1 Routing and Remote Access Service (Week 15, Friday 4/21/2006) © Abdou Illia, Spring 2006.

Slides:



Advertisements
Similar presentations
Configuring Windows Vista Security Lesson 8. Skills Matrix Technology SkillObjective DomainObjective # Setting Up Users Configure and troubleshoot parental.
Advertisements

Module 10: Troubleshooting Network Access. Overview Troubleshooting Network Access Resources Troubleshooting LAN Authentication Troubleshooting Remote.
15.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 15: Configuring a Windows.
Module 5: Configuring Access for Remote Clients and Networks.
1 Objectives Configure Network Access Services in Windows Server 2008 RADIUS 1.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 11: Planning Network Access.
1 Configuring Web services (Week 15, Monday 4/17/2006) © Abdou Illia, Spring 2006.
MCDST : Supporting Users and Troubleshooting a Microsoft Windows XP Operating System Chapter 14: Troubleshooting Remote Connections.
Hands-On Microsoft Windows Server 2003 Administration Chapter 11 Administering Remote Access Services.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 5: Managing File Access.
14.1 © 2004 Pearson Education, Inc. Exam Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 Active Directory Infrastructure.
70-270, MCSE/MCSA Guide to Installing and Managing Microsoft Windows XP Professional and Windows Server 2003 Chapter Twelve Implementing Terminal.
MCITP Guide to Microsoft Windows Server 2008 Server Administration (Exam #70-646) Chapter 10 Configuring Remote Access.
Virtual Private Network (VPN) © N. Ganesan, Ph.D..
Overview of Routing and Remote Access Service (RRAS) When RRAS was implemented in Microsoft Windows NT 4.0, it added support for a number of features.
Ch 9 Managing Active Directory User Accounts. Objectives Create Organizational Unit Creating User Accounts in Active Directory Disabling, Enabling, and.
1 Chapter Overview Creating User and Computer Objects Maintaining User Accounts Creating User Profiles.
Chapter 11: Dial-Up Connectivity in Remote Access Designs
Configuring Active Directory Certificate Services Lesson 13.
Implementing RADIUS AAA Phil & Rick. Content Terms and Concepts Access Control What is AAA? Benefits of AAA What is RADIUS? Microsoft IAS Overview Installation.
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network Chapter 10: Remote Access.
1 Microsoft Windows NT 4.0 Authentication Protocols Password Authentication Protocol (PAP) Challenge Handshake Authentication Protocol (CHAP) Microsoft.
VPN Scenarios © N. Ganesan, Ph.D.. Chapter Objectives.
Guide to MCSE , Enhanced 1 Activity 10-1: Restarting Windows Server 2003 Objective: to restart Windows Server 2003 Start  Shut Down  Restart Configure.
Course 6421A Module 7: Installing, Configuring, and Troubleshooting the Network Policy Server Role Service Presentation: 60 minutes Lab: 60 minutes Module.
Ch 8-3 Working with domains and Active Directory.
NORTEL NETWORKS CONFIDENTIAL CallPilot 150 Modem Access Jan 03, 2005 Version 1.5.
Windows Server 2008 Chapter 9 Last Update
Microsoft Windows 2003 Server. Client/Server Environment Many client computers connect to a server.
1 ISA Server 2004 Installation & Configuration Overview By Nicholas Quinn.
Module 7: Configuring TCP/IP Addressing and Name Resolution.
Configuring Routing and Remote Access(RRAS) and Wireless Networking
September 18, 2002 Introduction to Windows 2000 Server Components Ryan Larson David Greer.
1 Week #7 Network Access Protection Overview of Network Access Protection How NAP Works Configuring NAP Monitoring and Troubleshooting NAP.
Module 9: Planning Network Access. Overview Introducing Network Access Selecting Network Access Connection Methods Selecting a Remote Access Policy Strategy.
Using Windows Firewall and Windows Defender
1 Guide to Novell NetWare 6.0 Network Administration Chapter 12.
Microsoft Internet Security and Acceleration (ISA) Server 2004 is an advanced packet checking and application-layer firewall, virtual private network.
Module 10: Configuring Windows XP Professional to Operate in Microsoft Networks.
1/28/2010 Network Plus Windows Networking Network Identification Identifies name and type of network. Installed adapters –Performed during Windows installation.
11.59 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 11: Introducing WINS, DNS,
1 Managing Printers (Week 12, Monday 3/26/2007) © Abdou Illia, Spring 2007.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 5: Managing File Access.
Microsoft Internet Information Services 5.0 (IIS) By: Edik Magardomyan Fozi Abdurhman Bassem Albaiady Vince Serobyan.
Objectives Configure routing in Windows Server 2008 Configure Routing and Remote Access Services in Windows Server 2008 Network Address Translation 1.
1 Chapter Overview Using the New Connection Wizard to configure network and Internet connections Using the New Connection Wizard to configure outbound.
1 Week 6 – NPS and RADIUS Install and Configure a Network Policy Server Configure RADIUS Clients and Servers NPS Authentication Methods Monitor and Troubleshoot.
20411B 8: Installing, Configuring, and Troubleshooting the Network Policy Server Role Presentation: 60 minutes Lab: 60 minutes After completing this module,
Installing and Using Active Directory Written by Marc Zacharko.
Database-Driven Web Sites, Second Edition1 Chapter 5 WEB SERVERS.
Module 11: Remote Access Fundamentals
Module 8: Configuring Network Access Protection
11.59 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 11: Introducing WINS, DNS,
MCTS Guide to Microsoft Windows Server 2008 Applications Infrastructure Configuration (Exam # ) Chapter Four Windows Server 2008 Remote Desktop Services,
Hands-On Microsoft Windows Server Introduction to Remote Access Routing and Remote Access Services (RRAS) –Enable routing and remote access through.
5.1 © 2004 Pearson Education, Inc. Exam Designing a Microsoft ® Windows ® Server 2003 Active Directory and Network Infrastructure Lesson 5: Planning.
Configuring and Troubleshooting Access Lesson 12.
MCTS Guide to Microsoft Windows Server 2008 Applications Infrastructure Configuration (Exam # ) Chapter Five Windows Server 2008 Remote Desktop Services,
Configuring the User and Computer Environment Using Group Policy Lesson 8.
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network, Enhanced Chapter 11: Internet Authentication Service.
Troubleshooting Security Issues Lesson 6. Skills Matrix Technology SkillObjective Domain SkillDomain # Monitoring and Troubleshooting with Event Viewer.
Working with Disks Lesson 4. Skills Matrix Technology SkillObjective DomainObjective # Configuring Data Protection Configure data protection6.4 Using.
1 Chapter Overview Managing Object and Container Permissions Locating and Moving Active Directory Objects Delegating Control Troubleshooting Active Directory.
Module 8: Managing Software Distribution. Collections Packages Programs Advertisements Collections Packages Programs Advertisements How Software.
Using Routing and Remote Access Chapter Five. Exam Objectives in this Chapter:  Plan a routing strategy Identify routing protocols to use in a specified.
Working with Users and Groups Lesson 5. Skills Matrix Technology SkillObjective DomainObjective # Introducing User Account Control Configure and troubleshoot.
Configure and Security Remote Acess. Chapter 8 Advance Computer Network Lecture Sorn Pisey
Module Overview Installing and Configuring a Network Policy Server
Configuring and Troubleshooting Routing and Remote Access
Configuration Of A Pull Network.
Presentation transcript:

1 Routing and Remote Access Service (Week 15, Friday 4/21/2006) © Abdou Illia, Spring 2006

2 Learning Objectives Introducing RRAS Enabling RRAS Configuring RRAS Monitoring RRAS Creating Remote Access Policies

3 Remote Access Service Remote Access Server

4 LAN Internet Client PC W2K Server NIC Modem ISP Modem NIC VPN Routing & Remote Access Service

5 Enabling RRAS RRAS automatically installed during W2K server installation But RRAS is disabled by default You must enable RRAS and configure it to:  Setup a network router  Setup a RAS server  Setup a Virtual Private Network (VPN) server

6 Enabling RRAS 1. Click Start/Programs/Administrative Tools 2. Click Routing and Remote Access 3. In the console tree, select the server on which you want to activate RRAS 4. Click Action/Configure and Enable Routing and Remote Access to open the RRAS setup wizard 5. Click Next to open the Common Configurations screen 6. Click Manually Configured Server to enable the server with default settings 7. Click Next, then Finish 8. When asked “Do you want to start the RRAS?”, click Yes.

7 Configuring RRAS When RRAS is manually enabled, the default settings apply. You can configure RRAS according to your requirements at a later date. To configure RRAS, you use the Properties dialog box (Right-click server, click Properties)

8 Configuring RRAS Note: Tabs depend on protocols installed on your server

9 Configuring RRAS GeneralUsed to specify whether server will be configured as a router for LAN only, as a router for a LAN and demand-dial routing, as a RAS, or both a router and a RAS SecurityUsed to choose one of two types of authentication providers to validate remote access clients IPUsed to specify settings for the IP protocols (e.g. method for distributing IP addresses to remote clients. PPPUsed to configure Point-to-Point Protocol to specify whether a remote client can establish multilink connections Event Logging Used to manage and monitor a RRAS server by selecting the type of event to record.

10 Configuring RRAS 1. Open Routing and Remote Access console if necessary 2. Right-click RRAS server and click Properties 3. Notice the default selections in the General tab. 4. Click the IP tab. Make sure that the Enable IP routing and the Allow IP-based remote access and demand-dial connections check boxes are selected. Note: if you allow IP routing, dial- up clients can access the entire LAN. If you only want to allow dial-up clients to access resources on the RRAS server, clear this check box. 5. Click the Security tab. Windows Authentication is the default provider and Windows accounting is the accounting provider by default. 6. Click the Event Logging tab. You should select the Log the maximum amount of information option button and the Enable Point-to-Point (PPP) logging check box if you want to troubleshoot connection problems. 7. Click OK to close the Properties dialog box.

11 Monitoring RRAS In the server Status node in the Routing and Remote Access console, you can verify:  the state of the server (started, Stopped, Paused)  The type of server  The number of ports in use  The Up time (length of time server has been running since RRAS server was last started). The log files that contains the monitoring data are stored by default in the %systemroot%\systems32\LogFiles folder,

12 Monitoring RRAS 1. Open Routing and Remote Access console if necessary 2. Double-click the RRAS server to expand the node. Select Remote Access Logging. 3. Right-click Local File in the Details pane and click Properties 4. On the Settings tab of the Local File Properties dialog box, select Log Accounting Requests to capture accounting requests and responses 5. Select Log Authentication requests to capture authentication requests such as access-accept packets, and access-reject packets. 6. Click the Local File tab to specify a time period for the log file. 7. Click the Monthy option button in the New Log Time Period section 8. Click OK to close the Local File Properties dialog box. Note: Can use the Net Shell (Netsh) command-line utility to manage and troubleshoot RRAS.

13 Creating a Remote Access Policy Remote Access Policies are used to:  Control what connections attempts will be rejected  Determine which users can access the network and to prevent unauthorized access.  Determine connection time, etc. Three components in Remote Access Policy:  Conditions, Permissions, and Profile. Remote Access Policies are usually stored locally on the RRAS server. They are not stored in Active Directory.

14 Creating a Remote Access Policy 1. Open Routing and Remote Access console if necessary 2. Double-click the RRAS server to expand the node, if necessary, and select the Remote Access policies node. Notice that there is a default policy named Allow access if dial-in permission is enabled. 3. Click Action/New Remote Access Policy to open the Add Remote Access Policy wizard. 4. Type Srvdcxx Remote Access Policy in the Policy Friendly name text box. 5. Click Next to open the Conditions screen. Click Add… to open the Select Attribute dialog box. 6. Select Day-and-Time restrictions in the name column and click Add… to open the Time of day constraints dialog box. 7. Restrict access to the RRAS to M-F from 9AM to 6PM.

15 Creating a Remote Access Policy (cont.) 8. Click OK 9. Click Add… to reopen the Select Attribute dialog box. Double-click Windows-Groups to open the Groups dialog box. 10. Click Add... To open the Select Groups dialog box. Select Domain Users group of your domain and click Add… 11. Click OK to close the Select Groups dialog box. Click OK to close the Groups dialog box. 12. Click Next to open the Permissions screen. 13. Select the Grant remote access permission option button. 14. Click Next to open the User profile screen. 15. Click Finish because we will not create the profile in this exercise. Note: Can use the Net Shell (Netsh) command-line utility to manage and troubleshoot RRAS.