Re: IAS + Active Dirctory
- From: panda <panda@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Date: Thu, 1 Mar 2007 01:46:10 -0800
Hi,
thanks for the response.
is "Policy-Name = <undetermined> "
correct or should it say the poicy that i have created? If so how do you get
IAS to select that policy.
I only have one policy created.
THanks
"Nick Domukhovsky" wrote:
panda пишет:.
Hi,All works fine. You have some misconfiguration with policies and etc...
I have a Cisco PIX firewall with Windows 2000 with IAS and Windows 2003 with
the active directory.
I have setup the PIX to do RADIUS authentication. I have the following setup
on my IAS server.
Policy: Allow access if dial-in permission is enabled.
Time allowed: All the time (ie every box is selected)
Grant Remote access permission checked
Edit profile: Nothing checked
IP: server settings define policy checekd
Multilink: default to server settings checked
Authentication: Unencrypted Authentication checked
Encryption: No Encryption checked
Advanced: Framed-Prototcol/Radius Standard/PPP
Service-Type/Radius Standard/Framed
Under clients i have my Friendly name with client-vendor property set to
Radius Standard.
I have registered teh Active directory in IAS.
I get this in the event viewer:
User user was denied access.
Fully-Qualified-User-Name = domain name\user
NAS-IP-Address = 192.168.2.1
NAS-Identifier = <not present>
Called-Station-Identifier = <not present>
Calling-Station-Identifier = x.x.x.x
Client-Friendly-Name = OFTPIX
Client-IP-Address = 192.168.2.1
NAS-Port-Type = <not present>
NAS-Port = 43
Policy-Name = <undetermined>
Authentication-Type = PAP
EAP-Type = <undetermined>
Reason-Code = 16
Reason = There was an authentication failure because of an unknown user
name or a bad password.
Is there any known issue with Windows 2000 IAS with Windows 2003 Active
Directory?
Other wise what is the issue?
--
With best regards
Nickolay Domukhovsky, MCSA
- Follow-Ups:
- Re: IAS + Active Dirctory
- From: Darrel
- Re: IAS + Active Dirctory
- References:
- Re: IAS + Active Dirctory
- From: Nick Domukhovsky
- Re: IAS + Active Dirctory
- Prev by Date: Re: How to logon to remote windows 2003, XP using command line
- Next by Date: Re: I killed the RAID
- Previous by thread: Re: IAS + Active Dirctory
- Next by thread: Re: IAS + Active Dirctory
- Index(es):
Relevant Pages
|