Re: CRL Checking - L2TP/IPSec and XP

From: Paul Adare (padare_at_newsguy.com)
Date: 02/25/05


Date: Fri, 25 Feb 2005 02:43:02 -0500

In article <31f13939.0502242006.c02c13e@posting.google.com>, in the
microsoft.public.windows.server.security news group, skm
<specialkman@gmail.com> says...

> Does anyone know if XP clients perform CRL checking over a L2TP/IPSec
> connection?
>
> I am setting up a vpn using XP clients, Windows Server 2003 vpn
> gateways and certificates.
>
> The MS VPN Admin guide appears to indicate that clients to do not
> perform the CRL checking over L2TP/IPSec, - only the gateway???
>

This is correct. The assumption being that until the VPN connection is
established, the clients are "offline" and are unable to do CRL
checking.

-- 
Paul Adare
"On two occasions, I have been asked [by members of Parliament],
'Pray, Mr. Babbage, if you put into the machine wrong figures,
will the right answers come out?' I am not able to rightly apprehend
the kind of confusion of ideas that could provoke such a question."
-- Charles Babbage (1791-1871)


Relevant Pages

  • RE: Cant remote desktop to clients connected via VPN
    ... that the VPN connection works well. ... that RDP does not work to clients connected via VPN (to all other clients it ... > the SBS 2003, but from your IP configuration, I found your DNS server is ...
    (microsoft.public.windows.server.sbs)
  • RE: Cant remote desktop to clients connected via VPN
    ... the SBS 2003, but from your IP configuration, I found your DNS server is ... not point to the SBS server when establish VPN connection from remote ... you could not establish RDP connection also from ... internal clients, it might be occur on the client side, that the port 3389 ...
    (microsoft.public.windows.server.sbs)
  • Re: Connect to Small Business Server VPN
    ... Here is the results of an ipconfig /all from one of my clients: ... Ethernet adapter Internet Connection: ... "Cris Hanna " ... Actually the subnet is correct on a VPN ...
    (microsoft.public.windows.server.sbs)
  • RE: SBS VPN connects but no shares..
    ... VPN clients can no longer access internal resources after you install ... Windows Server 2003 Service Pack 1 on a computer that is running ISA Server ... How to configure a VPN connection to your corporate network in Windows XP ...
    (microsoft.public.windows.server.sbs)
  • Re: Consider offline files and VPN domain joined clients.
    ... Everything seems to be going well after a few quirks with adding the vpn connected client computers to the domain. ... The server and server clients is connected to teh internets through a gigabit network, the vpn clients connects to the server from an 8 Mbit connection. ...
    (microsoft.public.windows.server.sbs)