Windows VPN setup in win server 2008R2
hello,
i'm trying setup vpn server on 200r2. @ monet i've installed routing , remote access , nps (local)
i've left connection request policy default , created network policy check's user group membership , machine group membership. if use machine group membership conenction works fine. however, when add machine group membership policy vpn fails saying. "the account not have permission dial in"
in log files messages below.
coid={na}: user domain name\username connected 82.152.46.162 failed authentication attempt due following reason: connection prevented because of policy configured on ras/vpn server. specifically, authentication method used server verify username , password may not match authentication method configured in connection profile. please contact administrator of ras server , notify them of error.
the computer i'm using connect member of group in network policy machine group.
how work using machine groups?
basically want vpn connections accessible if connecting machine on domain
thanks
hi affrojoe,
thanks posting here.
based on knowledge , if want restrict domain member computers access internal network via vpn connection , may add nps connection requires polices , , assign domain computers in groups conditions .
in case, the connection log indicate incorrect user name or password may cause issue , please check if worked procedures below:
1. permit user dial-in in user properties
2. set new password test account , try again
network policy conditions properties
http://technet.microsoft.com/en-us/library/cc731220(ws.10).aspx
dial-in properties of user account
http://technet.microsoft.com/en-us/library/cc738142(ws.10).aspx
thanks.
tiger li
please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community members reading thread.
Windows Server > Network Access Protection
Comments
Post a Comment