Re: RAS errors - removing Everyone from Pre-Windows 2000

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance

From: Priya Raghavan [MSFT] (priyadr_at_online.microsoft.com)
Date: 07/29/04


Date: Thu, 29 Jul 2004 18:01:36 +0530

RADIUS is not a requirement for RRAS Setup.

-- 
Thanks,
Priya.
------------------
This posting is provided "AS IS" with no warranties, and confers no rights.
<anonymous@discussions.microsoft.com> wrote in message
news:416801c4731a$db786160$a601280a@phx.gbl...
> We do not have Radius Setup, is this a requirement or can
> we just have RRAS setup?
>
> Also, does the everyone Group have to be in those
> permissions? Admins and Auth. Users are there but not
> Everyone.
>
>
> >-----Original Message-----
> >Generally the error 930 is caused in the following cases:
> >1. When your RADIUS server is not reachable from your VPN
> server.
> >2. This issue may occur if the computer account has
> permissions to read the
> >Active Directory directory service record, but it does
> not have permissions
> >to write to the Active Directory record.
> >
> >To verify the user permissions in the Active Directory
> Users and Computers
> >snap-in on a Windows 2000 domain controller. To do this,
> follow these steps:
> >  1.. Click Start, point to Programs, point to
> Administrative Tools, and
> >then click Active Directory Users and Computers.
> >  2.. Expand your domain.
> >  3.. Right-click Domain Controllers, and then click
> Properties.
> >  4.. Click the Group Policy tab, click Default Domain
> Controllers Policy,
> >and then click Edit.
> >  5.. Expand Computer Configuration, expand Windows
> Settings, expand
> >Security Settings, expand Local Policies, and then click
> User Rights
> >Assignment.
> >  6.. Double-click Access this computer from the network.
> >  7.. By default, the Administrators, the Authenticated
> Users, and the
> >Everyone groups are assigned this user right. If these
> groups are not
> >assigned this user right, add them. To do so, click Add,
> locate the user or
> >group you want to add, and then click OK two times.
> >
> >-- 
> >Thanks,
> >Sharoon
> >---------------------------------------------------------
> >This posting is provided "AS IS" with no warranties, and
> confers no rights.
> >
> >"Ras is Up" <anonymous@discussions.microsoft.com> wrote
> in message
> >news:40c601c4730e$af156d90$a401280a@phx.gbl...
> >> Hello Support,
> >> We have a 2k domain running in native mode with a modem
> >> pool configured on a 2k server running RRAS with a
> policy
> >> setup to allow a certain gropu to vpn in.  When i remove
> >> the everyone group from "Pre-Windows 2000 compatible
> >> access" group, VPN and dialin authentification fails
> with
> >> error 930.  How can i fix this security hole?
> >>
> >>
> >
> >
> >.
> >