Joining a server to an array

Published: January 11, 2010

Updated: October 27, 2011

Applies To: Unified Access Gateway

This topic describes how to join a Forefront Unified Access Gateway (UAG) server to an array.

Before you begin, ensure that you have completed the following:

  1. Follow the instructions in Planning to deploy arrays and load balancing.

  2. Configure the array manager as described in Configuring the array manager server.

Then, complete the following instructions on each Forefront UAG server that you want to add to the array. Note that you should not concurrently join servers to an array. This may corrupt array configuration storage.

If you have configured separate internal ranges on the array manager to be used in your SSTP deployment, when you join a server to the array, the internal network settings of the server are merged with the internal network settings of the array manager. For example, if the array manager has two internal ranges, to and to, and the server that you join to the array has an internal range of to, the resulting internal range on the array manager is to

Following installation and initial deployment, you can open the Array Management Wizard directly to join a server to an array.

Do not join a server to an array during Forefront UAG installation using the Getting Started Wizard.

To join the server to an array

  1. Before joining a server to the array, you should have added the server to the array member computers list on the array manager when you completed the procedure Configuring the array manager server. After doing this, ensure that the Forefront UAG Management console is closed on the array manager server, and then join a server to an array as follows:

    To join a server to an array after running the Getting Started Wizard, in the Forefront UAG Management console, on the Admin menu, click Array Management. The Array Management Wizard opens.

  2. On the Configure Array Settings page, click Add this server to an array.

  3. On the Select Array Manager page, do the following:

    1. In Array manager, specify the computer name or IP address of the internal adapter of the Forefront UAG server you configured as the array manager, or click Browse to select a computer. If you are joining an array using IPv6, specify an IP address for the array manager and not the computer name.

    2. In the User Credentials area, specify the credentials that the array member will use to connect to the array manager. The credentials are used during the initial connection, and subsequently when the array member connects to the array manager.

      You must provide credentials with an array administrator role in Forefront Threat Management Gateway (TMG) running on the Forefront UAG server. By default, the user that installs Forefront UAG has an array administrator role. If you want to use a different account, note the following:

      • It must be a domain account that is recognized by all array members.

      • The account should have local administrator permissions on the array manager server, and on all array members.

      • It is recommended to use an account with a long expiry period.

      • Ensure that you are logged on to the server, with the credentials that you will specify when running the Array Management Wizard.

  4. When you complete the wizard, the Forefront UAG server is joined to the array. This action may take a few minutes.

  5. After joining the array, you can no longer configure Forefront UAG settings using the Forefront UAG Management console on the array member. All configuration changes must be completed using the Forefront UAG Management console running on the array manager server.

  6. Repeat steps 1 to 5 for each server that you want to add to the array.

  7. If load balancing is not enabled, and you have already defined one or more trunks, you must manually add the IP address of each array member in the properties of each array trunk, as follows:

    1. On the array manager server, open the Forefront UAG Management console. If the console is already open, on the File menu, click Reload Configuration.

    2. In the left tree node, click a trunk.

    3. On the main trunk properties page, add the external IP address of the Forefront UAG server you added to the array.

    4. On the toolbar of the console, click the Activate configuration icon. On the Activate Configuration dialog box, click Activate.

    5. Repeat the above steps for each trunk defined in the array.