Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Contivity 2600

Status
Not open for further replies.

MAJBlaine

IS-IT--Management
May 20, 2002
34
US
Does anyone have a decent whitepaper on the integration of a Contivity 2600 into an NT domain? I've got my Contivity set up, users can gain access to the network, but besides telnet'ing around, I don't understand how its supposed to recognize and log users into the domain so they can pull files off the server, email, etc.
Also, I don't know squat about setting up a radius server. My NT admin has never done it either. Blind leading the blind on this one.
Thanks,
- Blaine
 
Blaine,
I believe the Contivity doesnt natively log the user onto the windows domain, however a good tool to accomplish that is to use Radius Proxy with Microsofts IAS. I have heard alot of people using IAS and apparently gotten good results. One thing to note, it is not necessarily a single sign on. For more specifics, I would read into the gina's.

Good luck. The IAS documentation can be downloaded from Microsoft.com
 
In order to log onto an NT domain, there is nothing specific that needs to be done on the global configuration of the Contivity. Since the NT domain login works using NETLOGIN, specify and WINS and DNS address for your servers on your network, so that those addresses will be pushed down to your client when they create an IPSec session to the Contivity. You can also specify and domain name (company.com) to be pushed down in order to qualify domain names within your network. These items are added under PROFILES-->GROUPS-->Edit the group users are connecting to-->IPSEC and select configure.

Once you create your IPSec connection you can either select to log off your current session in NT, 2000, or XP and then specify the domain and domain UIC and PW to log into the domain. In order for this to work you must install the EAC as a service when first installing it. Also, if the client is installed as a service under the OPTIONS menuon the client you can select "Logoff on Connect" which will log the user off their current OS session and allow them to log back on with to the domain through the IPSec connection.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top