Re: Help with Radius Server Newbie

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



"John" <bechtj@xxxxxxxxxxxxxxxxx> wrote in
news:um5Z5YPnHHA.3968@xxxxxxxxxxxxxxxxxxxx:

I have a Checkpoint Firewall with SSL Connectra. I created a Radius
Server on my Active Directory Server. I have my I added my Radius
Server on my Checkpoint Box as PAP Protocol and it is set to Radius
Standard on my Windows Server. It looks like it is trying to connect
and I can see it in my IAS Logs, but it fails going back it seems. I
am getting a Invalid IAS Auth Type in the Log Viewer .....any
suggestions?




Hi there --

The RADIUS protocol is used only between the RADIUS client (which in this
case is your checkpoint device) and IAS. That is different than the
authentication method that you use to verify the identity of the people and
computers connecting to your network.

So to configure RADIUS between the checkpoint and IAS, both have to use the
RADIUS protocol and each one needs the IP address of the other and they
must be configured with the same shared secret.

After that is completed you must then configure remote access policy in IAS
with an authentication method that is supported by both the client
computers connecting to your network and your RADIUS client/Checkpoint
firewall.

You also must confgiure the policy to allow access, and user accounts in
Active Directory (the dial-in properties of user accounts) must be
configured either to Allow access or to Control access through remote
access policy.

Please see the checklist topics in the IAS Help, as they will step you
through the process of getting this set up.

--
James McIllece, Microsoft

Please do not send email directly to this alias. This is my online account
name for newsgroup participation only.

This posting is provided "AS IS" with no warranties, and confers no rights.
.



Relevant Pages

  • Re: Configure Radius
    ... You can automate the configuration of IAS by using the SDO interfaces. ... > Is there a way to setup a RADIUS server with some command-line tool. ...
    (microsoft.public.internet.radius)
  • Re: 802.1x authentication for wireless issues w/ ISA 2004
    ... Click on RADIUS under Authentication Services and check the box to ... IAS on ... a server other than the SBS, I'm wondering whether ISA2004 is blocking ... Successful Network Logon: ...
    (microsoft.public.windows.server.sbs)
  • Re: 802.1x authentication for wireless issues w/ ISA 2004
    ... The do support WPA-EAP and the radius ... authenticate the computer and this is trying to authenticate the user and not ... If you can post perhaps 10 lines from the IAS log, ... represent my IAS server or the client laptops. ...
    (microsoft.public.windows.server.sbs)
  • Re: RADIUS (Simple Answer on How to Install it)
    ... On the 2003DC I've enabled RRAS and selected RADIUS ... our server under RRAS, I added the server name itself as a RADIUS ... Do I REALLY need IAS? ... I just want VPN through our CheckPoint firewall for 10 people and it's ...
    (microsoft.public.windows.server.networking)
  • Re: Radius?
    ... RADIUS is a protocol which is implemented by IAS. ... Standard Edition; Windows Server 2003, ... Authentication Dial-in User Service (RADIUS) server and proxy. ...
    (microsoft.public.internet.radius)