Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Focus-Microsoft
[Top] [All Lists]

RE: Integrating Domain and VPN Login

Subject: RE: Integrating Domain and VPN Login
Date: Tue, 5 Apr 2005 09:25:04 -0400
These are instructions I provide to our clients who are running Windows
Servers using RAS to do PPTP VPN.  The RAS server is a domain member.  I
don't necessarily like this method.  However, for small businesses that
can't afford a better solution it works well and is quick to setup and
easy for them to administer.

---

Start, Control Panel
Network Connections
Add Connection
Connect to the network at my workplace
Virtual Private Network connection
Company Name: VPN Company Name
Do not dial the initial connection
IP address:  x.x.x.x
Anyone's use
Properties
Options tab, check Include Windows logon domain Security tab, check
Automatically use my Windows logon name Networking tab, click Internet
Protocol (TCP/IP) Click Properties, click Advanced Uncheck use default
gateway on remote network Click ok until the VPN connects

Computer MUST BE a laptop on the company's domain.  If it is not, skip
the step of checking Automatically use my Windows login name.  When
connecting, use the domain of the company.  Make sure user's passwords
are not easy to guess, and ensure they have anti-virus protection and
have all the latest Windows patches.

---

When logging into the computer, choose the checkbox to use a remote
dialup or VPN connection (I can't remember the exact message).  After
the user enters their credentials, it will prompt them for a remote
connection to use.  Once they select the VPN, it should connect to the
VPN and log them on to the computer.  The advantage of this method is
that they are connected to the network when they login.  Therefore, any
drive mappings, etc. will take place as long as they have permissions
over the VPN to access those resources.

Matt

Matthew Jenkins
Senior Network Specialist
TMC Technologies, Inc.
304.368.1862 ext 26
AOL: MLJenkinsCom  Yahoo: mljenkins  ICQ: 8116624  MSN
Visit us online at www.tmctechnologies.com

-----Original Message-----
From: Ryan Kubiak [mailto:rkubiak@btc-bci.com] 
Sent: Monday, April 04, 2005 9:59 AM
To: focus-ms@securityfocus.com
Subject: Integrating Domain and VPN Login

I'm trying to find a way to integrate a login to a VPN with a domain
login.
Users at a remote office currently login using a cached profile then
manually start a VPN connection using the client included with XP Pro.
These machines are then authenticating to the Windows 2000 server at the
central office.  I know in NT4 there was a check box for dial up
authentication to a domain, however is there anything similar to this
for XP
to allow seamless integration of these two logins?  I tried setting the
VPN
to login using the Windows credentials and putting a shortcut in the
startup
folder, however the VPN connection does not start that way for some
reason.

Ryan


------------------------------------------------------------------------
---
------------------------------------------------------------------------
---




---------------------------------------------------------------------------
---------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>