Re: [fw-wiz] Looking for suggestions on a free TACACS or RADIUS Server



Hi, all!

On Thu, Apr 13, 2006 at 11:18:32AM -0500, Roy Duperret wrote:

I'm in the process of setting up a Cisco ASA firewall ...
...
I'm trying to find a free or low cost TACACS or RADIUS server to
run internally to provide that VPN user authentication.

If you are running some sort of Microsoft server infrastructure
with Active Directory or at least an "NT" domain, you could use
Microsoft's RADIUS server to authenticate against your AD/domain
user data. Unfortunately Microsoft didn't name their RADIUS
server "RADIUS server" - it's called IAS - Internet Authentication
Services. You can add and activate it through the control panel.

If you are running Win2K+, you even get certificate services "for free",
i.e. they come with your server license.

If you are not running MS servers, have a look at FreeRADIUS.
I'm running FreeRADIUS on FreeBSD working together with a
Microsoft Win2K based CA for 802.1x/WPA authentication. Works great ;-)

Regards, HTH,
Patrick M. Hausen
--
punkt.de GmbH Internet - Dienstleistungen - Beratung
Vorholzstr. 25 Tel. 0721 9109 -0 Fax: -100
76137 Karlsruhe http://punkt.de
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxx
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards



Relevant Pages

  • Re: Wireless AP wants Radius Server, advice?
    ... >> EAP-PEAP, EAP-TLS, EAP-TTLS all provide secure authentication between the ... >> client and server. ... >>>> configuring IAS as a Radius Server for Wireless clients. ... >>>>> Radius server but that would require me to add users to the AP, ...
    (microsoft.public.windows.server.sbs)
  • Re: Kerberos machine authentication - apparent authentication fail
    ... > until logon), the wireless connection can kick off when it is ready. ... > was confirmed in the server event logs with IAS (i set that up as the radius ... > as an ordinary user kicks in and takes over from the machine authentication. ... > while the network sorts itself out and a double click on a network link of ...
    (microsoft.public.windows.server.security)
  • Re: Basic Authentication + IIS 5 + Windows 2000 + Frontpage 2002 = failure?
    ... SYSTEM account. ... In IIS I took the virtual server that I was testing, ... Authentication premise. ... From a website perspective, I ...
    (microsoft.public.inetserver.iis.security)
  • Need help configuring Wireless Connection profile
    ... I have an SBS 2003 server and a Server 2003 member server set up using RADIUS ... Windows authentication for all users,4129,LRG\ryanv,4149,Wireless WPA2 PEAP ... Certificate Services ...
    (microsoft.public.windowsxp.general)
  • Re: Remote Web Workplace Issues-Please help!
    ... Open the Server Management Console, ... client after Authentication" right. ... permissions, and Microsoft Windows user rights according to the KB 812614. ... Download the IIS Resource Kit tools from the following page: ...
    (microsoft.public.windows.server.sbs)