Firewall Settings

When you configure your Windows EBS network to connect the Security Server to your existing firewall or gateway device, you need to change settings on your existing firewall to forward HTTP and e-mail (SMTP) traffic to the Security Server. This is because the Security Server is positioned as the default gateway for your local area network (LAN), and by default, it blocks traffic that is passed through your existing firewall.

Refer to the documentation for your existing firewall or gateway device for information about configuring the forwarding rules for HTTP and SMTP traffic to your Security Server. You may need to contact the vendor of your firewall device for assistance.

If your firewall is configured to forward requests to other services on your network, you can modify these rules to forward traffic to the Security Server. However, after Windows EBS installation is complete, you need to create publishing rules in Forefront TMG on the Security Server to allow users to access these services from outside the Windows EBS network. The task of configuring firewall rules is included in the Configuration and Migration Tasks checklist.