Hyper-V 2012 and TMG 2010/NLB

Hi there,
I have an issue with TMG 2010 on Hyper-V 2012 - the Setup:
- Windows 2012 Hyper-V
- TMG 2010 SP2 Rollup 4 running on W2K8 R2
TMG 2010 (Array Node1) Network
Internal Interface: 10.0.0.10/24 (Route to 192.168.11.0/24 over 10.0.0.1)
IntraArray: 192.168.10.10/24
Perimeter: 10.0.60.10/24 GW 10.0.60.100
TMG 2010 (Array Node2) Network
Internal Interface: 10.0.0.11/24 (Route to 192.168.11.0/24 over 10.0.0.1)
IntraArray: 192.168.10.11/24
Perimeter: 10.0.60.11/24 GW 10.0.60.100
Domain Controllers:
192.168.11.10
192.168.11.11
The NICs of the TMG VMs are configured with the correct VLANs and on the Perimeter Interface as well as on the Internal Interface I activate MAC Address Spoofing.
Once I activate NLB on the Perimeter Interface all works fine. But NLB on the internal Interface does not work - I see that NLB got configured on Array Node 1 but the second one does not get the config nor is able to sync it´s configuration with Array
Node 1. ALso the Servers are not able to communicate with the Domain Controllers anymore. Once I deactivate MAC Address Spoofing on the internal Interface and remove NLB the Server are able to speak to the Domain Controllers...
Any suggestions?

Hi,
Can I just confirm you are using TMG console to enable NLB?
Also did you enable set this reg key on both your TMG servers? You need to make sure MAC Spoofing is enabled too.
HKLM\System\CurrentControlSet\Services\TCPIP\Parameters
IPEnableRouter RegDword 1
after enabling the key you may need to reboot both nodes.
Regards,
Denis Cooper
MCITP EA - MCT
Help keep the forums tidy, if this has helped please mark it as an answer
Blog: http://www.windows-support.co.uk 
Twitter:   LinkedIn:

Similar Messages

  • Hyper link of public image(hyperlink or image) can not be saved on windows server 2012 and sharepoint 2010 problem

    hyper link of public image(hyperlink or image) can not be saved on windows server 2012 and sharepoint 2010 problem, is this a bug?
    thanks for any reply.
    Rosone

    It is not a bug, you might be using IE in Windows server 2012 and and browser might be restricting your site actions to respond properly.
    Check this in a different browser or access site in a differ OS.
    Adnan Amin MCT, SharePoint Architect | If you find this post useful kindly please mark it as an answer.

  • Domain functional level 2003 -- 2008 and TMG 2010 (sp2 rollup 2)

    Hi,
    We want to raise our domain and forest functional level from 2003 to 2008. All DC's have been on 2008 or 2008R2 for about two years.
    I cannot find if there is any impact on TMG 2010 sp2 rollup 2. Does anyone know if this will bring any issues?
    Thanks!

    No impact. From a TMG perspective, go ahead.
    Hth, Anders Janson Enfo Zipper

  • Exchange 2010 URL and TMG 2010

    Hi All,
    Would like to know whether can I publish my Exchange OWA through TMG 2010 with the URL on Internal and External the same (Example: mail.contoso.com) and using single-Nic?

    Hi
    With a single NIC deployment, you will only be able to use the web publishing feature of TMG for Exchange. This means be able to publishing OWA, Outlook Anywhere and ActiveSync.
    Same URL for Internal and Public Internet
    100 % you can have same URL for Both and belwo are the DNS changes you many need to do.
    You need to create a Split Brain DNS
    Create a New Primary DNS Zone with the same name as you public Domain
    Add a A record and point that to internal IP address of the Exchanges server OWA
    On the Public Internet Add A record pointing to Public IP address which is used on webpublishing
    TMG - Link
    http://technet.microsoft.com/en-us/library/ee796231.aspx 
    Other Post -
    http://social.technet.microsoft.com/Forums/windowsserver/en-US/c38035f8-b975-4c58-99b2-952f3de9db74/configuring-splitbrain-dns

  • Autodiscover and TMG 2010

    Hi guys.
    having an issue getting auto discover working with Exchange 2013 and TMG. Every time a client connects, it constantly prompts for a username and password, even though it's actually resolving the internal servers etc.
    Any ideas?

    Hi,
    To understand more about the issue, I'd like to ask the following questions:
    1. Do all your Outlook clients including internal users and external users come across the issue? If the issue happen on all users, I recommend you check the Autodisocver and Outlook Anywhere connectivity:
    Directly access the URL:
    https://autodiscover.domain.com/autodiscover/autodiscover.xml;
    Use ExRCA to check OA connectivity:
    https://testconnectivity.microsoft.com/
    2. How about the result if you cancel the credential without entering the password?
    Thanks,
    Angela Shi
    TechNet Community Support

  • Installing SCVMM 2012 r2 in a VM on Hyper-V 2012 and windows failover cluseter

    Hi,
    I am planning to configure scvmm 2012 r2 that will be managing 30 hyper-v host servers, please guide me will it be ok if i install and configure both scvmm 2012 r2 and sql server 2012 on same VM running on Hyper-V Failover Cluster ?
    Regards,
    Afzal
    [email protected]

    Hi,
    Like most of the time, there is a lot of possible topology to achieve your design.
    Installing VMM and the database in a virtual machine on the same cluster that it manage is a supported scenario. 
    The first question you have to ask is : What is the availability level i need for my VMM infrastructure ?If
    you shutdown the SCVMM instance for patching, you are not able to deploy new VM from template, and not able to create and manage Virtual Networks. It don't affect existing VM or Virtual Networks. Does this break your SLA ?
    Most of the time, VMM don't need a guest cluster (unless you are a hosting provider with provisionning portal
    available 24/24 7/7).
    The main advice i will give you is :
    Keep it simple as possible !
    Don't build complex infrastructure if you don't need to achieve a very hight level of availability.
    Availability, complexity and management cost have a exponential relation. 
    For large deployment, you can use a dedicated Hyper-V cluster to deploy System Center and infrastructures services (SCVMM, SCOM etc...) But there is nothing wrong in deploying VMM in the same cluster as the VM it manage. The design you have to achieve should
    be thinking in terms of availability and serviceability.
    I don't think that 30 Hyper-V hosts need a dedicated SQL Guest Cluster.
    If you install VMM on one VM and SQL on another, you will not achieve more performances, but your VMM instance
    will be less "portable".
    Cheer.
    Cedric.

  • Using Datasources.xml in backup of Hyper-V cluster and standalone Hyper-V hosts

    Hi!
    I have a DPM 2012 server which I have used to backup standalone Hyper-V  hosts and Exchange 2010 server active DAG node. Since yesterday I have added Hyper-V cluster backup, and now I have generated Datasources.xml using .\DSConfig.ps1 on one of the
    Hyper-V nodes.
    My question is: Do I have to manually add other protected data sources (Exchange, VMs from standalone hosts) to Datasources.xml? Or this xml is used only for CSV clusters?
    Thanks in advance for your answers!
    Kruno

    Hi,
    Yes, but the key is wrong - this is required as part of the csv serialization configuration.
    On the DPM Server, Copy / paste below into notepad, then save as MaxAllowedParallelBackups.reg on the DPM server, then right-click and select merge.
    Windows Registry Editor Version 5.00
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Microsoft Data Protection Manager\2.0\Configuration\MaxAllowedParallelBackups]
    "Microsoft Hyper-V"=dword:00000001
    Please review these two sources to assist you.
    http://social.technet.microsoft.com/wiki/contents/articles/17493.protecting-hyper-v-virtual-machines-with-system-center-dpm-2012.aspx
    http://blogs.technet.com/b/dpm/archive/2010/12/09/system-center-data-protection-manager-2010-hyper-v-protection-configuring-cluster-networks-for-csv-redirected-access.aspx
    Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread. Regards, Mike J. [MSFT]
    This posting is provided "AS IS" with no warranties, and confers no rights.

  • SLES 10 (SP3) on Hyper-V 2012 R2

    I do realize that is unsupported (only SP4 supposedly is)
    But I have SLES 10 (SP3) image that got converted from vSphere
    Once I can boot the IDE disk (by editing menu.lst to /hda1 & uninstall Vmware Tools, I would need to get network connectivity, so logical step would be to use Intergration Services 2.1 (one that supports SLES 10 SP3)
    But it is a no go. On make install during load of vmbus the whole VM just hangs & dies
    http://imageshack.com/a/img545/7339/16u1.jpg
    The initrd never even gets created as it dies & reset is the only option
    If I rem-out vmbus start in Makefile then I can get new kernel installed, but restulting kernel will panic on VM boot
    Anybody has any clever idea how to get it working (if at all possible)
    Seb

    Getting this to work is going to be difficult.  The older LIS 2.1 does not work with Hyper-V 2012 and 2012 R2 due to changes in Hyper-V itself.  But you could probably get SLES 10 SP3 with LIS 2.1 working if you went back to the older Hyper-V
    2008 R2.
    You are correct that the LIS 3.4 package is created only for the Red Hat (and CentOS) distros.  It will not work with SLES releases.
    We've gotten occasional requests to get SLES 10 working on Hyper-V 2012 and 2012 R2, and we're in conversations with SUSE about creating a combination that works.  But we don't have anything to announce about a timeline.  When/if we get something
    working, it will most likely be SLES 10 SP4, since that's the most up-to-date version from the SLES 10 series.
    Michael Kelley, Lead Program Manager, Open Source Technology Center

  • P2V a 2008 R2 DC on Hyper-V 2012 R2 with VMM 2012 R2

    We are looking to use Hyper-V in one of our offices and i'm looking for the best way to move one of our physical DCs which is also a print server to a VM running on a Hyper-V cluster.  I would like to P2V this server because been the print server for
    that office i don't want to have to recreate a new VM server as a print server and then reinstall all the printers on the users PCs. 
    Now the problem i'm facing is that VMM 2012 R2 has removed the Convert Physical to Virtual feature so i'm left wondering how to do this?  I have seen Disk2vhd but this only does online systems and as the server is a DC and its recommend to do P2V on
    DCs offline that's out.  Or i could demount the server from been a DC and then do an online conversion.  Another option is to use VMM 2012 which still has the feature to do P2V but in testing if my Hyper-V server is 2012 R2 then VMM 2012 won't allow
    me to add it as a host.  So would i have to start with Hyper-V 2012 and VMM 2012, do the P2V then upgrade Hyper-V to 2012 R2 and then upgrade VMM to 2012 R2?
    WHY WHY WHY have Microsoft taken the P2V feature out of VMM 2012 R2??????

    In every Environment, there should be a physical DC, this one should be backup up with BMR, so the Active Directory will bee backed up correctly
    Every VM DC is enough to backup the VM
    If all your DC are virtual, pleas ebackup one with BMR
    Seidl Michael | http://www.techguy.at |
    twitter.com/techguyat | facebook.com/techguyat

  • LAbVIEW 2012 and Solidworks Examples update

    Hi,
    I noticed that the examples shipped with NI Softmotion module is not updated (SoftMotion>Mechatronics). Although the directory has been changed, the example still points to LabVIEW 2009 folder. I also would like to ask whether these examples was tested with LabVIEW 2012 as it doesn't run with my machine which has LabVIEW 2012 and Solidworks 2010 SP4.
    Your help is much appreciated.
    P.S: I apologize for double posting since no single reply was mentioned on Motion forum.
    Waleed El-Badry MSc.,MCPD, ISTQB Certified Tester
    Assistant Lecturer
    Mechatronics Department
    Faculty of Engineering
    Misr University for Science & Technology

    The problem seems to be with Scan Engine.
    Here is a screenshot of the error mesage when deployment:
    Configuration:
    OS: Windows 8 Final
    LabVIEW Version: 2012 with all updates installed
    NI SoftMotion Version: 2012
    Solidworks Version: 2010 SP4 
    I doubt the problem lies in OS as all examples are running flawlessly except that with Mechatronics Examples. Hope to get any response from NI SoftMotion Team. Thanks for your assistance in advance.
    Waleed El-Badry MSc.,MCPD, ISTQB Certified Tester
    Assistant Lecturer
    Mechatronics Department
    Faculty of Engineering
    Misr University for Science & Technology

  • What are you allowed to run on a Free Hyper-V 2012 host?

    I have been looking for a "layman" version of the license for the Free Hyper-V 2012, and more precisely, what services you are allowed to run on the
    host.
    The OS itself does not prevent you from installing a variety of applications and services, but I wonder how legal this is.
    You can install 3rd party virtualization managers or servers: anything based on http.sys will run f.i, and so will 3rd party FTP or mail servers.For that matter you can even install alternative desktop shells, explorers, browsers and utilities etc. so the
    OS itself does not prevent installation of any 3rd party software, only the OS components are missing.
    Several third parties are even selling software to leverage those possibilities.
    My particular question would be to know if and how far the license allows to use the Free Hyper-V 2012 as a "bare-metal" OS that can be extended by 3rd party software?

    In theory you can install anything that will install (considering the missing components such as the Windows Shell).
    If you start hacking the OS to add supporting roles that are not there out of the box - then you exit the realm of supportability.
    If you want a licensing answer, you must contact Microsoft Licensing.
    Brian Ehlert
    http://ITProctology.blogspot.com
    Learn. Apply. Repeat.

  • Hyper V 2012 network options

    We are testing Hyper V 2012, and the networking options seem confusing.
    I created a virtual external switch on the host, trunked vlans down to it from an upstream 3750, and created some VMs.
    No problem there: the VMs were able to get outside, etc.
    But what do the "private" and "internal" networks give me?
    It is my understanding that neither private nor internal networks can communicate with subnets/networks outside the host(s)
    I thought maybe I could use private networks and have the Hyper V 2012 host route the traffic out to the real world, apply security policies, etc.
    Is this even possible? Or do the options simply isolate VMs? (and are therefore not any better of existing VMWare technology)

    My understanding is that the private and internal networks are for networking specific to the hyper-v host. So you can create a private netwok that allows two VMs to communicate with each other but not the outside world.
    There is no way to forward that traffic outside the hyper-v host.
    We are working on N1KV for Hyper-v which will bring most of the NXOS feature set to Hyper-v. So PVLANs, ACLs, port-channels, QOS, etc...

  • Current best practice for Time service settings for Hyper-V 2012 R2 Host and guest OS's

    I am trying to find out what the current best practice is for Time service settings in a Hyper-V 2012 environment. I find conflicting information. Can anyone point me in the right direction. I have found some different sources (links below) but again the
    are not consistent. Thanks
    http://blogs.msdn.com/b/virtual_pc_guy/archive/2010/11/19/time-synchronization-in-hyper-v.aspx
    http://technet.microsoft.com/en-us/library/virtual_active_directory_domain_controller_virtualization_hyperv(v=ws.10).aspx
    http://social.technet.microsoft.com/wiki/contents/articles/12709.time-services-for-a-domain-controller-on-hyper-v.aspx

    From the first link provided by Brian, it does state that the time service should be off, but then the update changes that statement.  Still best to rely on the first link in the OP - it was written by the guy that has been responsible for much of what
    gets coded into Hyper-V, starting from before there ever was a Hyper-V.  I'd say that's a pretty reliable source. 
    Time service
    For virtual machines that are configured as domain controllers, it is recommended that you disable time synchronization between the host system and guest operating system acting as a domain controller. This enables your guest domain controller to synchronize
    time from the domain hierarchy.
    To disable the Hyper-V time synchronization provider, shut down the VM and clear the Time synchronization check box under Integration Services.
    Note
    This guidance has been recently updated to reflect the current recommendation to synchronize time for the guest domain controller from only the domain hierarchy, rather than the previous recommendation to partially disable time synchronization between the
    host system and guest domain controller.
    . : | : . : | : . tim

  • VM Protection running on Hyper-V 2012 R2 with DPM 2010

    Hi everyone,
    We recently setup  a new Hyper-V 2012 R2 server hosting virtual machine running with a Win2012 R2 server OS and 2008R2 standard Edition
    Our backup solution is still running DPM 2010.
    As I understand from the DPM Protection Support Matrix, You can only protect virtual machine running on a hyper-v server under Windows 2012 R2 OS with DPM 2012 R2. Isn't there possible any walkaround to have the vm protection working on dpm2010?
    Otherwise, if we choose to protect the VM at guest level instead of host-level, is DPM able to perform the recovery point?
    For instance, we've got a VM running a SQL database. We would like specifically to back up that SQL  database running on that virtual machine.Is DPM able to perfom that job?
    Regards,
    Evan

    Hi,
    To remain in a supported configuration you need to a DPM 2012 R2 server to protect the Windows 2012 R2 hyper-v server.  Unfortunately, the path to get there from DPM 2012 is not an easy one.
    Upgrade steps.
    Note: the Operating system and SQL requirements for DPM 2012
    System Requirements for DPM in System Center 2012
    http://technet.microsoft.com/en-us/library/hh757757.aspx
    1) On DPM 2010 install the latest update: KB2751231 Description of hotfix rollup package 7 for System Center Data Protection Manager 2010
    2) Update the Agents to 3.0.8195.0
    3) Backup the DPM 2010 database.
    4) Upgrade to DPM 2012 and update agents.
    5) Install the latest DPM 2012 update and Update agents.
    6) Backup the DPM 2012 database.
    7) Upgrade to DPM 2012 Sp1 and update agents.
    Note: The Operating system and SQL requirements for DPM 2012 Sp1
    System Requirements for DPM in System Center 2012 Sp1
    http://technet.microsoft.com/en-us/library/jj651645.aspx
    8) Install the latest DPM 2012 Sp1 update and update agents.
    KB2904723-Issues that are fixed in System Center 2012 Data Protection Manager SP1 Update Rollup 5
    http://support.microsoft.com/kb/2904723
    KB2904730-Description of System Center 2012 Service Pack 1 Update Rollup 5
    http://support.microsoft.com/kb/2904730
    9) Continue to DPM 2012 R2..
    Note: the Operating system and SQL requirements for DPM 2012 R2.
    System Requirements for DPM in System Center 2012 R2
    http://technet.microsoft.com/en-us/library/hh758176.aspx
    10) Backup the DPM 2012 Sp1 database.
    11) Upgrade to DPM 2012 R2 and update agents
    12) Install latest DPM 2012 R2 update and update agents.
    Else, you could stand up a new dedicated DPM 2012 R2 server from scratch to protect that new server and leave the DPM 2010 as is for current protection.  
    Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread. Regards, Mike J. [MSFT]
    This posting is provided "AS IS" with no warranties, and confers no rights.

  • Exchange 2013 with TMG 2010 and Go Daddy

    Hi all;
    actually I'm new to exchange server 2013 and I need some help:
    recently I installed exchange 2013 in our domain with contains TMG 2010
    what I need is sending emails out.
    currently I can send emails internaly
    I have static IP and TMG and registered domain in Go daddy.
    could someone help me by steps what to do?
    in TMG?
    in Exchange administration?
    in Go Daddy?what records needed and how?
    and should I do any configurations in my DNS?
    please I'm stuck in this.
    Thanks

    Sorry, my fault. Try these links:
    http://blogs.technet.com/b/exchange/archive/2012/11/21/publishing-exchange-server-2013-using-tmg.aspx
    http://www.isaserver.org/articles-tutorials/configuration-general/publishing-exchange-2013-outlook-web-app-forefront-threat-management-gateway-tmg-2010.html
    CRM Advisor

Maybe you are looking for