RE: Integrating Domain and VPN Login
From: Matthew Jenkins (Matthew.Jenkins_at_tmctechnologies.com)
Date: 04/05/05
- Previous message: Ryan Gravlin: "RE: Windows Server 2003 Service Pack 1"
- Maybe in reply to: Ryan Kubiak: "Integrating Domain and VPN Login"
- Next in thread: Joel Rivers: "RE: Integrating Domain and VPN Login"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Tue, 5 Apr 2005 09:25:04 -0400 To: <focus-ms@securityfocus.com>
These are instructions I provide to our clients who are running Windows
Servers using RAS to do PPTP VPN. The RAS server is a domain member. I
don't necessarily like this method. However, for small businesses that
can't afford a better solution it works well and is quick to setup and
easy for them to administer.
--- Start, Control Panel Network Connections Add Connection Connect to the network at my workplace Virtual Private Network connection Company Name: VPN Company Name Do not dial the initial connection IP address: x.x.x.x Anyone's use Properties Options tab, check Include Windows logon domain Security tab, check Automatically use my Windows logon name Networking tab, click Internet Protocol (TCP/IP) Click Properties, click Advanced Uncheck use default gateway on remote network Click ok until the VPN connects Computer MUST BE a laptop on the company's domain. If it is not, skip the step of checking Automatically use my Windows login name. When connecting, use the domain of the company. Make sure user's passwords are not easy to guess, and ensure they have anti-virus protection and have all the latest Windows patches. --- When logging into the computer, choose the checkbox to use a remote dialup or VPN connection (I can't remember the exact message). After the user enters their credentials, it will prompt them for a remote connection to use. Once they select the VPN, it should connect to the VPN and log them on to the computer. The advantage of this method is that they are connected to the network when they login. Therefore, any drive mappings, etc. will take place as long as they have permissions over the VPN to access those resources. Matt Matthew Jenkins Senior Network Specialist TMC Technologies, Inc. 304.368.1862 ext 26 AOL: MLJenkinsCom Yahoo: mljenkins ICQ: 8116624 MSN Visit us online at www.tmctechnologies.com -----Original Message----- From: Ryan Kubiak [mailto:rkubiak@btc-bci.com] Sent: Monday, April 04, 2005 9:59 AM To: focus-ms@securityfocus.com Subject: Integrating Domain and VPN Login I'm trying to find a way to integrate a login to a VPN with a domain login. Users at a remote office currently login using a cached profile then manually start a VPN connection using the client included with XP Pro. These machines are then authenticating to the Windows 2000 server at the central office. I know in NT4 there was a check box for dial up authentication to a domain, however is there anything similar to this for XP to allow seamless integration of these two logins? I tried setting the VPN to login using the Windows credentials and putting a shortcut in the startup folder, however the VPN connection does not start that way for some reason. Ryan ------------------------------------------------------------------------ --- ------------------------------------------------------------------------ --- --------------------------------------------------------------------------- ---------------------------------------------------------------------------
- Previous message: Ryan Gravlin: "RE: Windows Server 2003 Service Pack 1"
- Maybe in reply to: Ryan Kubiak: "Integrating Domain and VPN Login"
- Next in thread: Joel Rivers: "RE: Integrating Domain and VPN Login"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|