Remote
Access Policy
It can be use in the
domain or workgroup network with RAS or VPN. It is use to allow access or deny
access multiple users at a time.
step1 Add VPN users in a group
step2 User properties -> Dial-in tab -> Control access through remote access
policy -> OK
step3 Routing and Remote Access -> Remote Access Policy (NPS in
windows2008) -> Add windows group -> Select Group of VPN users -> Grant or Deny -> OK
RADIUS(Remote Access Dial In User Service)
RADIUS is use to
manage remote access policies of all the VPN (or RAS) servers from single
location. RADIUS server can be use only in the domain network. RADIUS is also
known as AAA(Authentication Authorization Accounting) or IAS(Internet
Authentication Service) or NPS(Network
Policy Server). RAS server and VPN server are clients of RADIUS server.
If we have more than
one RAS or VPN servers with different Remote Access Policies, then we have to
configure RADIUS for the centralize management of Remote Access Policies.
It is recommended that
RADIUS should be configure on DC.
To install and
configure RADIUS :
Windows 2003 -> Control panel -> Add/Remove Program -> Add/Remove Windows components -> Networking service -> Details
-> Select IAS -> Next -> Finish
Windows2008 -> Select NPS in Server Manager Roles
Windows2003/2008 ->
Program -> Admin. tools -> IAS in windows2003/NPS in
windows2008 -> RADIUS client -> New RADIUS client -> Give IP address of VPN server -> OK
Now Remote Access
Policies of VPN server will replicate in RADIUS server.
Now check Remote
Access Policy from RADIUS server.
Step1 Configure VPN server and VPN client
step3 Install NPS in the domain
No comments:
Post a Comment