Has anyone ever had success in using the Logon Script field on the Profile tab of a user account to point to a UNC path that doesn't reside on a DC? I don't have permissions to create Group Policies or add files to the NETLOGON share, but I do have the need to set up a logon script. Any...
SurfControl's rules changed to block all undefined traffic. Even though the ASA's subnet was not supposed to be monitored, I had to add a specific exception into SurfControl to allow LDAP authentication. SurfControl wasn't even configured to monitor port 636, which is why I neglected to look...
The issue ended up being a change to the rules in SurfControl, our web filtering solution. I don't know if that helps or not, but it is what ended up being our problem.
We have 46 servers. We used to have 28. We've added a few applications, but we've also removed a few. Some of the increase has been VM's for test, but the majority are old server that had their primary application migrated to a new server and have small apps that just haven't been moved yet...
Thank you all for your responses. If nothing else, you have established that I posed the wrong question from the start. The ratio idea was a misguided attempt to find a creative way to get my lackadaisical boss to understand the need for consolidation without getting into the vast details of...
I understand what you both are saying; I know it all too well and agree with 90% of it. But where I disagree is that the user to server ratio is baseless. There is always the possibility for overkill. If you buy 3 server to do what 1 server could efficiently handle by itself, that is over...
I'm not asking about how many users I can have per application, or per email server. I can get those recommendations from vendors. I talking about a down and dirty total number of servers compared to a total number of users. For instance, a company with 1500 users and 300 servers would have a...
This is more of a poll than a technical question. I'm curious as to what everyone's server to user ratio is. I know that is largely dependent on the applications, etc., but my environment is getting a little out of control and I can't seem to get my manager to care. I've tried to find a...
RADIUS is running on the same servers I am using for LDAP. Also, I have not had any related events in the IPS. I also don't see a way to configure LDAPv2.
No significant changes. Several weeks ago, I changed the LDAP config to look multiple levels beneath the base DN, but there were no issues until yesterday. The only other changes would be Windows Updates, IPS signature updates, and anti-virus updates. No events on the IPS, and not anti-virus...
I've been using LDAP to authenticate administrators to our ASA's, but I've recently run into a problem. It's been working fine for about 5 months, but this past week, administrators have been getting LDAP logins rejected, and it falls back to local authentication. The AD servers are working...
I have an ASA running 8.2(1) that is being used as a VPN concentrator. When I try to get the Application Access applet to launch in WebVPN, it half loads and the hangs every time. I've tried it on 3 different computers, and they all have the same problem. All have Java 1.6. Anyone know of...
Yeah, don't get me started. Apparently, we've requested more than once for them to filtering our subnet, but that was before my time here. It's not your standard ISP, but that is beside the point. I felt dumb calling and asking them to look at it, but I had exhausted all other possibilities.
My stupid ISP was blocking 443 on my IP. Why? They don't have a good answer. It's amazing how well the WebVPN works when a third party isn't blocking the ports you need. Thanks for the help Grover.
It should use the same cert as it does for SSH and the ASDM, correct? If that is the case, then yes. If i need to create a separate one, I'll have to do that. Eventually I'll be importing one from VeriSign, but it is currently assigned to our VPN3000.
I'm having some trouble getting the WebVPN to come up on a 5520. The ASA also serves as our corporate firewall. I don't even get the login page, the connection just times out. I have a 5505 that I used to do some testing, and the only thing I had to do to get the WebVPN to come up was to...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.