TS Gateway Questions


i have number of questions on ts gateway & ts web go , through each step.  these first.

   have existing non-domain windows 2000 server in dmz hosts current website "companyname.com" , have certificate public ca "companyname.com".  setting new windows 2008 server in dmz host website and want install ts gateway & ts web access on external clients can access ts farm in internal network ("companyname.net").  want ts gateway & ts web access on machine in dmz that i won't required buy certificate.

1.  need create forest/domain as "companyname.com" or can call "companyname.dmz" or "companyname.web" or else?

2. need install ad on machine

3. users need authenticated in dmz or can have authentication requests forwarded internal network?

   additional info:

my internal network "companyname.net" has server 2008 ad 2003 domain functional level , server 2008 on terminal servers.

thank in advance help.

rob


rpvincent,

http://certificatesforexchange.com/ has certs $30 - pretty cheap.

certificate name gateway.company.com should resolvable on internet. nat tsgateway on inside. cert yu place on gateway should reflec tthe name gateway.company.com. or san cert , have 2 names on like: tsweb.company.com , gateway.company.com

read thread advice on dmz placement of ts gateway: http://social.technet.microsoft.com/forums/en/winserverts/thread/0f843354-15e0-41db-bf60-79eb22e6c632

forward authentication requests internal network.



hope helps,

kristin l. griffin

co-author of windows server 2008 terminal services resource kit (and super big fan of microsoft rdv team!!!) 

started blog: blog.kristinlgriffin.com


Windows Server  >  Remote Desktop Services (Terminal Services)



Comments

Popular posts from this blog

Edit Group Policy

Hyper-V VM not reaching OS 'Logon' screen

DNS question...