Windows server 2008 RAS+RADIUS

  


Experimental environment:
windows server 2008 intranet IP 192.168.1.1 external network IP 8.8.8.8 windows server 2008 (NPS) IP 192.168.1.254 windows XP analog interface Incoming IP address: 8.8.8.4

RADIUS is a C/S structure protocol. Its client is initially a NAS (Net Access Server) server. Now any computer running RADIUS client software can become RADIUS. Client. The RADIUS authentication mechanism is flexible. You can use PAP, CHAP, or Unix login authentication. RADIUS is an extensible protocol, all the work carried out it is a vector Attribute-Length-Value based conducted. RADIUS vendors also support expansion of vendor-specific attributes. Because the RADIUS protocol is simple and clear, it can be expanded, so it has been widely used, including ordinary telephone Internet access, ADSL Internet access, residential broadband Internet access, IP telephony, VPDN (Virtual Private Dialup Networks, virtual private dial-up network service based on dial-up users), and mobile phones. Prepaid service fees. Recently proposed IEEE 802.1x standard, which is based on the standard port for access authentication to the wireless network, also uses the RADIUS protocol authentication.

Install Policy Access Service


Select Network Policy Server

Note: This server acts as RADIUS. Please clear your mind to avoid experiment failure


& mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash ; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; IT-Chen Yi & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash;

back to the already installed RAS server above, the follow Microsoft has love The wizard comes step by step~


Select an external network card~


Get an address pool for it, if you have dhcp, get it automatically. ~


ah ~~~~


Because of ras article wrote about here is also not demonstrated ~


I don’t need to say it, the password is set first, and I will return to the RADius server. Also enter once


& mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash ; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; IT-Chen Yi & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash;

Back to the RADIUS server to create a new the client, but not in front to see the

,


Create a strategy


condition selected time range control ~ ~~ Many conditions you can combine with production conditions~


Grant access rights


Default


& mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash ; & mdash; & mdash; & mdash; IT Yi Chen & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & m dash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash; & mdash;

do a rush, there is no cut-off XP to join the map, log it here on time, you can read Chinese no ha ~~~


here yet the establishment of a user access control, allowing only itchenyi access


then I created a new chenyi user tries to access the event log it all written down ~~~~~


Here again, the friendship prompts. I remember doing this experiment six months ago, there was a netizen asked me. Why can't ping the vpn server, saying vmware has a problem

I calmly answered that it says there is a problem~~~ Hehehe, windows ras is not pingable after opening, please clarify the idea to do this experiment, In fact, it is not too difficult <~>~~~~

This article comes from “IT Chen Yi” blog, please be sure to keep this source http://itchenyi.blog.51cto.com/4745638/1085232

Copyright © Windows knowledge All Rights Reserved