONT-FAMILY: 'Tahoma','sans-serif'"&gt;Redistribute virus signatures to select servers&lt;/SPAN&gt;&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=1106384" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/extreme/archive/tags/Forefront/default.aspx">Forefront</category><category domain="http://blogs.technet.com/extreme/archive/tags/Microsoft/default.aspx">Microsoft</category></item><item><title>IAG runs ISA?</title><link>http://blogs.technet.com/extreme/archive/2007/05/31/iag-runs-isa.aspx</link><pubDate>Fri, 01 Jun 2007 02:59:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:1115039</guid><dc:creator>David Tesar</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/extreme/comments/1115039.aspx</comments><wfw:commentRss>http://blogs.technet.com/extreme/commentrss.aspx?PostID=1115039</wfw:commentRss><description>&lt;P&gt;What&amp;nbsp;is not obvious is the fact that&amp;nbsp;the IAG appliance&amp;nbsp;has the full edition of 2006 ISA standard edition running on it.&amp;nbsp; I figured that I should do this as a follow up to my ISA vs IAG post - as I failed to mention it there.&amp;nbsp; So why should I even buy ISA 2006 instead of IAG you might ask?&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;If you want any of the enhanced features for the enterprise version of ISA (NLB, Web farm publishing, shared configuration between multiple machines, etc)&lt;/LI&gt;
&lt;LI&gt;As far as what I'm told, the cost for IAG is more than for a copy of ISA standard edition.&lt;/LI&gt;
&lt;LI&gt;If you want to put the software on your own hardware instead of an appliance.&amp;nbsp; IAG only can be purchased as an appliance currently.&lt;/LI&gt;&lt;/UL&gt;
&lt;P&gt;I hope this helps.&amp;nbsp; If there are other reasons, please feel free to comment.&lt;/P&gt;
&lt;P&gt;Also, if this is the first post you're reading, please check out&amp;nbsp;my post &lt;A id=bp___v___r___postlist___EntryItems_ctl06_PostTitle href="http://blogs.technet.com/extreme/archive/2007/04/23/isa-2006-versus-iag-which-one-to-use.aspx"&gt;ISA 2006 versus IAG - Which one to use?&lt;/A&gt;&amp;nbsp;which has more information and links to other sources.&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=1115039" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/extreme/archive/tags/IAG/default.aspx">IAG</category><category domain="http://blogs.technet.com/extreme/archive/tags/ISA/default.aspx">ISA</category><category domain="http://blogs.technet.com/extreme/archive/tags/Forefront/default.aspx">Forefront</category><category domain="http://blogs.technet.com/extreme/archive/tags/Microsoft/default.aspx">Microsoft</category></item><item><title>Forefront IAG 2007 SP1</title><link>http://blogs.technet.com/extreme/archive/2007/05/30/forefront-iag-2007-sp1.aspx</link><pubDate>Thu, 31 May 2007 01:16:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:1106367</guid><dc:creator>David Tesar</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/extreme/comments/1106367.aspx</comments><wfw:commentRss>http://blogs.technet.com/extreme/commentrss.aspx?PostID=1106367</wfw:commentRss><description>&lt;P mce_keep="true"&gt;On May 21st, we announced &lt;A href="http://www.microsoft.com/presspass/features/2007/may07/05-21sandersqa.mspx" target=_blank mce_href="http://www.microsoft.com/presspass/features/2007/may07/05-21sandersqa.mspx"&gt;IAG's SP1&lt;/A&gt;&amp;nbsp;-&amp;nbsp;RTM expected around this August.&amp;nbsp; I'll&amp;nbsp;give a&amp;nbsp;summary&amp;nbsp;of the new features coming out with SP1: &lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;U&gt;&lt;SPAN style="FONT-SIZE: 14pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;Vista Client support&lt;/SPAN&gt;&lt;/U&gt;&lt;SPAN style="FONT-SIZE: 14pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;&lt;STRONG&gt;Details&lt;/STRONG&gt;:&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Both online and offline installation / updates / removal of Download Manager&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Detection of multiple legacy client-security components&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;SSL tunnel and session security with basic and socket forwarding&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Keyboard and mouse monitoring&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Network Connector functionality&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Added support for Forefront Client Security in endpoint security checks&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;&lt;STRONG&gt;Benefits:&lt;o:p&gt;&lt;/o:p&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: 0in 0in 0pt 0.25in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto; mso-layout-grid-align: none; mso-list: l1 level1 lfo2"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Attachment Wiper clears out IE images, cookies, history and auto-complete forms, plus private app-specific caches&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;U&gt;&lt;SPAN style="FONT-SIZE: 14pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;o:p&gt;&lt;SPAN style="TEXT-DECORATION: none"&gt;&lt;FONT face=Calibri&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/U&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;U&gt;&lt;SPAN style="FONT-SIZE: 14pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;/SPAN&gt;&lt;/U&gt;&lt;/FONT&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;U&gt;&lt;SPAN style="FONT-SIZE: 14pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;ADFS enhancements&lt;/SPAN&gt;&lt;/U&gt;&lt;SPAN style="FONT-SIZE: 14pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;&lt;STRONG&gt;Details:&lt;o:p&gt;&lt;/o:p&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;SAML pre-authentication for all access&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Protected SAML-based access for users with federated trust relationships using granular, per-user policy&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;DMZ-ready deployment (hardened appliance)&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Kerberos Constrained Delegation (KCD) support for SmartCard-only authentication&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;&lt;STRONG&gt;Benefits:&lt;o:p&gt;&lt;/o:p&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Maintains SSO experience for users without needing direct server connections&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Web applications are not exposed&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Reduces TCO and increases security&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;by eliminating need for a dedicated Federation Server Proxy&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 14pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;U&gt;&lt;SPAN style="FONT-SIZE: 14pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;Performance&lt;/SPAN&gt;&lt;/U&gt;&lt;SPAN style="FONT-SIZE: 14pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;&lt;STRONG&gt;Detail:&lt;o:p&gt;&lt;/o:p&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Enhanced regular expression handling&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Reduced buffer allocation / sizes&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Enhanced HTTP text string handling&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;&lt;STRONG&gt;Benefits:&lt;o:p&gt;&lt;/o:p&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Reduced CPU consumption results in higher throughput&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 13.4pt; TEXT-INDENT: -13.4pt; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-list: l0 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-font-kerning: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #292929; FONT-FAMILY: Segoe; mso-bidi-font-family: Segoe; mso-font-kerning: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Improved memory consumption&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=1106367" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/extreme/archive/tags/IAG/default.aspx">IAG</category><category domain="http://blogs.technet.com/extreme/archive/tags/Forefront/default.aspx">Forefront</category><category domain="http://blogs.technet.com/extreme/archive/tags/Microsoft/default.aspx">Microsoft</category></item><item><title>Internet Application Gateway (IAG) - Overview</title><link>http://blogs.technet.com/extreme/archive/2007/05/02/internet-application-gateway-iag-overview.aspx</link><pubDate>Thu, 03 May 2007 02:59:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:871434</guid><dc:creator>David Tesar</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/extreme/comments/871434.aspx</comments><wfw:commentRss>http://blogs.technet.com/extreme/commentrss.aspx?PostID=871434</wfw:commentRss><description>&lt;P mce_keep="true"&gt;Microsoft's &lt;A href="http://www.microsoft.com/forefront/edgesecurity/iag/default.mspx" mce_href="http://www.microsoft.com/forefront/edgesecurity/iag/default.mspx"&gt;Intelligent Application Gateway 2007&lt;/A&gt; just released this February. It is a secure remote access gateway that provides SSL-based application access and protection. &lt;/P&gt;
&lt;P&gt;So what are some of the cool things that IAG allows you to do? 
&lt;P&gt;&lt;B&gt;NOTE&lt;/B&gt;: All of the items below you can do securely from an un-trusted network (such as the internet) while only requiring SSL (port 443) to be open to the IAG server &lt;I&gt;and&lt;/I&gt; none require you to connect with a VPN connection. This means that you don’t have to worry about your internet connection allowing IPSec VPN traffic through.&amp;nbsp; Many internet connections at coffee shops and hotels don't allow IPSec VPN traffic through... 
&lt;P&gt;1. Connect to internal websites and switch between them without having to re-input credentials&lt;BR&gt;Microsoft has ~45: Any &lt;A href="http://blogs.technet.com/controlpanel/blogs/team" mce_href="team"&gt;team&lt;/A&gt; sharepoint site, &lt;A href="http://blogs.technet.com/controlpanel/blogs/tar" mce_href="tar"&gt;tar&lt;/A&gt;, &lt;A href="http://hotfix/" mce_href="http://hotfix"&gt;hotfix&lt;/A&gt;, &lt;A href="http://msexpense/" mce_href="http://msexpense"&gt;msexpense&lt;/A&gt;, &lt;A href="http://itweb/" mce_href="http://itweb"&gt;itweb&lt;/A&gt;, &lt;A href="http://autogroup/" mce_href="http://autogroup"&gt;autogroup&lt;/A&gt;, &lt;A href="http://paystub/" mce_href="http://paystub"&gt;paystub&lt;/A&gt;, &lt;A href="http://hrweb/" mce_href="http://hrweb"&gt;hrweb&lt;/A&gt; 
&lt;P&gt;2. Access non-web internal applications (such as file shares, Remote desktop) 
&lt;P&gt;3. Connect into an internal network with a full VPN connection 
&lt;P&gt;4. Execute various security checks for the client before allowing access to the application portal. These checks are highly-customizable via the GUI right out of the box. For instance, you can choose to only allow certain operating systems, check for the presence of anti-virus, etc. 
&lt;P&gt;&lt;STRONG&gt;&lt;FONT size=4&gt;Get started&lt;/FONT&gt;&lt;/STRONG&gt; 
&lt;P&gt;&lt;B&gt;&lt;/B&gt;
&lt;P&gt;General IAG learning: &lt;BR&gt;&lt;A href="http://go.microsoft.com/?linkid=6426182" mce_href="http://go.microsoft.com/?linkid=6426182"&gt;Start an IAG virtual Lab&lt;/A&gt; (VS images w/ full functionality all done online) &lt;BR&gt;&lt;A href="http://go.microsoft.com/?linkid=6256395" mce_href="http://go.microsoft.com/?linkid=6256395"&gt;Second IAG virtual Lab&lt;/A&gt; &lt;BR&gt;&lt;A href="http://www.microsoft.com/forefront/edgesecurity/iag/whitepapers.mspx" mce_href="http://www.microsoft.com/forefront/edgesecurity/iag/whitepapers.mspx"&gt;Read some IAG White papers&lt;/A&gt; &lt;BR&gt;&lt;A href="http://www.microsoft.com/forefront/edgesecurity/producttours.swf" mce_href="http://www.microsoft.com/forefront/edgesecurity/producttours.swf"&gt;Get a Product tour &lt;/A&gt;(Flash-based point-and-click) &lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=871434" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/extreme/archive/tags/IAG/default.aspx">IAG</category><category domain="http://blogs.technet.com/extreme/archive/tags/Forefront/default.aspx">Forefront</category><category domain="http://blogs.technet.com/extreme/archive/tags/Microsoft/default.aspx">Microsoft</category></item><item><title>ISA 2006 versus IAG - Which one to use?</title><link>http://blogs.technet.com/extreme/archive/2007/04/23/isa-2006-versus-iag-which-one-to-use.aspx</link><pubDate>Tue, 24 Apr 2007 05:02:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:811900</guid><dc:creator>David Tesar</dc:creator><slash:comments>5</slash:comments><comments>http://blogs.technet.com/extreme/comments/811900.aspx</comments><wfw:commentRss>http://blogs.technet.com/extreme/commentrss.aspx?PostID=811900</wfw:commentRss><description>&lt;P class=MsoNormal style="MARGIN: 0in 0in 6pt; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;If you read the only two places where&amp;nbsp;&lt;A href="http://www.microsoft.com/isaserver/default.mspx" target=_blank mce_href="http://www.microsoft.com/isaserver/default.mspx"&gt;&lt;SPAN style="mso-bidi-font-size: 11.0pt"&gt;ISA&lt;/SPAN&gt;&lt;/A&gt;&amp;nbsp;is compared to &lt;A href="http://www.microsoft.com/forefront/edgesecurity/iag/default.mspx" target=_blank mce_href="http://www.microsoft.com/forefront/edgesecurity/iag/default.mspx"&gt;&lt;SPAN style="mso-bidi-font-size: 11.0pt"&gt;IAG&lt;/SPAN&gt;&lt;/A&gt;, it doesn't really give a simple and clear comparison.&amp;nbsp;I hope to do so now in this post.&amp;nbsp; Please post comments if you find other comparison information out there.&lt;?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 6pt; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;The&amp;nbsp;two&amp;nbsp;comparisons I found are:&lt;BR&gt;&lt;A href="http://www.microsoft.com/forefront/edgesecurity/sra.mspx" mce_href="http://www.microsoft.com/forefront/edgesecurity/sra.mspx"&gt;&lt;SPAN style="mso-bidi-font-size: 11.0pt"&gt;Secure Remote Access&lt;/SPAN&gt;&lt;/A&gt;&lt;BR&gt;&lt;A href="http://www.microsoft.com/forefront/edgesecurity/iag/faq.mspx" mce_href="http://www.microsoft.com/forefront/edgesecurity/iag/faq.mspx"&gt;&lt;SPAN style="mso-bidi-font-size: 11.0pt"&gt;IAG Frequently Asked Questions&lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 6pt; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;(now updated) other comparison links from &lt;A href="http://www.isaserver.org/"&gt;http://www.isaserver.org&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 6pt; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;A href="http://www.isaserver.org/pages/newsletters/february2007.asp#1"&gt;&lt;FONT color=#13265c&gt;Should You Get an ISA Firewall or the IAG 2007?&lt;/FONT&gt;&lt;/A&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;BR&gt;&lt;A href="http://www.isaserver.org/pages/newsletters/january2007.asp#1"&gt;&lt;FONT color=#13265c&gt;What's the ISA Firewall-based Microsoft IAG About?&lt;/FONT&gt;&lt;/A&gt; &lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 6pt; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;To compare the two products, I am going to break it down into 3 major functionality categories: Forward Proxy, Reverse Proxy / Publishing, and VPN.&amp;nbsp; Please keep in mind that you can run ISA and IAG independently or together in the same environment AND when you purchase IAG (you can only buy IAG via appliance vendors), it includes the standard edition of ISA.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 6pt; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto"&gt;&lt;B&gt;&lt;U&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Forward Proxy&lt;/SPAN&gt;&lt;/U&gt;&lt;/B&gt;&lt;B&gt;&lt;U&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;BR&gt;&lt;/SPAN&gt;&lt;/U&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;This section is very simple to explain; IAG isn't a forward proxy at all. so if you need clients to get out to the internet through a proxy server you'll need to use ISA 2006.&amp;nbsp; Along those lines, it also doesn't do web content caching for forward proxy or reverse.&amp;nbsp; To learn more about ISA 2006's forward proxy and caching features, check out:&lt;BR&gt;&lt;A href="http://msdn2.microsoft.com/en-us/library/ms812546.aspx" mce_href="http://msdn2.microsoft.com/en-us/library/ms812546.aspx"&gt;&lt;SPAN style="mso-bidi-font-size: 11.0pt"&gt;About ISA Server Clients&lt;/SPAN&gt;&lt;/A&gt;&lt;BR&gt;&lt;A title="Caching and CARP in ISA Server 2006" href="http://www.microsoft.com/technet/isa/2006/cache_concepts.mspx" mce_href="http://www.microsoft.com/technet/isa/2006/cache_concepts.mspx"&gt;&lt;SPAN style="mso-bidi-font-size: 11.0pt"&gt;&lt;FONT color=#0000ff&gt;Caching and CARP in ISA Server 2006&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 6pt; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto"&gt;&lt;B&gt;&lt;U&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Reverse Proxy / Publishing&lt;/SPAN&gt;&lt;/U&gt;&lt;/B&gt;&lt;B&gt;&lt;U&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;BR&gt;&lt;/SPAN&gt;&lt;/U&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;This is where it gets tricky.&amp;nbsp; Both&amp;nbsp;ISA and IAG&amp;nbsp;can securely publish resources, but&amp;nbsp;the capabilities and ways&amp;nbsp;it is done varies greatly between the two products.&amp;nbsp; To compare the two it is easiest to break this down&amp;nbsp;via a table.&amp;nbsp; Of course, this isn't a comprehensive comparison - just some of the advantages that I see each product have over each other.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;
&lt;TABLE class=MsoNormalTable style="MARGIN: auto auto auto 4.65pt; WIDTH: 416pt; BORDER-COLLAPSE: collapse; mso-yfti-tbllook: 1184; mso-padding-alt: 0in 5.4pt 0in 5.4pt" cellSpacing=0 cellPadding=0 width=555 border=0 class="MsoNormalTable"&gt;
&lt;TBODY&gt;
&lt;TR style="HEIGHT: 15pt; mso-yfti-irow: 0; mso-yfti-firstrow: yes"&gt;
&lt;TD class="" style="BORDER-RIGHT: windowtext 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: windowtext 1pt solid; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: windowtext 1pt solid; WIDTH: 12pt; PADDING-TOP: 0in; BORDER-BOTTOM: windowtext 1pt solid; HEIGHT: 15pt; BACKGROUND-COLOR: transparent; mso-border-alt: solid windowtext .5pt" noWrap width=16&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; TEXT-ALIGN: center; mso-margin-top-alt: auto" align=center&gt;&lt;FONT face=Calibri&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;Publishing type:&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: windowtext 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: windowtext 1pt solid; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: #f0f0f0; WIDTH: 135.35pt; PADDING-TOP: 0in; BORDER-BOTTOM: windowtext 1pt solid; HEIGHT: 15pt; BACKGROUND-COLOR: transparent; mso-border-top-alt: solid windowtext .5pt; mso-border-bottom-alt: solid windowtext .5pt; mso-border-right-alt: solid windowtext .5pt" noWrap width=180&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; TEXT-ALIGN: center; mso-margin-top-alt: auto" align=center&gt;&lt;FONT face=Calibri&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;ISA Advantages&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: windowtext 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: windowtext 1pt solid; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: #f0f0f0; WIDTH: 3in; PADDING-TOP: 0in; BORDER-BOTTOM: windowtext 1pt solid; HEIGHT: 15pt; BACKGROUND-COLOR: transparent; mso-border-top-alt: solid windowtext .5pt; mso-border-bottom-alt: solid windowtext .5pt; mso-border-right-alt: solid windowtext .5pt" noWrap width=288&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; TEXT-ALIGN: center; mso-margin-top-alt: auto" align=center&gt;&lt;FONT face=Calibri&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;IAG Advantages&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR style="HEIGHT: 15pt; mso-yfti-irow: 1"&gt;
&lt;TD class="" style="BORDER-RIGHT: windowtext 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: #f0f0f0; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: windowtext 1pt solid; WIDTH: 12pt; PADDING-TOP: 0in; BORDER-BOTTOM: windowtext 1pt solid; HEIGHT: 15pt; BACKGROUND-COLOR: transparent; mso-border-bottom-alt: solid windowtext .5pt; mso-border-right-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt" noWrap width=16&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; TEXT-ALIGN: center; mso-margin-top-alt: auto" align=center&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 12pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;Web&lt;BR&gt;Sharepoint&lt;BR&gt;OWA&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: windowtext 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: #f0f0f0; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: #f0f0f0; WIDTH: 135.35pt; PADDING-TOP: 0in; BORDER-BOTTOM: windowtext 1pt solid; HEIGHT: 15pt; BACKGROUND-COLOR: transparent; mso-border-bottom-alt: solid windowtext .5pt; mso-border-right-alt: solid windowtext .5pt" noWrap width=180&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 20.25pt; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;·&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Symbol"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;A href="http://www.microsoft.com/technet/isa/2006/deployment/wplb.mspx" mce_href="http://www.microsoft.com/technet/isa/2006/deployment/wplb.mspx"&gt; &lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Can check service state of website&lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt; (WPLB)&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 20.25pt; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;·&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Symbol"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;Can cache published content&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 20.25pt; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;·&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Symbol"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;Compression capabilities&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: windowtext 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: #f0f0f0; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: #f0f0f0; WIDTH: 3in; PADDING-TOP: 0in; BORDER-BOTTOM: windowtext 1pt solid; HEIGHT: 15pt; BACKGROUND-COLOR: transparent; mso-border-bottom-alt: solid windowtext .5pt; mso-border-right-alt: solid windowtext .5pt" noWrap width=288&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 20.25pt; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;·&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Symbol"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;Can set granular access policies (User profiles, client validation – i.e. browser type, if running software, etc)&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 20.25pt; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;·&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Symbol"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;Client side cache clean-up and Attachment Wiper&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 20.25pt; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;·&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Symbol"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-weight: bold; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;&lt;FONT face="Times New Roman"&gt;Document upload/download policy controls&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 20.25pt; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;·&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Symbol"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-weight: bold; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;&lt;FONT face="Times New Roman"&gt;Portal makes it easier to switch between sites and applications&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR style="HEIGHT: 15pt; mso-yfti-irow: 2"&gt;
&lt;TD class="" style="BORDER-RIGHT: windowtext 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: #f0f0f0; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: windowtext 1pt solid; WIDTH: 12pt; PADDING-TOP: 0in; BORDER-BOTTOM: windowtext 1pt solid; HEIGHT: 15pt; BACKGROUND-COLOR: transparent; mso-border-bottom-alt: solid windowtext .5pt; mso-border-right-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt" noWrap width=16&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; TEXT-ALIGN: center; mso-margin-top-alt: auto" align=center&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 12pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;Exchange&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: windowtext 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: #f0f0f0; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: #f0f0f0; WIDTH: 135.35pt; PADDING-TOP: 0in; BORDER-BOTTOM: windowtext 1pt solid; HEIGHT: 15pt; BACKGROUND-COLOR: transparent; mso-border-bottom-alt: solid windowtext .5pt; mso-border-right-alt: solid windowtext .5pt" noWrap width=180&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 20.25pt; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;·&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Symbol"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;Supports RPC / RPC over HTTP for exchange server only&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 20.25pt; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;·&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Symbol"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;Supports secure publishing for SMTP traffic (port 25)&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: windowtext 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: #f0f0f0; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: #f0f0f0; WIDTH: 3in; PADDING-TOP: 0in; BORDER-BOTTOM: windowtext 1pt solid; HEIGHT: 15pt; BACKGROUND-COLOR: transparent; mso-border-bottom-alt: solid windowtext .5pt; mso-border-right-alt: solid windowtext .5pt" noWrap width=288&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 20.25pt; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;·&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Symbol"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;Supports RPC / RPC over HTTP for any application or website.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 20.25pt; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;·&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Symbol"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;Supports mobile device webpage support for portal and websites.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR style="HEIGHT: 15pt; mso-yfti-irow: 3; mso-yfti-lastrow: yes"&gt;
&lt;TD class="" style="BORDER-RIGHT: windowtext 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: #f0f0f0; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: windowtext 1pt solid; WIDTH: 12pt; PADDING-TOP: 0in; BORDER-BOTTOM: windowtext 1pt solid; HEIGHT: 15pt; BACKGROUND-COLOR: transparent; mso-border-bottom-alt: solid windowtext .5pt; mso-border-right-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt" noWrap width=16&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; TEXT-ALIGN: center; mso-margin-top-alt: auto" align=center&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 12pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;Non-HTTP(S) Apps&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: windowtext 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: #f0f0f0; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: #f0f0f0; WIDTH: 135.35pt; PADDING-TOP: 0in; BORDER-BOTTOM: windowtext 1pt solid; HEIGHT: 15pt; BACKGROUND-COLOR: transparent; mso-border-bottom-alt: solid windowtext .5pt; mso-border-right-alt: solid windowtext .5pt" noWrap width=180&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 20.25pt; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;·&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Symbol"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;Have to server publish the ports directly back to the server.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;More limited with amount of security granularity/control available compared to IAG.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;Exchange publishing &lt;I style="mso-bidi-font-style: normal"&gt;does&lt;/I&gt; have more configuration/security than other non-HTTP(S) protocols.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 20.25pt; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;·&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Symbol"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;&lt;FONT face="Times New Roman"&gt;Protocol inspection for some non-HTTP(S) protocols&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 20.25pt; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;·&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Symbol"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;&lt;FONT face="Times New Roman"&gt;Allows anonymous connections if desired&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: windowtext 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: #f0f0f0; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: #f0f0f0; WIDTH: 3in; PADDING-TOP: 0in; BORDER-BOTTOM: windowtext 1pt solid; HEIGHT: 15pt; BACKGROUND-COLOR: transparent; mso-border-bottom-alt: solid windowtext .5pt; mso-border-right-alt: solid windowtext .5pt" noWrap width=288&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-margin-top-alt: auto"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• Access to user's home directory and shared file folders using the built-in File Access application as a Web Part&lt;BR&gt;• Session management and security &lt;BR&gt;• Integrated Password Management&lt;BR&gt;• Supports almost any client-side application or server-side proxy&lt;BR&gt;• Policy based on endpoint profile&lt;BR&gt;• Application-specific session control&lt;BR&gt;• Seamless support of MS Office on the client, plus Web Services through host address translation and SharePoint-specific reroute actions&lt;BR&gt;• Can compute the MD5-hash of a client executable; only applications that match this hash are allowed push traffic through the SSL VPN tunnel&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 6pt; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;So what is my summary here?&amp;nbsp; If you want real granular control over securely publishing your internal client applications - especially non-HTTP(s) ones, then IAG is definitely the way to go.&amp;nbsp;&amp;nbsp;It's great because even if the internal app your company uses is on a non-HTTP(s) port,&amp;nbsp;a client can gain access through the stanadard 80&amp;nbsp;(HTTP)&amp;nbsp;or 443 (HTTPS) ports that are open pretty much anywhere you're at that has internet access.&amp;nbsp; The area where ISA wins with publishing&amp;nbsp;is with&amp;nbsp;Exchange (not OWA) and other&amp;nbsp;applications&amp;nbsp;that you would like&amp;nbsp;to&amp;nbsp;have&amp;nbsp;open anonymous to the&amp;nbsp;public (such&amp;nbsp;as FTP and HTTP).&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 6pt; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto"&gt;&lt;B&gt;&lt;U&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;VPN&lt;/SPAN&gt;&lt;/U&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;BR&gt;IAG is strictly a SSL VPN solution whereas ISA is only an IPSec VPN solution.&amp;nbsp; The SSL VPN is nice because you can access anything on the internal network by only using the standard HTTPS port which will get around many internet connection issues.&amp;nbsp; On the flip side, the IPSec VPN offers many more options with security.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 6pt; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Also, IAG does not have any site-to-site capabilites (SSL VPN tunnelling) and ISA does (IPSec VPN tunnelling).&amp;nbsp; It's also worth noting that if you want to do any form of client-side checking with ISA this must all be done via custom scripting utilizing CMAK.&amp;nbsp; IAG has a ton of pre-configured and customizable options for validating if the client is compliant (i.e. has AV that is installed and up to date, only certain OS or browser, etc).&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 6pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri size=3&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/P&gt;
&lt;P mce_keep="true"&gt;&amp;nbsp;&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=811900" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/extreme/archive/tags/IAG/default.aspx">IAG</category><category domain="http://blogs.technet.com/extreme/archive/tags/ISA/default.aspx">ISA</category><category domain="http://blogs.technet.com/extreme/archive/tags/Forefront/default.aspx">Forefront</category><category domain="http://blogs.technet.com/extreme/archive/tags/Microsoft/default.aspx">Microsoft</category></item><item><title>Forefront IAG ISA Client Antigen Exchange Edge Security</title><link>http://blogs.technet.com/extreme/archive/2007/04/10/forefront-iag-isa-client-antigen-exchange-edge-security.aspx</link><pubDate>Wed, 11 Apr 2007 03:04:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:746895</guid><dc:creator>David Tesar</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/extreme/comments/746895.aspx</comments><wfw:commentRss>http://blogs.technet.com/extreme/commentrss.aspx?PostID=746895</wfw:commentRss><description>&lt;P&gt;Confused yet?&amp;nbsp; I know that I was when I first started hearing this term Forefront...&amp;nbsp; Is "Forefront" just a client/server security product or something else?&amp;nbsp;&amp;nbsp; &lt;/P&gt;
&lt;P&gt;Forefront simply is a name that&amp;nbsp;MS is&amp;nbsp;branding onto&amp;nbsp;our&amp;nbsp;security related products.&amp;nbsp; Forefront is divided into three categories of client, server, and edge security.&amp;nbsp; Within those categories there are currently a total of 5 products.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Client&lt;/STRONG&gt;: &lt;BR&gt;1)&amp;nbsp; &lt;A href="http://www.microsoft.com/forefront/clientsecurity/overview.mspx" target=_blank mce_href="http://www.microsoft.com/forefront/clientsecurity/overview.mspx"&gt;Forefront Client Security&lt;/A&gt; - Comprehensive realtime protection against viruses, malware,&amp;nbsp;and spyware &lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Server&lt;/STRONG&gt;: &lt;BR&gt;2) &lt;A href="http://www.microsoft.com/forefront/serversecurity/exchange/default.mspx" mce_href="http://www.microsoft.com/forefront/serversecurity/exchange/default.mspx"&gt;Forefront Security for Exchange Server&lt;/A&gt; - helps protect your mail server against Viruses, Worms, Spam, and Inappropriate Content.&amp;nbsp; This is basically the "Antigen" for exchange&amp;nbsp;product lines all combind into one for Exchange.&lt;BR&gt;3) &lt;A href="http://www.microsoft.com/forefront/serversecurity/sharepoint/default.mspx" mce_href="http://www.microsoft.com/forefront/serversecurity/sharepoint/default.mspx"&gt;Forefront Security for Sharepoint&lt;/A&gt; - helps protect your sharepoint server against&amp;nbsp;the latest threats, inappropriate content, and disclosure of confidential information.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Edge&lt;/STRONG&gt; (a.k.a. "Edge Security and Access"):&lt;BR&gt;4) &lt;A href="http://www.microsoft.com/isaserver/default.mspx" target=_blank mce_href="http://www.microsoft.com/isaserver/default.mspx"&gt;Internet Security &amp;amp; Acceleration Server (ISA) 2006&lt;/A&gt; - Application layer firewall and web proxy server.&amp;nbsp;&lt;BR&gt;5) &lt;A href="http://www.microsoft.com/forefront/edgesecurity/iag/default.mspx" target=_blank mce_href="http://www.microsoft.com/forefront/edgesecurity/iag/default.mspx"&gt;Internet Application Gateway (IAG)&lt;/A&gt; - SSL remote access gateway.&amp;nbsp; This can work with or independently from ISA to provide much more granular levels of access to published resources (file shares, applications, websites, etc).&amp;nbsp; The easiest way to think about IAG is if you want to give people on an unprotected network&amp;nbsp;granular and secure access to an internal&amp;nbsp;resource without doing a IPSec/PPTP VPN, this will do the trick.&lt;/P&gt;
&lt;P&gt;One thing that I think deserves a better and more simple explanation is the difference between ISA 2006 and IAG.&amp;nbsp; I hope to publish another blog about this in the future.&amp;nbsp; Please add a comment to this&amp;nbsp;blog if you'd like me to write this up to spur me on...&lt;/P&gt;
&lt;P&gt;&lt;IMG src="http://img.microsoft.com/library/media/1033/forefront/graphics/spot/RoadMap_sm.jpg" mce_src="http://img.microsoft.com/library/media/1033/forefront/graphics/spot/RoadMap_sm.jpg"&gt; &lt;/P&gt;
&lt;P&gt;The &lt;A href="http://www.microsoft.com/forefront/2006/prodinfo/overview.mspx" target=_blank mce_href="http://www.microsoft.com/forefront/2006/prodinfo/overview.mspx"&gt;forefront overview&lt;/A&gt; which is linked on the forefront &lt;A href="http://www.microsoft.com/forefront/default.mspx" target=_blank mce_href="http://www.microsoft.com/forefront/default.mspx"&gt;homepage&lt;/A&gt; does a decent job at explaining more about the differences, so I won't get into it in any more detail.&amp;nbsp; I just wanted to clear that up for anyone who wanted to quickly understand this "forefront" area that we are throwing out there.&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=746895" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/extreme/archive/tags/IAG/default.aspx">IAG</category><category domain="http://blogs.technet.com/extreme/archive/tags/ISA/default.aspx">ISA</category><category domain="http://blogs.technet.com/extreme/archive/tags/Forefront/default.aspx">Forefront</category><category domain="http://blogs.technet.com/extreme/archive/tags/Microsoft/default.aspx">Microsoft</category></item></channel></rss>