R
Robert Field
We are currently deploying a vpn solution for remote users. We have
deployed private DSL lines to several of our staff and we want to
ensure that only trusted computers can be used on the DSL connection.
Our plan is to deploy computer certificates to the computers using the
Enterpise CA model and then use this to authenticate the computer when
it connects using the DSL link.
My first question is
When deploying computer based certificates using GPO's is there anyway
of filtering out computers, I don't want all of our computers in the
domain having a certificate installed I only want it to apply to
laptops.
My Second question is
If we place an IAS Server out in our perimeter network will that
authenticate the computer certificate?
We are currently using Windows 2000 pro and Windows 2000 Active
Directory.
Any feedback would be much appreciated.
Regards
Rob
deployed private DSL lines to several of our staff and we want to
ensure that only trusted computers can be used on the DSL connection.
Our plan is to deploy computer certificates to the computers using the
Enterpise CA model and then use this to authenticate the computer when
it connects using the DSL link.
My first question is
When deploying computer based certificates using GPO's is there anyway
of filtering out computers, I don't want all of our computers in the
domain having a certificate installed I only want it to apply to
laptops.
My Second question is
If we place an IAS Server out in our perimeter network will that
authenticate the computer certificate?
We are currently using Windows 2000 pro and Windows 2000 Active
Directory.
Any feedback would be much appreciated.
Regards
Rob