Windows VPN setup in win server 2008R2


hello,

i'm trying setup vpn server on 200r2. @ monet i've installed routing , remote access , nps (local)

i've left connection request policy default , created network policy check's user group membership , machine group membership. if use machine group membership conenction works fine. however, when add machine group membership policy vpn fails saying. "the account not have permission dial in"

in log files messages below.

coid={na}: user domain name\username connected 82.152.46.162 failed authentication attempt due following reason: connection prevented because of policy configured on ras/vpn server. specifically, authentication method used server verify username , password may not match authentication method configured in connection profile. please contact administrator of ras server , notify them of error.

the computer i'm using connect member of group in network policy machine group.

how work using machine groups?

basically want vpn connections accessible if connecting machine on domain

 

thanks

 

 

 

 

hi affrojoe,

 

thanks posting here.

 

based on knowledge , if want restrict domain member computers access internal network via vpn connection , may add nps connection requires polices , , assign domain computers in groups conditions  .

in case, the connection log indicate incorrect user name or password may cause issue , please check if worked procedures below:

1. permit user dial-in in user properties

2. set new  password test account , try again

 

network policy conditions properties

http://technet.microsoft.com/en-us/library/cc731220(ws.10).aspx

 

dial-in properties of user account

http://technet.microsoft.com/en-us/library/cc738142(ws.10).aspx

 

thanks.

 

tiger li


please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community members reading thread.


Windows Server  >  Network Access Protection



Comments

Popular posts from this blog

2008 Windows Deployment Server Properties Error

Can no longer user MS Update - Files required to use Microsoft Update are no longer registered

How do a find data in one file, search for it in another file and if not found, write a custom message to another file