Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

VPN 3005 and Radius

Status
Not open for further replies.

speedingwolf

IS-IT--Management
Jan 23, 2003
65
US
Hello,

I'm in a desparate need for help. Over the weekend, we upgrade our network from NT 4 server to Win2k AD environment. Our previous environment didn't make any sense. We had a NT 4 domain and most server ran Win2k standalone. The radius server is a win2k server standalone and had a local group on the server where the previous admin added users on the domain to this group. This computer is setup as RAdius and its client is a Cisco VPN 3005 concentrator. It allows only PPTP.

After we upgrade our NT 4 domain to AD, users no longer PPTP in. We created a new Radius server on the new Ad and pointed the Cisco VPN concentrator to it but we keep getting this error message on the Cisco VPn when we try to vpn in:

27 09/21/2003 12:59:12.320 SEV=4 AUTH/9 RPT=24 212.213.204.99
Authentication failed: Reason = Unspecified
handle = 376, server = 10.0.0.13, user = testuser

Please help. Can we create a different Radius and tell the VPN concentrator points to it?
 
Hi,

we have the same case, try that:
change the domain controller policy
Network access:Do not allow anonymous enumeration of SAM accounts to disable

or

change the service account to an Domain User Account

try it.
 
Hi,

Thanks for replying. I had to removed alk the Radius policies in the VPN concentrator and recreated them and pointed to the new radious.

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top