Re: Has anyone got Win2K RRAS <-> XP Pre-Shared Keys to work through VPN?

From: Steve Clark [MSFT] (bogus_at_microsoft.com)
Date: 11/29/04


Date: Mon, 29 Nov 2004 10:42:26 -0800

Who told you PSK are not supported by Microsoft?

That feature is 100% supported. It's not recommended to use PSK in a domain
scenario where the PSK is written to the domain NC, since anyone that can
enumerate the domain NC can view the PSK.

"Greg West" <westgj@yahoo.com> wrote in message
news:5bb67ae5.0411282028.7e66a489@posting.google.com...
>I am attempting to use IPSec/LT2P Pre-Shared Keys to authenticate
> between XP clients and a Windows 2000 RRAS server. Yes, I know
> Pre-Shared Keys are not directly supported by Microsoft.
>
> I have read article http://support.microsoft.com/kb/240262/EN-US but
> that talks about connecting 2 Win2K RRAS servers over a LAN. I have
> created a new security policy as per the article but since I am new to
> security I really don't know if I have configured it correctly. I set
> the key on the VPN connection to match what I configured in the new
> security policy.
>
> I also added the registry entry as described in the article to the
> Win2K RRAS server but it didn't help.
>
> Has anyone been able to get this to work? I would be very grateful
> for any help.
>
> Greg



Relevant Pages