IPSec and CA's

From: Troy Bruder (troy.bruder_at_aptconsulting.com)
Date: 06/05/03


Date: Thu, 5 Jun 2003 11:33:50 -0400


Hello,

I have a Win2k member server which does not participate in our NT 4.0
domain. Users have separate accounts on this box for making file share
connections and also to authenticate to websites it runs.

We need to add some security to this configuration. I was thinking of
installing a standalone CA to manually configure certificates for client
authentication, then configuring the box for IPSec connections only. Can
someone tell me exactly how things work for say driver share mapping and
website browsing??

For example, when a user makes a connection, they'll enter a user ID and
PW... Will the box validate that information, then check the certificate??

Any other suggestions/recommendations would be greatly appreciated!

Thanks,
Troy



Relevant Pages

  • RE: Fedora core 1 sendmail problems
    ... > know that traffic on port 80 is coming in and out. ... initial posting - the same configuration did run before with RH 7.3 as ... meanwhile done by many provider for dialup connections to pretect agains ... work through port 80 to the Sendmail on your Fedora is running fine. ...
    (Fedora)
  • Re: Client End Firewalls
    ... depending on the firewall's configuration). ... Even if a client side firewall was to block just one ... Using a firewall with password protection is a must. ... >> connections. ...
    (Security-Basics)
  • Re: Dynamic Stencil drawing based on Custom Properties?
    ... It allows you to have a variable number of connections. ... > is defined then an Visio add-in component will produce a configuration ... > flexibility in how many ports, lpars, logical devices,... ... > custom property. ...
    (microsoft.public.visio.developer)
  • Re: Slow companyweb over https://fqdn:444
    ... it lists current settings and there is a button to select optimal settings and then a check box to apply to all NICs. ... So what is the upload speed of the dsl. ... certificates if you are having speed issues. ... >scenarios on the same remote computer with the same internet connections: ...
    (microsoft.public.windows.server.sbs)
  • RE: problems receiving e-mail to my server redux
    ... > Here's what my ISP told me about any blocking of smtp connections: ... Simply starting named (as supplied by redhat) on your server will not work. ... redhat supplies a caching-only name server configuration. ... Redhat supplies two MTA's, sendmail and postfix. ...
    (RedHat)