Configuring client authentication servers

Updated: February 1, 2011

Applies To: Forefront Threat Management Gateway (TMG)

Forefront TMG supports a number of authentication servers that can be used to validate client credentials. The following table shows the supported authentication servers.

Authentication server Description

LDAP on AD LDS

Forefront TMG supports the Lightweight Directory Access Protocol (LDAP) directory service provided by Active Directory Lightweight Directory Services (AD LDS) server.

RADIUS on NPS

Forefront TMG supports the Remote Authentication Dial-In User Service (RADIUS) provided by Network Policy Server (NPS).

RSA Authentication Manager

Forefront TMG supports RSA SecurID authentication for two factor authentication security.

For more information about the authentication servers and authentication methods used by Forefront TMG, see Overview of authentication in Forefront TMG.

The following topics provide configuration information for deploying authentication servers to work with Forefront TMG: