...3.We (MSFT) are discontinuing any further releases of the following Forefront-branded solutions: ◦Forefront Protection 2010 for Exchange Server (FPE) ◦Forefront Protection 2010 for SharePoint (FPSP) ◦Forefront Security for Office Communications Server (FSOCS) ◦Forefront Threat Management Gateway 2010 (TMG) ◦Forefront Threat Management Gateway Web Protection Services (TMG WPS)
Well, I've just come out of a management meeting where this was discussed.
Basically, I was made to look like an idiot for recommending TMG, and I'm still trying to scrape the egg off my face.
The consensus was that MS can't be trusted with our security, if they are going to pull the plug on such a critical infrastructure product, and that we must return to what (non-IT) management recommended... Cisco.
So it looks like I'll be implementing some ASA and ISR devices.
Well, let's put it this way: - for client VPN access (PPTP, L2TP/IPsec, SSTP) and DirectAccess, Windows 2012 RRAS is definitely the best solution. - for all other remote access solutions (web/server publishing), UAG should be in the picture. - however it looks that it is the end of the MS egress proxy/firewall offering.