How we tested Microsoft Forefront UAG

March 08, 2010, 1:48 AM EST

By Joel Snyder

We tested Forefront UAG using Microsoft’s virtualization technology. Microsoft brought in a set of virtual machines which included the UAG server itself, as well as a set of pre-installed Microsoft business applications, including Exchange (2007 and 2010) and SharePoint.

We followed the same rough methodology in testing that we used in our 2005 test of SSL VPNs (see the methodology, and for the actual test results), which broke testing up into seven key areas.

We started by examining how well Forefront UAG worked with our different authentication services, including Windows Active Directory, a RADIUS server, an LDAP server and RSA’s SecurID authentication server. we looked at both the ability of Forefront UAG to actually authenticate against the services, as well as pull authorization information (such as group membership) during authentication.

Next, we pushed a security policy into Forefront UAG. we developed a fairly simple policy based on three types of users and access controls centered on those users. then we modified the policy to include end-point security checking. For example, someone in the “HR” users group would have different access controls depending on whether their desktop or laptop passed the end-point security check.

With the policy in place, we moved to interoperability testing. we wanted to see how well the SSL VPN worked with various types of Web sites. we also tried port forwarding and network extension, two common features of SSL VPNs. we used both Microsoft-provided Web servers and our own Web applications, which included both standard HTML, typical AJAX-type applications including Javascript, and a Web site that used Adobe’s Flash technology very heavily.

We also tested protocol translation by asking the UAG server to talk to a CIFS file server running Windows Server 2003, and translate the file service into an HTML Web page.

Our testing also looked at clients. we tried standard Microsoft operating systems, including Windows 7 and Windows XP, using the Internet Explorer browser. then we threw into the mix Firefox, Safari and Google Chrome browsers running on Apple OS X 10.6 (”Snow Leopard”) clients.

Finally, we looked at the GUI and associated product configuration tools to analyze and summarize management, accounting, auditing, reporting, and other aspects of product operation and configuration. we also looked at user workplace and portal functionality as well as ease of customization.

Read more about wide area network in Network World’s Wide Area Network section.

Original story – networkworld.com/nwlookup.jsp?rid=201442

Related Articles

  • Apple’s iPad hype machine rolls into action at the Oscars
  • Officials Cloud Status of Google-China Talks
  • Microsoft Readies 8 Windows, Office Patches – PCWorld
  • Tethering on Apple’s iPad? Fuhgeddaboudit!

Copyright Network World

How we tested Microsoft Forefront UAG

Related posts:

  1. Microsoft sets emergency Windows patch for Monday
  2. Microsoft helping OEMs develop unique Windows Phone 7 apps
  3. Ultimate guide to network access control products
  4. Microsoft Employees Put Apple's iPhones in …
  5. Microsoft and Citrix Join in Virtualization Push

Tags: ,

Leave a Reply

 

August 2010
M T W T F S S
« Jul    
 1
2345678
9101112131415
16171819202122
23242526272829
3031