Thursday 23 July 2015

Remote Access Policy, RADIUS(Remote Access Dial In User Service)


Remote Access Policy

It can be use in the domain or workgroup network with RAS or VPN. It is use to allow access or deny access multiple users at a time.
step1    Add VPN users in a group
step2    User properties   -> Dial-in tab   -> Control access through remote access policy   -> OK
step3    Routing and Remote Access   -> Remote Access Policy (NPS in windows2008)  -> Add windows group   -> Select Group of VPN users   -> Grant or Deny    -> OK       

         

          RADIUS(Remote Access Dial In User Service)
         
RADIUS is use to manage remote access policies of all the VPN (or RAS) servers from single location. RADIUS server can be use only in the domain network. RADIUS is also known as AAA(Authentication Authorization Accounting) or IAS(Internet Authentication Service) or  NPS(Network Policy Server). RAS server and VPN server are clients of RADIUS server.
If we have more than one RAS or VPN servers with different Remote Access Policies, then we have to configure RADIUS for the centralize management of Remote Access Policies.
It is recommended that RADIUS should be configure on DC.

To install and configure RADIUS :
Windows 2003  -> Control panel   -> Add/Remove Program  -> Add/Remove Windows components   -> Networking service  -> Details  -> Select IAS    -> Next   -> Finish

Windows2008  -> Select NPS in Server Manager Roles

Windows2003/2008  ->         Program  ->          Admin. tools   ->          IAS in windows2003/NPS in windows2008   -> RADIUS client  -> New RADIUS client   -> Give IP address of VPN server   -> OK

Now Remote Access Policies of VPN server will replicate in RADIUS server.

Now check Remote Access Policy from RADIUS server.





Step1    Configure            VPN       server   and        VPN       client

step2     Create  RAP
step3     Install    NPS        in            the         domain
step4     Check    RAP        from      NPS


No comments:

Post a Comment