<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>New Articles on Tales from the Edge</title><link>http://blogs.technet.com/isablog/archive/2008/09/04/new-articles-on-tales-from-the-edge.aspx</link><description>Security Considerations with Forefront Edge Virtual Deployments As it's title suggests, this article deals with the security issues related to virtualized edge deployments. Hopefully, this will provide an alternative solution for those who are also interested</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>re: New Articles on Tales from the Edge</title><link>http://blogs.technet.com/isablog/archive/2008/09/04/new-articles-on-tales-from-the-edge.aspx#3119347</link><pubDate>Thu, 04 Sep 2008 17:27:47 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3119347</guid><dc:creator>PsYteAk</dc:creator><description>&lt;p&gt;Nice to virtualize ISA server for redunce.&lt;/p&gt;
&lt;p&gt;In the other article you Referende to the article &lt;a rel="nofollow" target="_new" href="http://support.microsoft.com/kb/329807/"&gt;http://support.microsoft.com/kb/329807/&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Does this apply to the later ISA/TMG products?&lt;/p&gt;
</description></item><item><title>re: New Articles on Tales from the Edge</title><link>http://blogs.technet.com/isablog/archive/2008/09/04/new-articles-on-tales-from-the-edge.aspx#3119439</link><pubDate>Thu, 04 Sep 2008 21:27:53 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3119439</guid><dc:creator>isablog</dc:creator><description>&lt;p&gt;To make that article more relevant to ISA 2004/2006 and TMG, the statement would be &amp;quot;Does Not Support Domain Members that Communicate across a NAT Network Relationship&amp;quot;.&lt;/p&gt;
&lt;p&gt;For ISA 2000, this means domain communication between clients in the Internal and domain clients in any other network is not supported because the only network relationship between the Internal network and any other network is NAT&lt;/p&gt;
&lt;p&gt;For ISA 2004/2006/TMG, this means domain communication between clients in one network and domain clients in another network is not supported when the explicit or implicit network relationship between those clients is NAT&lt;/p&gt;
&lt;p&gt;Let's further define this context of the terms explicit and implicit in this scenario:&lt;/p&gt;
&lt;p&gt;- explicit: a network rule applies to the two hosts by virtue of their unique inclusion in the network objects which define the &amp;quot;source&amp;quot; and &amp;quot;destination&amp;quot; for the network rule &lt;/p&gt;
&lt;p&gt;- implicit: a network rule applies to the two hosts by virtue of their membership within the network objects which define the &amp;quot;source&amp;quot; and &amp;quot;destination&amp;quot; for the network rule &lt;/p&gt;
</description></item></channel></rss>