RE: Setup guidlanes to install SBS-Radius (to control IPSec VPN Firewa




Hello,

Thank you for posting here.

According to your description, I understand that:

You want the firewall that act as the IPsec VPN server (for remote access
and site-to-site connection) to have integrated authentication with the SBS
server AD by RADIUS.

If I have misunderstood the problem, please don't hesitate to let me know.

Suggestions:
=========================
For a VPN server (remote access server), it is a good practice to make it a
RADIUS client of the Windows IAS for integrated authentication and
accounting.

To configure the firewall as the RADIUS client of the Windows IAS, the
configuration is simple and different in the firewall from multiple
venders. For example, for a Cisco IOS router you may refer to:

Configuring IPSec Between a Cisco IOS Router and a Cisco VPN Client 4.x for
Windows Using RADIUS
http://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_examp
le09186a00800949ba.shtml

From the description, I think you got stuck with the certificate for secure
the traffic by IPsec between the RADIUS server and the RADIUS client. For
more related information, you may refer to:

Dial-up and VPN remote access
http://technet.microsoft.com/en-us/library/cc782585.aspx

Implementing Your IAS Solution
http://technet.microsoft.com/en-us/library/cc787513.aspx
Hope this helps. Also, if you have any questions or concerns, please do not
hesitate to let me know.




Best regards,
Miles Li

Microsoft Online Partner Support
Microsoft Global Technical Support Center

Get Secure! - www.microsoft.com/security
=====================================================
When responding to posts, please "Reply to Group" via your newsreader so
that others may learn and benefit from your issue.
=====================================================
This posting is provided "AS IS" with no warranties, and confers no rights.


.



Relevant Pages

  • RE: Setup guidlanes to install SBS-Radius (to control IPSec VPN Fi
    ... cabable to set up the FW to be RADIUS client for WIN RADIUS Server. ... You want the firewall that act as the IPsec VPN server (for remote access ... for a Cisco IOS router you may refer to: ...
    (microsoft.public.windows.server.sbs)
  • RE: Remote Access
    ... The IP 209.221 should be the VPN server name you need to input in the ... since the web sites and E-mail service is hosted on the SBS ... | Thread-Topic: Remote Access ...
    (microsoft.public.windows.server.sbs)
  • Re: Provide a pool ip from IAS to Radius Clients
    ... I have a NAS (radius client) that connect with my radius ... server would be able to get this ip from a pool to allow ... >> ADDRESS on IP tab of Remote Access Policies' profile? ...
    (microsoft.public.internet.radius)
  • RE: routing and remote access?
    ... If your ISA server is the VPN server, then you don't need to run that at ... | and remote access" I have a seperate server, ...
    (microsoft.public.windows.server.sbs)
  • Adding A Radius Client
    ... I just setup my 2003 Server as a VPN Server and configured all VPN clients ... client to the server because i didnt go into IAS and Add a radius client. ...
    (microsoft.public.isa.vpn)

Loading