Re: Integrated Windows Authentication

Tech-Archive recommends: Fix windows errors by optimizing your registry



You can only authenticate local machine accounts on the IIS box if you don't
have a domain. You don't need AD, but at least need a domain to
authenticate domain users (and the IIS box must be a member of the domain).
If you want Kerberos auth (instead of only NTLM), then you need AD and 2K
clients or better.

I think Win98 clients can support NTLM, but I'm not really sure. I haven't
had any professional involvement with Win98 for many many years now.
Someone else may know.

Joe K.

--
Joe Kaplan-MS MVP Directory Services Programming
Co-author of "The .NET Developer's Guide to Directory Services Programming"
http://www.directoryprogramming.net
--
"Martin" <Martin@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:DBE46788-D50A-4491-8204-6820229FF603@xxxxxxxxxxxxxxxx
Thanks Joe,

So AD is mandatory if IWA for network logon is required, right?

Is there any specific requirement on the client side if all users of my
network is on AD? Win2k or above? Or it also works with Win98?

Martin


"Joe Kaplan (MVP - ADSI)" wrote:



.



Relevant Pages

  • How to get my CA to be trusted by external clients?
    ... I have an IIS box that issued it's own cert for the ... clients use IE 6. ... avialable in the alert message (when you hit details, or advanced, or... ... and so there's no way for the client to install my CA as a trusted CA. ...
    (microsoft.public.inetserver.iis.security)
  • Use or Not to use ISA
    ... I am looking for advice on the best way to protect my web server. ... I currently sit behind a Symantec Gateway 360 security appliance firewall ... Win2k3 with IIS installed. ... small number of clients as well as my own. ...
    (microsoft.public.isa)
  • Use or Not to use ISA
    ... I am looking for advice on the best way to protect my web server. ... I currently sit behind a Symantec Gateway 360 security appliance firewall ... Win2k3 with IIS installed. ... small number of clients as well as my own. ...
    (microsoft.public.security)
  • IE 6.0 clients rademly get Bad Request (header too long) error message
    ... 2000 active directory and IIS 6.0 on a stand alone server. ... Clients are Windows XP, IE 6.0 and have enabled Integrated ... still is Website that is setup for Integrated Authentication and or a ... matching registry key like the OS called MaxRequestBytes. ...
    (microsoft.public.inetserver.iis)
  • Re: Random NT authenticaiton requests
    ... >Windows2000 sp2 IIS server with NT Authentication ... The only clients that experience a problem are ... ASP Session Timeout Perhaps? ...
    (microsoft.public.inetserver.iis.security)