Re: Restricting Authentication



If the user is using a static IP address then block it at your firewall and
your firewall should be able to give you that information by correlating
failed logon attempts to the firewall logs by time [make sure they are in
synch]. How is this happening - via VPN or RDP?? Since he can attempt to
logon I assume you have the need to allow your users to access and
authenticate to your network from the internet? One solution may be to use
L2TP only VPN for access though that will require that users computers have
certificates to authenticate to the VPN server. --- Steve


"Mike N" <Mike N@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:7D982817-AB04-42D8-9567-6DD39DB86921@xxxxxxxxxxxxxxxx
We have an internet based user attempting to logon to our domain using
account names which they may have obtained from a former employee. Is
there
a way to restrict logon in a mixed 2000/2003 domain by allowing logons
only
from machines that are members of the domain - or within a certain subnet?
Any ideas or suggestions are appreicated.


.



Relevant Pages

  • Re: Cached credentials and password expiration
    ... I believe that when the machine account is hosed ... > access to a domain controller during the logon process. ... > are connected to the VPN on a very regular basis, ... Doesn't it authenticate the user through AD? ...
    (microsoft.public.windows.server.active_directory)
  • Re: The client could not connect to the remote computer...
    ... terminal services but another client can't. ... VPN software. ... I don't think the firewall is misconfigured, ... and the other user can authenticate to the firewall but the other user is not ...
    (microsoft.public.windowsxp.general)
  • Re: Frage : Einwahl von VPN Usern per Modem, ISDN dauert 15 Minuten
    ... Du scheinst noch eine Firewall oder Portfilter innerhalb des VPN haben. ... Hier verhalt sich der Logon namlich wie folgt: ... Der Client sucht nach einem DC, ...
    (microsoft.public.de.german.windows.server.networking)
  • Re: VPN Access
    ... Yes check the logs on the servers you are trying to access to see if a logon ... specify domain name then I think that the credentials you present to the VPN ... server are used to access domain resources and not the logon/password you ... authenticate you to your domain resources. ...
    (microsoft.public.windowsxp.security_admin)
  • Re: ISA SERVER NOT STARTING
    ... I delete the nat/basic firewall and stop and started the RRAS an tried to ... There were no critical events in the DNS Server Log in the last 24 hours. ... An error occurred during logon ... Caller User Name: - ...
    (microsoft.public.windows.server.sbs)