Microsoft ISA Server or Forefront TMG Integration > Converting to an integration with ISA Server or Forefront TMG
|
You can convert an existing stand-alone deployment of Websense Web Filter or Web Security to one that is integrated with ISA/TMG, without losing any configuration settings. The conversion process preserves such settings as policies, port numbers, and IP addresses.The following are the main tasks to convert a stand-alone deployment to one integrated with ISA/TMG.
Task 1: Upgrade to the current version of Websense software. Keep it as a stand-alone deployment. See Upgrading Web Security or Web Filter to 7.6.0 for instructions.
Task 3: Uninstall and reinstall Filtering Service in integrated mode, selecting ISA Server or Forefront TMG as the integration product.If Websense software, including Network Agent, is running on the machine on which ISA Server will be installed, then Network Agent must be moved to another machine.See the Installation Guide for instructions on removing components and installing them separately.
Task 6: When ISA/TMG is running on a different machine than the Websense software, you must remove the existing Websense Filtering Service, reinstall it to be integrated with ISA/TMG, and then install the ISAPI Filter plug-in on the machine running ISA/TMG. These procedures are described below.
If you are upgrading to a new version of Websense software, perform the upgrade before converting the deployment to be integrated with ISA/TMG.See Upgrading Web Security or Web Filter to 7.6.0 for instructions on backing up files, removing components, and running the installer.See Upgrading Web Security or Web Filter to 7.6.0 for instructions.
2. Use the Websense Backup Utility to back up the Websense configuration and initialization files. See the TRITON - Web Security Help for instructions.
3. Make sure Websense software is running. The uninstaller looks for Policy Server during the removal process.
Do not remove Websense components without the associated Policy Server running. Policy Server keeps track of Websense configuration and component locations. If Policy Server is not running, files for the selected components are still removed, but configuration information is not updated for those components. Problems could occur later if you attempt to reinstall these components.See Adding Web Security components for instructions. As you follow those instructions do the following on the screens noted below:
On the Select Integration screen, select Microsoft Internet Security and Acceleration Server or Microsoft Forefront Threat Management Gateway.
Select the particular integration product you are using (ISA Server or Forefront TMG).
(This applies only if ISA Server was selected) On the Filtering Plug-In screen, select only Install other selected components.Next, install the ISAPI Filter plug-in on the ISA/TMG machine. This plug-in allows Websense software and ISA/TMG to communicate. For instructions, see:After upgrading a stand-alone deployment of Websense software, you can convert it to be integrated with ISA installed on the same machine.To convert Websense software to be integrated with ISA Server, Websense Filtering Service and Network Agent must be removed and then reinstalled after ISA Server is installed.
Installing Websense components on the same machine as Forefront TMG is not supported.See Upgrading Web Security or Web Filter to 7.6.0 for instructions.
2. Use the Websense Backup Utility to back up the Websense configuration and initialization files. See the TRITON - Web Security Help for instructions
3. Make sure Websense software is running. The installer looks for Policy Server during the installation process.
Do not remove Websense components without the associated Policy Server running. Policy Server keeps track of Websense configuration and component locations. If Policy Server is not running, files for the selected components are still removed, but configuration information is not updated for those components. Problems could occur later if you attempt to reinstall these components.See Removing Web Security components for instructions. Be sure to remove only Filtering Service (and Network Agent).
Network Agent must be removed because it should not run on the same machine as ISA. After reinstalling Filtering Service (see below), you will install Network Agent on a separate machine. An exception to this case is if ISA firewall is not enabled. If ISA is running only as a proxy server, Network Agent may be installed on the same machine.After Network Agent and Filtering Service are removed, you can install ISA. See Microsoft documentation for instructions.
1. Run the Websense installer to reinstall Filtering Service and install the Websense ISAPI Filter plug-in.See Adding Web Security components for instructions. As you follow those instructions do the following on the screens noted below:
Select the particular integration product you are using (ISA Server or Forefront TMG).
On the Filtering Plug-In screen, select both Yes, install the plug-in on this machine and Install other selected components.See Web Filter or Web Security (software-based) for instructions.
Microsoft ISA Server or Forefront TMG Integration > Converting to an integration with ISA Server or Forefront TMG
|