Re: Several policies on the same RADIUS

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance

From: emq (nospam_emquiros_at_terra.es)
Date: 10/21/04


Date: Thu, 21 Oct 2004 10:48:27 +0200

Well, we have configured a VPN access from Internet to our network through
the Firewall PIX for all users...

Also we have configured wireless access, for security we have installed it
in another VLAN outside the enterprise, a user connected to this VLAN can
access to internet but only can access to intranet through a VPN connection.
I want to give different permissions to different users.
Also we want to create specific VPN to access specific machines for users
that don't belong to our enterprise, in example: customer support for
especific machines...

We also have a public library with some PCs inside with a local user for
everybody, we want that users could access to internet only if they
introduce a number that is in the visit cards that they receive at the
entrance...

We need different policies and I believe that it should be easily
administrable if I could read the membership to a group...
A users that belongs to a AD group can access to an specific machine, a
users that belongs to another group can access to all machines...

"Sam Salhi [MSFT]" <samers@online.microsoft.com> escribió en el mensaje
news:OyAHdAztEHA.3252@TK2MSFTNGP10.phx.gbl...
> Its hard to give you a definitive answer without knowing exactly what
you're
> planning to do, if you can expand more on your setup, we'll be able to
> provide you with more help
>
> As for group membership, you don't need an extension DLL to do this, it's
> built right into IAS
>
> Please respond back with some additional information on what you're trying
> to accomplish, and we'll be more than happy to help out
>
> Thanks
>
>
> --
> =============================================
> This posting is provided "AS IS" with no warranties, and confers no
> rights.
> =============================================
>
> "emq" <nospam_emquiros@terra.es> wrote in message
> news:%23B5A20qtEHA.444@TK2MSFTNGP10.phx.gbl...
> > Hello I want to implement IAS as RADIUS for VPN access and much more...
> >
> >
> >
> > We have to VPN one for WiFI and another for access from outside the
> > enterprise (in the same Cisco PIX Firewall)
> >
> > I want to assign different permissions and I don't know how to
accomplish
> > this task.
> >
> >
> >
> >
> > Also in our public library I want the users to enter an specific code
in
> > order to navigate through Internet.
> >
> >
> >
> > How could do these tasks???
> >
> >
> >
> > I have read about DLL Extensions for check if the user is member of a
> > group,
> > Could I use this???
> >
> > Which is the best solution???
> >
> >
> >
> >
>
>



Relevant Pages

  • Re: DNS not resolving correctly on VPN
    ... When they log in via VPN, we pass the same DNS server. ... I will work with one of this machines today and post back. ... > the users use the OWA from the Internet side? ...
    (microsoft.public.win2000.dns)
  • Allowing public access to 2 PCs on a private network
    ... Right now all internal clients and VPN can connect to the machines but I ... If I connect these machines to the native side of the server (on a Linksys ... router) I can access the machines from the internet but not on my LAN ... they demo is a remote video surveillance system manager and uses live video ...
    (microsoft.public.windows.server.networking)
  • Re: Several policies on the same RADIUS
    ... > access to internet but only can access to intranet through a VPN ... > Also we want to create specific VPN to access specific machines for users ... > users that belongs to another group can access to all machines... ...
    (microsoft.public.internet.radius)
  • Re: Several policies on the same RADIUS
    ... apply IP Filters. ... So, once your users are on the wireless LAN, they can VPN to your VPN ... > in another VLAN outside the enterprise, a user connected to this VLAN can> access to internet but only can access to intranet through a VPN> connection. ... > Also we want to create specific VPN to access specific machines for users> that don't belong to our enterprise, in example: ...
    (microsoft.public.internet.radius)
  • Re: 3B2 Disks
    ... The only shortcoming in the concept of UUCP based Email is eliminated ... Considering the nature of connectivity over the INTERNET, ... Sure -- but he had multi-bay machines which he could never run ... I actually have such as set of Qbus cards too. ...
    (comp.sys.3b1)