“When Microsoft Firewall Client makes a request for a URL, Microsoft Forefront Threat Management Gateway (TMG) 2010 logs shows only the IP address of the website that is requested by a client. The expected behavior is that the complete URL that is requested by a client is logged in Forefront TMG 2010…”
Check out the KB article that describes why this happens and how you can fix it at:
http://support.microsoft.com/kb/980723
HTH,
Deb
DEBRA LITTLEJOHN SHINDER
MVP (Enterprise Security)
“MS SECURITY”
[email protected]