Re: RAS errors - removing Everyone from Pre-Windows 2000
anonymous_at_discussions.microsoft.com
Date: 07/26/04
- Previous message: Sharoon Shetty K [MSFT]: "Re: Windows 2003 VPN with L2TP."
- In reply to: Sharoon Shetty K [MSFT]: "Re: RAS errors - removing Everyone from Pre-Windows 2000"
- Next in thread: Priya Raghavan [MSFT]: "Re: RAS errors - removing Everyone from Pre-Windows 2000"
- Reply: Priya Raghavan [MSFT]: "Re: RAS errors - removing Everyone from Pre-Windows 2000"
- Messages sorted by: [ date ] [ thread ]
Date: Mon, 26 Jul 2004 07:14:26 -0700
We do not have Radius Setup, is this a requirement or can
we just have RRAS setup?
Also, does the everyone Group have to be in those
permissions? Admins and Auth. Users are there but not
Everyone.
>-----Original Message-----
>Generally the error 930 is caused in the following cases:
>1. When your RADIUS server is not reachable from your VPN
server.
>2. This issue may occur if the computer account has
permissions to read the
>Active Directory directory service record, but it does
not have permissions
>to write to the Active Directory record.
>
>To verify the user permissions in the Active Directory
Users and Computers
>snap-in on a Windows 2000 domain controller. To do this,
follow these steps:
> 1.. Click Start, point to Programs, point to
Administrative Tools, and
>then click Active Directory Users and Computers.
> 2.. Expand your domain.
> 3.. Right-click Domain Controllers, and then click
Properties.
> 4.. Click the Group Policy tab, click Default Domain
Controllers Policy,
>and then click Edit.
> 5.. Expand Computer Configuration, expand Windows
Settings, expand
>Security Settings, expand Local Policies, and then click
User Rights
>Assignment.
> 6.. Double-click Access this computer from the network.
> 7.. By default, the Administrators, the Authenticated
Users, and the
>Everyone groups are assigned this user right. If these
groups are not
>assigned this user right, add them. To do so, click Add,
locate the user or
>group you want to add, and then click OK two times.
>
>--
>Thanks,
>Sharoon
>---------------------------------------------------------
>This posting is provided "AS IS" with no warranties, and
confers no rights.
>
>"Ras is Up" <anonymous@discussions.microsoft.com> wrote
in message
>news:40c601c4730e$af156d90$a401280a@phx.gbl...
>> Hello Support,
>> We have a 2k domain running in native mode with a modem
>> pool configured on a 2k server running RRAS with a
policy
>> setup to allow a certain gropu to vpn in. When i remove
>> the everyone group from "Pre-Windows 2000 compatible
>> access" group, VPN and dialin authentification fails
with
>> error 930. How can i fix this security hole?
>>
>>
>
>
>.
>
- Previous message: Sharoon Shetty K [MSFT]: "Re: Windows 2003 VPN with L2TP."
- In reply to: Sharoon Shetty K [MSFT]: "Re: RAS errors - removing Everyone from Pre-Windows 2000"
- Next in thread: Priya Raghavan [MSFT]: "Re: RAS errors - removing Everyone from Pre-Windows 2000"
- Reply: Priya Raghavan [MSFT]: "Re: RAS errors - removing Everyone from Pre-Windows 2000"
- Messages sorted by: [ date ] [ thread ]
Relevant Pages
|