Secure Remote Access and Direct Access with Microsoft Unified Access Gateway (UAG) 2010

If you need to provide remote workers, partners or customers with remote access to systems and want the peace of mind of a secure, robust platform then we can help.

Background

Increasingly organizations need to provide mobile and remote workers with secure application access from a broad range of devices and locations. Using Microsoft Unified Access Gateway (UAG) 2010 we can provide improved application access, enhanced security and simplified administration. UAG enables IT administrators to enforce compliance with application and information usage guidelines at the web firewall by applying remote access policy based on devices, identity, application or other business criteria.

Using a combination of SSL VPN (secure socket layer virtual private network), a Web application firewall, and endpoint security management, UAG provides employees, partners, vendors, and customers with secure and easy access from a broad range of devices and locations including kiosks, PCs, and mobile devices.

Microsoft Forefront Unified Access Gateway

Granular Application Intelligence - At the heart of UAG is a highly granular, policy-based and intelligent application firewall that improves the security and scope for use of most web applications. Default policies are in place for common applications such as Microsoft SharePoint, Exchange and Terminal Services while additional policies can be created easily to enhance proprietary line of business applications.

Direct Access - Get always-on, bidirectional connectivity from locations inside or outside the corporate network through IPSec and IPv6. From the Internet UAG provides seamless access to corporate resources on IPv4 infrastructures with the same experience as being on the LAN for Windows 7 PCs. Remotely manage, update and monitor the health of remote computers even when the user is not logged on.

Endpoint and Access Security - UAG includes a comprehensive endpoint security engine that allows for the detection of a device’s security and configuration state. This allows administrators to publish granular restricted access to unmanaged machines and extend more comprehensive and rich access from corporate assets. Information leakage is prevented using UAG’s Attachment Wiper. Policies are built-in and simple to manage. UAG endpoint security can also be implemented to use Microsoft Network Access Protection (NAP).

Easy Management and Customization - With wizard driven configuration, easy to use policies and a highly intuitive user experience, UAG ensures a fast and easy deployment - allowing employees, partners, and vendors simple and secure access. On-going management and control is simplified via periodic updates to application and endpoint policies.

Key benefits include:

  • Full network connectivity using Direct Access by default whenever Windows 7 (Enterprise – Ultimate) clients are connected to the Internet
  • Full network connectivity via SSTP or Network Connector
  • A unique combination of SSL VPN-based access, integrated application protection, and endpoint security management
  • A consolidated and comprehensive gateway to provide access to virtually any application from virtually any location
  • A powerful, Web-application firewall that helps keep malicious traffic out, and sensitive information in
  • Reduced complexity of managing secure access and protecting business assets with a comprehensive, easy to use platform
  • Interoperability with core Microsoft application infrastructure, third-party enterprise systems, and custom in-house tools

Getting Started:

Proof of Concept 

Microsoft's UAG Product Page