Integrated Authentication with trusted domain.



I have a W2K3 Standard server with SP1 called WEBSERVER. It is a member
of DMZ.DOMAIN, DMZ.DOMAIN fully trusts INSIDE.DOMAIN. The website runs
under an app pool that is a member of INSIDE.DOMAIN. If I access
http://site.domain.com from inside my firewall my domain credentials
are forwarded as I would expect. If I access http://site.domain.com
from outside the firewall I get prompted for credentials as expected.
Our external clients will be recieving DMZ.DOMAIN accounts to access
resources in the DMZ. I would like for them to be able to enter just
their username and password instead of DMZ.DOMAIN\username and
password. If I omit the domain the login fails and automatically
prefixes the username with the machine name. Is there anyway that I can
configure this, with out breaking the forwarding of credentials from
inside the firewall?

Thanks.

.



Relevant Pages

  • Forcing authentication with a specific DC
    ... authenticates with the firewall through this site. ... is no direct internet access anywhere but in Site A. ... credentials are wrong and to enter new ones. ... but the Citrix server is still ...
    (microsoft.public.win2000.security)
  • Re: Unable to authenticate to untrusted domain NTLM v2 related issue
    ... As you say since local account can be used it is not an issue with lan ... some reason his computer is not using the credentials he expects - maybe ... to authenticate (NT4 SP6 domain B) user credentials. ... That he can access the share on the member from the XP SP1 ...
    (microsoft.public.win2000.security)
  • Re: How to detect if the Windows XP firewall is enabled on my LAN computers ?
    ... XP is a member of an Active Directory domain, then the member workstation ... I cannot define a GPO for that because the GPO will not be applied on ... those computers as the firewall is configured to block incoming trafic. ...
    (microsoft.public.windows.server.security)
  • Re: 2 Domain Servers running on the same LAN...
    ... > another firewall on the LAN, so that trying to find it on the LAN from the ... The firewall is the spearation. ... The machines log into the Domain that is specified and ... a member of and it can only be a member of one Domain at a time. ...
    (microsoft.public.windows.server.sbs)
  • Re: Firewall intrusions
    ... | I recently installed ZoneAlarm's firewall on the recommendation of a member. ... | ZoneAlarm has prevented all intrusions. ... In just the past hour I have been on the internet 20+ intrusion ...
    (microsoft.public.windowsxp.security_admin)