Re: How do I deal with remote non domain PC's



What may help is the user uses the option in the VPN connection to specify
the domain name along with the user name/password. That may help in the
issue where they are prompted for credentials to access a server. What
happens is that once the user gains access to the VPN their logged on
locally credentials are used for authentication for domain resources. I
don't know the answer for the second part of your question. --- Steve



"Helpseta" <helpdesk@xxxxxxxxxxxxxxxxxxx> wrote in message
news:1150373282.215305.55240@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
Hey guys,

Got a MS question for you and hopefully you are able to point me in the
right direction.
We are using PIX VPN and are using MS IAS / RADIUS Server for
authentication. Clients are connecting with MS PPTP client.
To prevent remote non domain pc's from signing on as Anonymous to a
member file server, what would you use to authenticate? PKI
environment/Certificates or is IAS enough?

My problem is now that IAS gets them though the first door but if they
need to access other MS file servers they are being re-prompted for
credentials.

If anybody knows some How To documents for this implementation would be
much appreciated

Another thing is that in a couple of weeks we are going to integrate
the AS400 using Kerberos Authentication for single signon purpouses

Should I wait for this because it changes authentication big time
throughout the network? I could imagine this breaking things again.


Jan



.



Relevant Pages

  • Re: DFL-300 IPSEC VPNs only works if your remote client is open wide open on the internet! Sucks!
    ... Encapsulating Security Mode (ESP) WITH AUTHENTICATION! ... I would think that the only way to correct this issue, and use the VPN ... >> Are you trying to make a VPN connection somewhere? ...
    (comp.security.firewalls)
  • RE: Wireless security and VPN
    ... Most Cisco wireless gear has this WEP type (called ... Subject: Wireless security and VPN ... AND VPN authentication to use for nearly all of our wireless rollouts. ... As soon as I establish the VPN connection I am ...
    (Security-Basics)
  • Re: [fw-wiz] Secure access to LAN resources (WAS: terminal services)
    ... > encrypted tunnel. ... VPN devices are designed to do strong authentication. ... It's always a trade-off between risk and protection. ...
    (Firewall-Wizards)
  • RE: VPN
    ... possible to verify the identity of the server". ... Authentication, the Internet Authentication Service need to be ... On the VPN server, click Start, click Run, type rrasmgmt.msc, and then ... Windows Authentication, under Accounting Provider, click to select Windows ...
    (microsoft.public.windows.server.sbs)
  • Re: VPN over wireless
    ... The RSA key is for authentication, ... Only the payload data packets are encrypted. ... The key exchange mechanism varies with the type of encryption. ... With a VPN, only the packets going between the VPN client and VPN ...
    (alt.internet.wireless)