Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

pptp vpn - authenticate all AD users

I am configuring PPTP VPN.  I have also configured Active Directory authentication.  is there a way to simply allow any user with an AD account to authenticate without adding "members" on the PPTP settings page?

on System > Authentication > Authentication Services page I have my AD server listed first and Local second.  Will this automatically pass authentication straight through to AD or do I still need to import the users from AD and ad them as members?



This thread was automatically locked due to age.
Parents Reply
  • Hi Zane,

    Just coming back to your original question, you can allow PPTP, L2TP or SSL VPN via the AD Group Membership. Simply put you import the AD groups you are interested in and then you can enable these features for the group. A users group membership is checked whenever the appliance performs an authentication against the AD.

    As indicated by Luk, in order to authenticate LT2P or PPTP connections against AD you will need to use RADIUS. This functionality can be provided by Microsoft Network Policy Server (NPS).

    Leon Friend

    Sophos Sales Engineer

    Sophos XG Firewall - Certified Architect, Sophos Certified Engineer, Cyberoam CCNSE, Cyberoam CCNSP

Children
No Data