Re: Enable Radius Authentication for users

From: Wajihy [MSFT] (wajihy_at_online.microsoft.com)
Date: 05/27/03


Date: Tue, 27 May 2003 09:36:44 -0700


in this i don't think it can be done
Radius server can be used if there is a device that cna forward radius
request to it ( like a VPN server, router, AP,....)

-- 
This posting is provided "AS IS", with NO warranties and confers NO rights
"Luca Bighi" <luca.bighi@datenquelle.it> wrote in message
news:#$0t$SGJDHA.2764@tk2msftngp13.phx.gbl...
> No one. They are on LAN. The need is to unify the authentication system
> between Domain Logon, Proxy, Mail, ...
> Obviously Proxy, Mail, etc. are not MS products.
> Luca
>
> Lyca
> "Wajihy [MSFT]" <wajihy@online.microsoft.com> ha scritto nel messaggio
> news:%237QM5IGJDHA.1784@TK2MSFTNGP11.phx.gbl...
> > are the users to be authenticated are they using VPN or dial up to
access
> > the network?
> >
> > -- 
> >
> > This posting is provided "AS IS", with NO warranties and confers NO
rights
> > "Luca Bighi" <luca.bighi@datenquelle.it> wrote in message
> > news:eZG5S8FJDHA.276@tk2msftngp13.phx.gbl...
> > > Thanks.
> > > I try to explain me better.
> > > I'd like to know if is possibile to by-pass, in domain login, Win2000
AD
> > > user authentication using an external authentication program (like
> > Radius),
> > > because while I can use Radius for other applications (like proxy,
CISCO
> > > firewall, ...) for the authentication, I can't use AD for such things.
> > >
> > > Luca
> > > "Wajihy [MSFT]" <wajihy@online.microsoft.com> ha scritto nel messaggio
> > > news:%23IV1gqFJDHA.2080@tk2msftngp13.phx.gbl...
> > > > can you please explain more what you are trying to do?
> > > >
> > > > in any case, you can configure a VPN server to use a radius  server
> for
> > > > authentication ( which can be on a separate server)  you need just
to
> > > > configure the VPN
> > > >  server to authenticate against the radius server ( by setting the
ip
> > > > address and the shared secret) for this to work the VPN server needs
> to
> > be
> > > > able to access the    Radius server, the internal interface needs to
> be
> > in
> > > > the same subnet as the radius server.
> > > > a VPN server can be a RAS server, router, concentrator,...
> > > >
> > > >
> > > > -- 
> > > >
> > > > This posting is provided "AS IS", with NO warranties and confers NO
> > rights
> > > > "Luca Bighi" <luca.bighi@datenquelle.it> wrote in message
> > > > news:#TwLucEJDHA.1360@TK2MSFTNGP10.phx.gbl...
> > > > > Is it possible to set user authentication in win 2000 server to
use
> an
> > > > > esternal radius server?
> > > > > If it is, how?
> > > > >
> > > > > Thanks
> > > > > Luca
> > > > >
> > > > >
> > > > >
> > > >
> > > >
> > >
> > >
> >
> >
>
>


Relevant Pages

  • Re: Security. WPA?/-TKIP /-CCMP
    ... immature technology while not making it mandatory to support unique ... key for each connection. ... Only a very small number of access points have built in RADIUS ... authorization and authentication requests to a real RADIUS server. ...
    (alt.internet.wireless)
  • Re: use of RADIUS
    ... trying to access with the authentication type set to WebAuth. ... User opens up application, Netscreen sees host has authenticated and ... No RADIUS necessary. ... If it did and I installed a RADIUS server inside I am curious how the ...
    (comp.security.firewalls)
  • You might protect your radius
    ... CERT Advisory CA-2002-06 Vulnerabilities in Various ... Systems running any of the following RADIUS implementations: ... * Cistron RADIUS versions 1.6.5 and prior ... Block packets to the RADIUS server at the firewall ...
    (comp.security.firewalls)
  • [NEWS] Vulnerabilities in Multiple RADIUS Clients and Servers
    ... Remote Authentication Dial-In User Service (RADIUS) is widely used by ... To validate few types of RADIUS packets RADIUS calculates packet digest. ... In most cases it will cause DoS against RADIUS server. ... validate the Vendor-Specific attribute Vendor-Length ...
    (Securiteam)
  • SECURITY.NNOV: few vulnerabilities in multiple RADIUS implementations
    ... * - vulnerability presents but is not exploitable ... Remote Authentication Dial In User Service (RADIUS) is widely used by ... packet proxing. ... To exploit this vulnerabilities against RADIUS server attacker should ...
    (Bugtraq)