Solved

Is it possible to setup L2TP/IPSEC without certificate of preshared key?

Posted on 2003-12-08
7
770 Views
Last Modified: 2013-12-04
I would like to use L2TP instead of pptp for my vpn solution. I am wondering if it is possible to avoid the use of both a Preshared Key or a Certificate. Is it possible to just have the Active directory check the users Login and password to extablish the connection? If yes how is this setup?
0
Comment
Question by:saunders4tom
  • 4
  • 3
7 Comments
 
LVL 37

Accepted Solution

by:
Bing CISM / CISSP earned 250 total points
ID: 9926759
sure. since you need use AD's integrated authentication to establish the secure channel, so i think you need use two Windows 2000/2003 servers connect together. for more information, please refer microsoft's vpn site at:

http://www.microsoft.com/windows2000/technologies/communications/vpn/default.asp

hope it helps,
bbao
0
 

Author Comment

by:saunders4tom
ID: 10048016
I did need to use certificates to use the ipsec solution.
I would like to delete this question....any objections?
0
 
LVL 37

Expert Comment

by:Bing CISM / CISSP
ID: 10048498
>> I did need to use certificates to use the ipsec solution

this is just what my comment suggested to you: "you need use AD's integrated authentication to establish...", why dont you just accept it directly? :)
0
Superior storage. Superior surveillance.

WD Purple drives are built for 24/7, always-on, high-definition security systems. With support for up to 8 hard drives and 32 cameras, WD Purple drives are optimized for surveillance.

 

Author Comment

by:saunders4tom
ID: 10048543
My queston asked " I am wondering if it is possible to avoid the use of both a Preshared Key or a Certificate"
Your answer was........ Sure
However the correct answer was No it is Not possible to avoid the use of a Pre-shared Key or certificate.
So I don't think I can accept your answer
0
 
LVL 37

Expert Comment

by:Bing CISM / CISSP
ID: 10048655
oh, sorry for my english, hehe. :) it is not my native language. in my native language, if you are wondering or even negating something, and i agree with you, i should say 'YES' to support you; but in english i should say 'NO'. ;))

did you noticed my second sentence in my 1st post? it was "since you need use AD's integrated authentication to establish the secure channel", it was what i wanted to say, hehe.

anyway, if you can not accpet my "SURE", ok, no problem and no objection. :)

regards,
bbao
0
 

Author Comment

by:saunders4tom
ID: 10048757
Ok, no big deal you can have the points. It was difficult digging through Microsofts Website to find out about IPSec. It seems like they really prefer us to use PPTP but now that IPSec is working I'm happy :)
Thanks for the help
0
 
LVL 37

Expert Comment

by:Bing CISM / CISSP
ID: 10048880
thanks for your points, saunders4tom. :) as for your pptp and ipsec: on microsoft windows platforms, PPTP was implemented early than IPSEC, so you might see more articles about microsoft PPTP. the URL in my first post is microsoft's official VPN site for W2K, if you like some 3rd party solutions or documentations, you may visit here:

VPN - Virtual Private Networking
http://compnetworking.about.com/cs/vpn/

more information from microsoft:
VPN Security
http://www.microsoft.com/windows2000/techinfo/reskit/samplechapters/inbe/inbe_vpn_hueq.asp

cheers,
bbao
0

Featured Post

Better Security Awareness With Threat Intelligence

See how one of the leading financial services organizations uses Recorded Future as part of a holistic threat intelligence program to promote security awareness and proactively and efficiently identify threats.

Join & Write a Comment

Many people tend to confuse the function of a virus with the one of adware, this misunderstanding of the basic of what each software is and how it operates causes users and organizations to take the wrong security measures that would protect them ag…
In a recent article here at Experts Exchange (http://www.experts-exchange.com/articles/18880/PaperPort-14-in-Windows-10-A-First-Look.html), I discussed my nine-month sandbox testing of the Windows 10 Technical Preview, specifically with respect to r…
When you create an app prototype with Adobe XD, you can insert system screens -- sharing or Control Center, for example -- with just a few clicks. This video shows you how. You can take the full course on Experts Exchange at http://bit.ly/XDcourse.
This tutorial demonstrates a quick way of adding group price to multiple Magento products.

706 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now