

Restart the ‘Microsoft Forefront TMG Storage’ service (that will restart all TMG services) Import the config file into the new server choosing the ‘Overwrite’ option in the wizard. Do a ‘find and replace’ for every OLD_SERVER_NAME and OLD_SERVER_IP values and replace them with their NEW_SERVER_NAME, NEW_SERVER_IP counterparts. Open the XML export file from the old server in Notepad. Make sure it is isntalled the same way, including paths (if you installed the old one on D:\Program Files\… the new one must be the same) and patched with the same patches (TMG ones, not so much OS). The next thing you need to do is install TMG. 1 on every subnet (except the External one) so I made the new one end with. If you are putting the new server side-by-side with the old one, and both will be online for a bit, the new server must have different IPs, for obvious reasons. The new server needs to be identical to the old one, down to the naming of the NICs.

Give it a path to save to and complete the wizardĪfter you have the config file (it will be pretty large) copy it to the new server.Check BOTH boxes to Export confidential information and user permission settings, put a password in.Right-click on ‘Forefront TMG (SERVER_NAME)’ and choose Export (Backup).You need to do a rule export (or if your box is dead, hopefully you did one before) that includes all sensitive information and user permissions. You don’t want to recreate all objects and rules.The TMG box is dead or for whatever other reason you have to bring up a brand new TMG server to replace the old one.You have a TMG 2010 box (I have tested this with the Enterprise Edition with SP1, Rollup 1 for SP1 and Rollup 2 for SP1).
