when i tried to monitor a machine i found them bypass allow rule, without being stopped by the deny rule (no.1)
any help please ?
Hi,
If you re-create the deny rule, are the websites blocked after restart firewall service? Then these websites are allowed after a few minutes?
Please run TMG BPA tool to check if there is any configuration error.
Microsoft Forefront TMG Best Practice Analyzer
Note: Microsoft provides third-party contact information to help you find technical support. This contact information may change without notice. Microsoft does not guarantee the accuracy of this third-party contact information.
Joyce
What sites are you blocking?
Some sites are working through redirects and actually getting the content from elsewhere (that is, not matching your deny rule).
Use live logging to see what the client actually requests. If needed use a sniffing tool on the client to see what it does.