Re: Connection Manager dual VPN connection

  • From: Edgardo Balansay <balansay@xxxxxxxxx>
  • To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx>
  • Date: Wed, 14 Dec 2005 08:56:00 -0800

Hello,

> My question is I need to use the winlogoncredentials (cached profile) for
> the 2nd VPN connection (quarantine VPN) is there any way to utilize the
> cached profile authentication instead of putting logon credential every time
> when user logged in for the 2nd VPN connection.

I'm not sure i understand your question fully, but here is a try:
If you want to use "cached profile authentication instead of putting
logon credentials fo the 2nd VPN connection," then:
1) Ensure, "Network access: Do not allow storage of credentials or
.NET Passports for network authenticatioin" is set to *Disabled*.  If
this is enabled i've found that users are reprompted for credentials. 
Also for this to 'work' properly, i'm assuming your user is logging in
with the cached (same)credentials for the domain.
2) Ensure the "Domain Field" is entered when initiating the VPN
connection.  If this is missing, i've found that users are also
reprompted for credentials.
3) Ensure "UseWinLogonCredentials=1" is set in the .cms file

Perhaps some helpful links:
http://support.microsoft.com/default.aspx?scid=kb;en-us;816744

http://www.microsoft.com/technet/prodtechnol/windowsserver2003/library/ServerHelp/e0e5a6ec-d544-4610-b146-4d1d123c8931.mspx

http://www.microsoft.com/technet/prodtechnol/windowsserver2003/library/ServerHelp/0cff1bc6-23c9-4d93-a702-7f640c4f161b.mspx

Goodbye!
Edgardo

BTW, does your "CheckHotFixes.vbs" script still work? (after applying
last months Windows updates)


Other related posts: