Solved

VPN Access w/o Domain Account

Posted on 2013-01-31
8
712 Views
Last Modified: 2013-02-01
Is it possible to log into an SBS 2011 or Server 2012 Essentials server using VPN without a domain user account?
Can they do it with a local account?
0
Comment
Question by:cliffordgormley
  • 3
  • 3
  • 2
8 Comments
 
LVL 77

Expert Comment

by:Rob Williams
ID: 38842064
There has to be a domain account on the SBS so thy can authorize.  There are no local accounts on a domain controller.  However the remote PC does not need to be a member of the domain.
0
 
LVL 94

Assisted Solution

by:John Hurst
John Hurst earned 250 total points
ID: 38842108
I always prefer a hardware VPN box. That way, any authorized person can have VPN access to the network. Server access is then a matter of have a user id and proper credentials.

... Thinkpads_User
0
 
LVL 77

Expert Comment

by:Rob Williams
ID: 38842139
I would agree a VPN appliance/router is a much better solution from a security, perfomance, and managbility point of view, but I should ask why do you need a VPN.  There are a few reasons but with both of your server options you can access the server, PC's on the LAN, and shared folders using Remote Web Access and SSL, which is built-in and offers security advantages over a VPN.
0
Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

 

Author Comment

by:cliffordgormley
ID: 38842552
This question is an addition to this one here - http://www.experts-exchange.com/OS/Microsoft_Operating_Systems/Server/SBS_Small_Business_Server/Q_28016263.html

Since the users will have various OS's, including various Mac versions, they will have limited functionality with the server. So I'm not entirely sure if they will have Remote Web Access available to them.

So just to confirm. The best option would be a seperate VPN box that would allow them access through User ID and Credentials though it is possible for the remote pc's to access files on the server through VPN w/o them being part of a domain?
0
 
LVL 77

Accepted Solution

by:
Rob Williams earned 250 total points
ID: 38842649
Looking at the other question, are these local or remote users?  A VPN is used for remote users accessing files.  If so yes any computer can access the server MAC, Linux, Windows home or pro using a VPN.
Every user does need a domain account to access but the PC does not have to join the domain.

In order to use RWA they must be Windows machines, home or pro, as they require Active-X which is not supported in other browsers.

In the other question you mention SBS 2011.  You are aware it will be discontinued in June through all but OEM channels, and those in December?
Server 2012 Essentials does not use Exchange but has better integration with Windows and MAC computers as well as pro of course.
0
 
LVL 94

Expert Comment

by:John Hurst
ID: 38843478
If you have a VPN appliance, then you can do what you want above.

If you wish to use SBS2011 instead of a VPN appliance, then you need to follow RobWill's approach.  
... Thinkpads_User
0
 

Author Closing Comment

by:cliffordgormley
ID: 38843943
Thanks for the answers! I will be looking into both options for the user and actually pushing towards Server 2012 Essentials.
0
 
LVL 94

Expert Comment

by:John Hurst
ID: 38843965
@cliffordgormley - You are most welcome. I was happy to help and good luck going forward.

.... Thinkpads_User
0

Featured Post

Free Tool: Path Explorer

An intuitive utility to help find the CSS path to UI elements on a webpage. These paths are used frequently in a variety of front-end development and QA automation tasks.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
Did you know that more than 4 billion data records have been recorded as lost or stolen since 2013? It was a staggering number brought to our attention during last week’s ManageEngine webinar, where attendees received a comprehensive look at the ma…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

685 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question