Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations gkittelson on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

active directory web based authentication?

Status
Not open for further replies.

floppyraid

Technical User
Aug 16, 2009
30
US
Greetings,

another question I have for you

i am looking for some sort of (preferably open source, but even if not OSS, i need it to be free) software solution that will help me with this scenario:

i have a windows server domain based network.

i have many workstations that are not capable of joining the domain (like windows xp home machines, and MAC OS X machines). on the Windows XP Home machines, they are continually bothered to enter authentication information whenever the credentials timeout. i would be interested in some sort of software that would run on a locally administered web server (either Apache on a *nix box, or IIS, doesnt matter), provide some sort of web portal where 'non authenticated' users would be redirected to, at which point they could supply their Active Directory credentials and receive some sort of authentication token with a server side customizable timeout.

if you can think of any software that does anything remotely similar please let me know, any help would be appreciated.
 
Why not join this machines to the domain over the VPN connection.

Denny
MVP
MCSA (2003) / MCDBA (SQL 2000)
MCTS (SQL 2005 / SQL 2005 BI / SQL 2008 DBA / SQL 2008 DBD / SQL 2008 BI / MWSS 3.0: Configuration / MOSS 2007: Configuration)
MCITP (SQL 2005 DBA / SQL 2008 DBA / SQL 2005 DBD / SQL 2008 DBD / SQL 2005 BI / SQL 2008 BI)

My Blog
 
i am not sure that would accomplish entirely what i am trying to do, but i could be wrong (i am not very familiar with the capabilities of the built in VPN stuff in windows server).

what i am ultimately trying to accomplish is this:

if someone plugs in their laptop to a port, and we have not already added their MAC a specific reservation, we want that persons internet requests to be redirected to a web based portal (the web server we would maintain locally) where they are prompted to supply credentials.

once they supply credentials (preferably the credentials that would be in our Active Directory), we want their MAC address to be set up as a reservation in DHCP.

i realize this sounds kind of involved, and it might require more than 1 software solution to do (i was anticipating needing some sort of linux box running Apache which would also have some sort of open source LDAP software that could make changes to our Active Directory. the box would would reside 'in between' the clients and the core router, and once the clients were authenticated, it would pass packets from the clients to the core router. --- but, when i think about this, it sounds to me like there, by now in earths history, should be some sort of easier way of doing all of this than to have some sort of in between proxy.)

any ideas would be much appreciated
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top