Notices
Computer & Technology Related Post here for help and discussion of computing and related technology. Internet, TVs, phones, consoles, computers, tablets and any other gadgets.

CheckPoint VPN-1 Edge, RADIUS & Server 2003

Thread Tools
 
Search this Thread
 
Old Nov 15, 2005 | 11:19 AM
  #1  
ozzy's Avatar
ozzy
Thread Starter
Scooby Regular
 
Joined: Nov 1999
Posts: 10,504
Likes: 1
From: Scotland, UK
Question CheckPoint VPN-1 Edge, RADIUS & Server 2003

We have a VPN-1 Edge firewall with around 20 remote VPN users. I'd like to avoid creating and managing all the users and passwords, so I was wondering if there was a way of authenticating user logins with their existing Active Directory accounts via RADIUS.

Anyone know if this can be done with this level of kit?

Stefan
Reply
Old Nov 15, 2005 | 12:12 PM
  #2  
David_Wallis's Avatar
David_Wallis
Scooby Regular
 
Joined: Nov 2001
Posts: 15,239
Likes: 1
From: Leeds - It was 562.4bhp@28psi on Optimax, How much closer to 600 with race fuel and a bigger turbo?
Default

not tried it but have a look at http://www.microsoft.com/technet/pro...7823aa5e6.mspx
Reply
Old Nov 15, 2005 | 03:49 PM
  #3  
ozzy's Avatar
ozzy
Thread Starter
Scooby Regular
 
Joined: Nov 1999
Posts: 10,504
Likes: 1
From: Scotland, UK
Default

Managed to figure it out. Firewall is basic to setup and IAS installs easily enough. You can then see the requests in the event log.

If anyone is even remotely interested I had to register the new IAS box in AD (just installing it on a DC isn't enough ). Then had to create a remote access policy to match the group membership for the user and set the authentication protocol to match the RADIUS proxy request from the firewall.

It's pretty simple once you know how

Stefan
Reply
Old Nov 15, 2005 | 04:46 PM
  #4  
David_Wallis's Avatar
David_Wallis
Scooby Regular
 
Joined: Nov 2001
Posts: 15,239
Likes: 1
From: Leeds - It was 562.4bhp@28psi on Optimax, How much closer to 600 with race fuel and a bigger turbo?
Default

Im presuming you discovered the "RAS and IAS users group" and added the computer account of the machine running IAS into the group?
Reply
Old Nov 16, 2005 | 10:57 AM
  #5  
ozzy's Avatar
ozzy
Thread Starter
Scooby Regular
 
Joined: Nov 1999
Posts: 10,504
Likes: 1
From: Scotland, UK
Default

There's an option under the IAS management called "register server in Active Directory". AFAIK, that's the bit which automatically sorts out the permissions for the RAS and IAS security group for that server.

Stefan
Reply
Old Nov 16, 2005 | 11:27 AM
  #6  
David_Wallis's Avatar
David_Wallis
Scooby Regular
 
Joined: Nov 2001
Posts: 15,239
Likes: 1
From: Leeds - It was 562.4bhp@28psi on Optimax, How much closer to 600 with race fuel and a bigger turbo?
Default

you mean you clicked it and it worked, so you stopped pissing about
Reply
Old Nov 16, 2005 | 12:17 PM
  #7  
ozzy's Avatar
ozzy
Thread Starter
Scooby Regular
 
Joined: Nov 1999
Posts: 10,504
Likes: 1
From: Scotland, UK
Default

Exactly
Reply
Related Topics
Thread
Thread Starter
Forum
Replies
Last Post
JimBowen
ICE
5
Jul 2, 2023 01:54 PM
Primey
ICE
14
Feb 24, 2017 12:46 AM
FuZzBoM
Wheels, Tyres & Brakes
16
Oct 4, 2015 09:49 PM
Ganz1983
Subaru
5
Oct 2, 2015 09:22 AM
Sub-Subaru
General Technical
1
Sep 28, 2015 12:47 PM




All times are GMT +1. The time now is 11:43 PM.