On Wed, 26 Nov 2008, [EMAIL PROTECTED] wrote:

> On Wed, 26 Nov 2008, Richard Chycoski wrote:
>
>> Is this helpful? : <http://support.citrix.com/article/CTX107495>
>>
>> ...or is the 'vendor supplied tool' to which you were referring (and for
>> which you could not get proper support)?
>
> different tool. this is closer, unfortunantly on citrix I'm using the
> presentation server not the Access Gateway Server, so the screens that
> this is telling me to use don't exist.

suppose I have a Cisco ACS Radius server (which can do a lot of different 
authentication things, including authenticating some users against one 
token server, other users against plain passwords, and various other 
trickery)

it's simple to configure linux systems and routers to authenticate against 
this server.

I want to have windows/citrix presentation server authenticate against 
this as well. I can't make windows the master becouse it doesn't have the 
same capabilities that the Cisco ACS has.



in my case the radius server isn't a Cisco ACS, it's openradius doing a 
challenge/response authentication sequence. It works just fine for 
routers, VPNs, etc (and would for linux, but I have more direct methods 
available to me there).

for windows I have a GINA agent from strong authentication vendor X, but 
since I'm not useing their server (which wants it's own active directory 
instance among other things), when I ask them why their agent isn't even 
sending radius packets out to the server they go off in the direction of 
asking about AD domains, NT4 workgroups, etc.

I need something that when a user tries to login to windows/citrix it 
takes their userid, sends it to the radius server, gets the challenge from 
the radius server, presents it to the user, gets the user response, sends 
it to the radius server, and checks to see if the user is approved or not.

David Lang
_______________________________________________
Discuss mailing list
Discuss@lopsa.org
http://lopsa.org/cgi-bin/mailman/listinfo/discuss
This list provided by the League of Professional System Administrators
 http://lopsa.org/

Reply via email to