Quantcast
Channel: Security forum
Viewing all articles
Browse latest Browse all 12072

AD Selective Authentication on non-domain devices

$
0
0

Here is our setup.

domainA.com domain trust with domainB.com with selective authentication. ACLs are in place on OU's that contain computer objects which have 'allowed to authenticate' enabled.  Users from the trusted domain are allowed to only authenticate to the appropriate computers.

How would we get devices, that cannot be joined to the domain, to authenticate users?  Cisco VPN, for example.  Since the device is using a bindDN etc which points to a DC would this just need the same 'allowed to authenticate' permission on the domain controllers?  Is there any security risk to this?


Viewing all articles
Browse latest Browse all 12072

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>