Heads up on a new TMG 2010 KB

Hello folks, a quick post here just to bring awareness about a new KB that was released today for Forefront TMG 2010. As the KB describes the symptoms are based on the following scenario:

  • A web proxy client establishes a secure socket layer (SSL) connection to an external web server by using a server that is running Microsoft Forefront Threat Management Gateway 2010.
  • HTTPS inspection is not involved. Therefore, an end-to-end SSL tunnel between the client and the web server is established.
  • Inside this established connection, the client uploads data to the web server.
  • The connection and TCP flow to the web server are slow.

In this scenario, the upload does not finish correctly under certain circumstances. In order to fix this problem you need to apply Forefront TMG 2010 SP2 and run the script from KB 2591803.