Jump to content

Recommended Posts

Posted

Currently using IdentD on both mac and windows and it works well.

 

I'm in the middle of sorting out a Terminal Server for our thin clients and unfortunately, IdentD gets confused so I need to get my TS to use something like NTLM with Terminal Services compatibility.

 

I could use GPO loopback and get the TS to use a different proxy port for NTLM authentication but I'm thinking why add an extra layer of complication!

 

So my questions are - for those people with smoothwall boxes,

  1. What authentication methods do you use?
  2. How well does auto Negotiate Kerberos/NTLM with Terminal Services compatibility work across the whole network (approx. 400 workstations in total including thin client things)
  3. Should I ditch IdentD and use AutoNegotiate Kerberos/NTLM with Terminal Services compatible?

 

Cheers

Mark

Posted
We currently use NTLM for Windows clients and IdentD for Macs. It would be nice to switch to IdentD across the board, but there are a few security implications to doing this. Not sure why ident would work incorrectly under terminal services? Presumably you are running an ident daemon as a service. In this case it should be able to correctly map the owner of the local/remote ports in question, unless there's something special about a terminal services session?

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...