thanks and regards
Uso
--
Jim Harrison [ISAQFE]
Read the help, books and articles!
This posting is provided "AS IS" with no warranties, and confers no rights.
"Uso" <uso...@gmx.net> wrote in message
news:b24sjf$ni...@news-dxb.emirates.net.ae...
I once used it together with running IAS on Win2K DCs, but Microsoft's IDC
documentation specifically states that they preferred not to use RADIUS on
VPN firewalls - I'm not sure if this suggests that its a bad idea or not.
"Jim Harrison [MSFT]" <j...@online.microsoft.com> wrote in message
news:ePPfs9E0CHA.2868@TK2MSFTNGP12...
They didn't have a preference. They said that there was no need for
centralized authentiation or accounting, so they didn't use it in their
scenario.
"The Remote Authentication Dial-In User Service (RADIUS) was not used in the
architecture because centralized accounting and management for VPN
connections were not required to support remote access for the
administrators. Accounting requests (such as accounting start or stop) and
authentication requests, such as Access-Accept or Access-Reject, are logged
on to the RRAS server. The RRAS server has a feature to log status
periodically, such as interim accounting requests. This logging feature is
not enabled because it can result in high-volume logs. A custom location,
away from the default location, is specified for the log file, so that
security can be tightened on the directory."
HTH,
--
Tom
www.isaserver.org/shinder
Get the books!
ISA Server and Beyond: http://tinyurl.com/1jq1
Configuring ISA Server: http://tinyurl.com/1llp
MVP -- ISA Server 2000
"Paul Baldwin" <pa...@supanet.removethisbit.net.uk> wrote in message
news:uLczjoO0CHA.1624@TK2MSFTNGP10...