Consider the following scenario:
Note If you run the netsh int httpstunnel show interfaces command when the client computer is connected to the corporate environment, you receive the following output. The netsh int httpstunnel show interfaces command displays the IP-HTTPS interface parameters.
- A Forefront Unified Access Gateway DirectAccess server is deployed in a corporate environment.
- A web proxy that denies access to the UAG DA server is deployed in the corporate environment.
- Force tunneling is enabled on the UAG DA server, and all network traffic is sent over the DA client tunnel by using the IP over HTTPS (IP-HTTPS) protocol.
- The DA client is deployed on a client computer that is running Windows 7 or Windows Server 2008 R2.
- The client computer is connected to the corporate environment.
- The DA client cannot connect to the UAG DA server.
Note This behavior is by design. This behavior occurs because the web proxy blocks the traffic. - The client computer is disconnected from the corporate environment and is connected to the Internet.
Note If you run the netsh int httpstunnel show interfaces command when the client computer is connected to the corporate environment, you receive the following output. The netsh int httpstunnel show interfaces command displays the IP-HTTPS interface parameters.
Interface IPHTTPSInterface (Group Policy) Parameters
------------------------------------------------------------
Role : client
URL : [UAG DA server IPHTTPS URL]
Last Error Code : 0x103
Interface Status : no usable certificate(s) found