1

I am building an SCCM 2012 virtual lab and I have about 70% of it completed, but I want to test patching, but I dont want to connect my virtual lab to the production environment to pull patches. My environment consists of the following:

  • Hyper-V Server 2008 R2
  • One switch

I did read somewhere that I may be able to use Forefront Threat Management Gateway (TMG) by installing it as a VM within my virtual lab and segment the virtual network from the production LAN to connect to the internet to pull patches from Microsoft.com to my SCCM 2012 server.

Is this possible? If so, how would I go about getting this done?

Any help here would be greatly appreciated.

Thanks

The_Ratzenator
  • 150
  • 1
  • 2
  • 12

3 Answers3

3

In this case TMG would just be acting as a NAT boundary. There's nothing special about TMG here, and if you've already got a firewall or L3 device separating your test environment from your prod environment, you can just configure the NAT there instead and save the headache.

But, to answer your actual question, yes you can use TMG for this if you'd like.

DanBig
  • 11,393
  • 1
  • 28
  • 53
MDMarra
  • 100,183
  • 32
  • 195
  • 326
  • 1
    I would have to get my Network Engineers involved to configure the L3 devices and that is precisely why I am looking at this option. So, I could install TMG on a VM, then give it 2 virtual NICs, one external to connect to the Prod environment and one to connect to the internal virtual environment and then have all my other VMs connect to TMG and use that to get an Internet connection? – The_Ratzenator Aug 09 '13 at 01:26
0

Here is the info I have been trying to find that provides more info on setting up a virtual SCCM 2012 virtual test lab environment using TMG.

http://blogs.technet.com/b/tlgs/archive/2012/07/30/system-center-configurtation-manager-2012-test-lab-guide-published.aspx

The_Ratzenator
  • 150
  • 1
  • 2
  • 12
0

If you just need to put a NAT between your test network and your production one, you can use Windows' built-in RRAS and get a lot simpler setup than a full TMG box.

http://technet.microsoft.com/en-us/library/dd469812.aspx

Massimo
  • 68,714
  • 56
  • 196
  • 319