Notices
Computer & Technology Related Post here for help and discussion of computing and related technology. Internet, TVs, phones, consoles, computers, tablets and any other gadgets.

CheckPoint VPN-1 Edge, RADIUS & Server 2003

Thread Tools
 
Search this Thread
 
Old 15 November 2005, 11:19 AM
  #1  
ozzy
Scooby Regular
Thread Starter
 
ozzy's Avatar
 
Join Date: Nov 1999
Location: Scotland, UK
Posts: 10,504
Likes: 0
Received 1 Like on 1 Post
Question CheckPoint VPN-1 Edge, RADIUS & Server 2003

We have a VPN-1 Edge firewall with around 20 remote VPN users. I'd like to avoid creating and managing all the users and passwords, so I was wondering if there was a way of authenticating user logins with their existing Active Directory accounts via RADIUS.

Anyone know if this can be done with this level of kit?

Stefan
Old 15 November 2005, 12:12 PM
  #2  
David_Wallis
Scooby Regular
 
David_Wallis's Avatar
 
Join Date: Nov 2001
Location: Leeds - It was 562.4bhp@28psi on Optimax, How much closer to 600 with race fuel and a bigger turbo?
Posts: 15,239
Likes: 0
Received 1 Like on 1 Post
Default

not tried it but have a look at http://www.microsoft.com/technet/pro...7823aa5e6.mspx
Old 15 November 2005, 03:49 PM
  #3  
ozzy
Scooby Regular
Thread Starter
 
ozzy's Avatar
 
Join Date: Nov 1999
Location: Scotland, UK
Posts: 10,504
Likes: 0
Received 1 Like on 1 Post
Default

Managed to figure it out. Firewall is basic to setup and IAS installs easily enough. You can then see the requests in the event log.

If anyone is even remotely interested I had to register the new IAS box in AD (just installing it on a DC isn't enough ). Then had to create a remote access policy to match the group membership for the user and set the authentication protocol to match the RADIUS proxy request from the firewall.

It's pretty simple once you know how

Stefan
Old 15 November 2005, 04:46 PM
  #4  
David_Wallis
Scooby Regular
 
David_Wallis's Avatar
 
Join Date: Nov 2001
Location: Leeds - It was 562.4bhp@28psi on Optimax, How much closer to 600 with race fuel and a bigger turbo?
Posts: 15,239
Likes: 0
Received 1 Like on 1 Post
Default

Im presuming you discovered the "RAS and IAS users group" and added the computer account of the machine running IAS into the group?
Old 16 November 2005, 10:57 AM
  #5  
ozzy
Scooby Regular
Thread Starter
 
ozzy's Avatar
 
Join Date: Nov 1999
Location: Scotland, UK
Posts: 10,504
Likes: 0
Received 1 Like on 1 Post
Default

There's an option under the IAS management called "register server in Active Directory". AFAIK, that's the bit which automatically sorts out the permissions for the RAS and IAS security group for that server.

Stefan
Old 16 November 2005, 11:27 AM
  #6  
David_Wallis
Scooby Regular
 
David_Wallis's Avatar
 
Join Date: Nov 2001
Location: Leeds - It was 562.4bhp@28psi on Optimax, How much closer to 600 with race fuel and a bigger turbo?
Posts: 15,239
Likes: 0
Received 1 Like on 1 Post
Default

you mean you clicked it and it worked, so you stopped pissing about
Old 16 November 2005, 12:17 PM
  #7  
ozzy
Scooby Regular
Thread Starter
 
ozzy's Avatar
 
Join Date: Nov 1999
Location: Scotland, UK
Posts: 10,504
Likes: 0
Received 1 Like on 1 Post
Default

Exactly
Related Topics
Thread
Thread Starter
Forum
Replies
Last Post
JimBowen
ICE
5
02 July 2023 01:54 PM
Primey
ICE
14
24 February 2017 12:46 AM
FuZzBoM
Wheels, Tyres & Brakes
16
04 October 2015 09:49 PM
Ganz1983
Subaru
5
02 October 2015 09:22 AM
Sub-Subaru
General Technical
1
28 September 2015 12:47 PM



Quick Reply: CheckPoint VPN-1 Edge, RADIUS & Server 2003



All times are GMT +1. The time now is 11:16 AM.